Stop applying to jobs that are already dead.
Every listing verified, aged honestly, expired when filled.

All listings

Plooto via Greenhouse

Manager, Privacy & Regulatory Compliance

manager Canada
still open verified 1d ago posted 7d ago checked just now
Apply at job-boards.greenhouse.io

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 7d ago

The date the source published, not the day we noticed it (2026-09-07). Last seen at its source just now.

Is it remote?

Remote - Canada

That is the location the employer filed this posting under. Quoted as written — we do not re-word the source's own location.

Who may apply?

Canada

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay $148.8k–208.3k/yr

Middle 50% of 16 listings that do state pay — Legal & Compliance · all levels · Canada · USD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

BookkeepingHR OperationsRegulatory ComplianceRisk Management

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

About Plooto 

Plooto is a payment automation platform built to help accountants, bookkeepers, and their clients take control of their payables and receivables. From approval workflows and audit trails to bulk payments and automated reconciliation, Plooto gives customers time back and confidence that their books are accurate and up to date. 

Our customers range from busy entrepreneurs to finance teams and non-profits, with a strong footprint among accounting firms and bookkeeping professionals across Canada. 

About the Role 

We’re looking for a Manager, Privacy & Regulatory Compliance to lead and scale Plooto’s privacy program while helping the business adopt AI, automation, and data-driven technologies responsibly. 

Privacy expertise is the foundation of this role. As AI becomes more widely adopted across Plooto, the number and complexity of decisions involving personal and sensitive information will continue to grow. You will help the business navigate these decisions thoughtfully—establishing clear guardrails, identifying material risks, and enabling teams to innovate without creating unnecessary process or paperwork. 

This is a hands-on individual contributor role for someone who is pragmatic, curious, and comfortable working in areas where the answers are still evolving. We are not looking for someone with decades of AI governance experience. We are looking for a strong privacy professional who is genuinely interested in AI, asks thoughtful questions, keeps up with emerging developments, and is excited to help shape Plooto’s approach. 

You will also support the ongoing implementation of Plooto’s Enterprise Risk Management framework and provide additional capacity across the broader regulatory compliance program. Prior depth in ERM or AML/ATF is not essential; what matters is an ability and willingness to learn, apply sound judgment, and contribute where needed. 

You’ll work closely with Product, Engineering, Security, Legal, People, Operations, and other teams to translate complex requirements into practical, proportionate solutions that help Plooto move quickly and responsibly. 

The role reports to the Senior Manager, Compliance within the Payments Strategy & Compliance function. 

Key Responsibilities 

Privacy is the primary focus of this role. The role will also provide flexible support for enterprise risk management and broader regulatory compliance priorities as business needs evolve 

  • Lead and continuously improve Plooto’s privacy program, serving as a primary privacy subject-matter expert and supporting compliance with PIPEDA, Quebec Law 25, Alberta PIPA, BC PIPA, and other applicable privacy requirements. 
  • Provide practical privacy guidance to the business, translating legal and regulatory requirements into clear, risk-based actions without creating unnecessary documentation, approvals, or operational friction. 
  • Lead privacy assessments for new products, features, vendors, and data uses, including Privacy Impact Assessments. Apply a proportionate approach so the depth of review and documentation reflects the actual level of risk. 
  • Help shape Plooto’s approach to responsible AI, developing lightweight, scalable methods for assessing AI tools and use cases across privacy, data use, transparency, retention, access, automated decision-making, and third-party processing. 
  • Embed privacy by design into how Plooto operates, partnering with Product, Engineering, Security, People, and other teams early in the development and implementation of new products, AI tools, models, vendors, and automated processes. 
  • Manage core privacy operations, including data rights requests, privacy incidents and breach assessments, third-party privacy reviews, cross-border data considerations, and data retention and deletion practices. 
  • Monitor emerging privacy, data, and AI developments in Canada and the United States, determine which developments are relevant to Plooto, and convert them into focused, actionable recommendations. 
  • Support the rollout and ongoing implementation of Plooto’s Enterprise Risk Management framework, including coordinating risk assessments, maintaining the enterprise risk register, monitoring mitigation activities, and supporting risk reporting. 
  • Help make risk management a practical business discipline, working with leaders to identify material risks, clarify ownership, track meaningful actions, and maintain reporting that supports decision-making rather than documentation for its own sake. 
  • Support regulatory change and third-party risk activities, helping assess new requirements and higher-risk relationships, identify accountable owners, and track implementation of proportionate controls. 
  • Provide flexible support across Plooto’s broader regulatory compliance program, including regulatory initiatives, audits, effectiveness reviews, remediation work, obligations under the Retail Payment Activities Act, and AML/ATF requirements under the PCMLTFA and FINTRAC guidance. 
  • Build understanding and accountability across the organization through clear guidance, practical tools, and training on privacy, responsible AI, and risk management. 

Qualifications  

  • 3–6+ years of hands-on privacy experience, ideally within fintech, payments, technology, banking, financial services, or another regulated environment. 
  • Strong working knowledge of Canadian privacy requirements, particularly PIPEDA and Quebec Law 25, with familiarity with Alberta and British Columbia privacy legislation. 
  • Practical experience conducting Privacy Impact Assessments, privacy reviews, data rights requests, and privacy incident or breach assessments. 
  • The judgment to apply privacy requirements proportionately and develop controls that are defensible, practical, and appropriate to the underlying risk. 
  • Genuine curiosity about AI and emerging technologies, including an interest in learning how new tools use data and helping the organization navigate evolving privacy and governance considerations. 
  • You do not need extensive AI governance experience. Experience reviewing AI tools, automated processing, emerging technologies, or data-governance matters is an asset. 
  • An ability to simplify complex requirements and create clear guidance, decision frameworks, and processes that people will actually use.
Apply at job-boards.greenhouse.io