About the company
Roblox is an online game platform and game creation system developed by Roblox Corporation that allows users to program games and play games created by other users. At Roblox, weāre building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. Weāre on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means youāll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone.
Job Summary
You will:
šProvide subject-matter expertise and guidance on evolving data security and privacy legislation, evolving regulations, and enforcement and translate your analysis into clear, concise, and actionable guidance. šAdvise on global and domestic data security and privacy laws, regulations, and industry best practices for cybersecurity. šRemain up-to-date on relevant data security and privacy laws and regulations and evolving industry standards to provide an ongoing ability to provide sound compliance advice šEngage with the Incident Response Team during incidents. Provide guidance during the incident, including impact analysis, breach reporting to regulators, and customer notification. šParticipate in security incident retrospectives, propose and provide guidance on repair items. šProvide insights and guidance on security policies with the Governance, Risk, and Compliance Team. šBe a subject matter expert on data security and privacy for inputs into Quantified Risk. šReport to Senior Lead Counsel, Privacy.
You have:
š5+ years of data security, data privacy, data protection and governance experience. šExpertise in US and global data security and protection laws and regulations. šKnowledge of cybersecurity regulations and frameworks, such as GDPR, COPPA, NIST CSF, and PCI. šExperience working with Information Security teams, including Incident Response, Application Security and Governance. šExperience with security incidents including, breaches, breach reporting to regulators, customer notifications. šExperience implementing global data protection and security requirements. šTrain at a major national law firm; in-house experience a plus. šActive membership in at least one U.S. state bar; California Bar admission preferred. šExcellent business-oriented judgment.