Director, Privacy Compliance
ZillowAbout the role
About the team
Zillow is transforming how people find, finance, sell, rent, and live in homes. Our platforms, apps, and services power a complex ecosystem of consumers, real estate professionals, lenders, landlords, property managers, and partners. Data and trust are at the center of that ecosystem, and the Privacy team partners across the company to uphold both while enabling innovation.About the role
As Director, Privacy, you will lead and evolve Zillow’s enterprise privacy compliance program across our online real estate marketplace, adjacent businesses, and internal operations. You’ll set and drive an enterprise-wide privacy strategy in a tech-forward, data-rich environment, ensuring privacy is built into products, experiences, and data platforms by design. You’ll cultivate a pragmatic, collaborative culture—working closely with Privacy Legal, InfoSec, Engineering, Product, Design, and other Compliance teams to deliver product-ready solutions to evolving privacy requirements.
You will get to:
Design and continuously improve the enterprise privacy program with Privacy Legal (governance model, roles and responsibilities, policies, forums, steering committees).
Build and maintain the privacy portfolio and roadmap (OKRs, maturity targets, mitigations, remediations) and report progress to senior leadership.
Launch and scale AI-driven tools and workflows for product advisory support, analytics, PIAs/DPIAs/RoPA, DSARs, TCPA/DNC, and compliance monitoring.
Establish enterprise privacy governance (steering committees, escalation paths, decision frameworks) and own internal policies, notices, standards, and operational playbooks.
Create evidence-based compliance by maintaining retention libraries of decisions, risk evaluations, controls, approvals, exceptions, and proof supporting audit, regulatory, diligence, and litigation needs.
Lead the privacy control framework across access/deletion/correction/opt-out requests, cookies/tracking tech, and marketing/communications rules (e.g., TCPA, CAN-SPAM), integrating with policy governance and exception management.
Champion privacy by design/default in technical architectures (identity, consent, preferences, logging, data minimization) in close partnership with Engineering, Product, Design, InfoSec, and Compliance.
Serve as an embedded privacy leader with product teams to interpret and operationalize evolving federal and state laws (e.g., CPRA, CDPA, UCPA, GLBA) and partner with Legal and Government Relations on horizon scanning and proactive strategies.
Who you are
10+ years in privacy, data protection, or related risk/compliance roles within tech-forward or online platform environments (e.g., marketplaces, SaaS, fintech, ad-tech, consumer apps).
Deep knowledge of U.S. privacy laws (e.g., CCPA/CPRA, GLBA, TCPA, CAN-SPAM) and industry frameworks (e.g., NIST, ISO, PCI/NACHA); familiarity with GDPR.
Demonstrated experience maturing privacy programs (governance, policies, PIAs/DPIAs/RoPA, DSARs, notice/consent) aligned with data governance.
Proven ability to partner with product, design, engineering, and data/analytics teams—able to influence technical and UX decisions to implement privacy by design.
Strong collaboration re
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s