Incident Response Manager - Privacy

EngineersOfAI

San Francisco, Northern (CA, KY)

Hybrid

USD 180,000 - 260,000

Full time

34 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Anthropic seeks an experienced Incident Response Manager to own and evolve privacy incident management within the privacy team. You will drive detection, triage, containment, remediation, and post-incident review for privacy incidents involving GDPR, CCPA, HIPAA and similar laws.

You will partner with Privacy Legal and the Privacy Program team, lead incident review forums, and ensure systemic improvements are implemented across engineering, security, infrastructure, and product teams.

Qualifications

  • Led or built incident response programs at a technology company.
  • Turned incident data into organizational improvements through cross-functional work.
  • Comfortable with on-call responsibilities and high-severity incident response.

Responsibilities

  • Own the end-to-end privacy incident management program: detection workflows, response processes, escalation paths, communication standards, and remediation tracking.
  • Serve as incident commander for privacy incidents, driving clear coordination across executive, engineering, security, legal, and other stakeholders.
  • Establish and run incident commander rotations within privacy, ensuring clear ownership and effective coordination during incidents of varying severity.
  • Drive post-incident accountability by defining how action items are captured, assigned, tracked, and completed across teams.
  • Gather, analyze, and report on incident trends and patterns to surface systemic risks and root causes.
  • Translate trend analysis into actionable cross-functional initiatives with engineering, infrastructure, security, and product teams.
  • Lead incident review forums and ensure learnings are socialized and acted upon across the organization.
  • Partner with Privacy Legal on breach and notifiability assessments against regulatory timelines and communications.
  • Develop and maintain privacy incident response documentation, playbooks, and training materials.

Skills

Incident response leadership
Cross-functional collaboration
On-call readiness
Post-mortem improvements

Job description

About Anthropic

Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the Role

Anthropic is working on frontier AI systems that handle sensitive information at enormous scale. How we protect that data, and how we build privacy into our systems rather than bolting it on afterward, is central to our mission of building AI that is safe and beneficial.

We’re looking for an experienced Incident Response Manager to own and evolve incident management within the privacy team. This is a senior-level specialization on the Technical Program Manager ladder, focused on how we detect, respond to, and learn from privacy incidents. These incidents involve personal data subject to GDPR, CCPA, HIPAA and similar laws, and to the contractual commitments Anthropic makes to its customers.

You’ll be the driving force behind maturing and scaling our incident response lifecycle, from detection and triage through containment, remediation, and post-incident review. Critically, some of the highest-impact work in this role happens after the immediate response: gathering data on incident trends, reporting on patterns and root causes, and working cross-functionally across engineering, security, infrastructure, and product teams to ensure that broad fixes and systemic improvements are actually implemented. You will partner closely with Privacy Legal on notifiability and communications, and with the Privacy Program team on executive and board reporting; this role owns the engineering-side programme, its metrics and its follow-through.

You won’t just manage incidents: you’ll make sure we get meaningfully better after each one.

Key responsibilities
  • Own the end-to-end privacy incident management program: detection workflows, response processes, escalation paths, communication standards, and remediation tracking.
  • Serve as incident commander for privacy incidents, driving clear coordination across executive, engineering, security, legal, and other appropriate stakeholders.
  • Establish and run incident commander rotations within privacy, ensuring clear ownership and effective coordination during incidents of varying severity.
  • Drive post-incident accountability by defining how action items are captured, assigned, tracked, and completed across teams, ensuring follow-through on both tactical fixes and strategic improvements.
  • Gather, analyze, and report on incident trends and patterns to surface systemic risks, recurring root causes, and areas where the organization is most vulnerable.
  • Translate trend analysis into actionable cross-functional initiatives: partner with engineering, infrastructure, security, and product teams to prioritize and implement broad fixes and preventive improvements that address root causes rather than symptoms.
  • Lead incident review forums (post-mortems, retrospectives) and ensure learnings are captured, socialized, and acted upon across the organization.
  • Partner with Privacy Legal on breach and notifiability assessments against regulatory timelines, coordinate customer and regulator communications when required, and keep privileged and non-privileged records appropriately separated.
  • Develop and maintain privacy incident response documentation, playbooks, runbooks, and training materials; keep them current as our products, data flows and obligations evolve.
  • Partner with detection engineering to improve alert fidelity, reduce noise, and shorten time-to-detection for privacy events.
  • Define, develop, and track incident management KPIs and report regularly to leadership.
  • Support broad cross-functional training and initiatives to uplevel privacy awareness across the company (e.g. Tabletop exercises, training, talks).
Minimum qualifications
  • Have led or built incident response programs at a technology company, ideally in a high-growth or security-intensive environment.
  • Have a demonstrated track record of turning incident data into organizational improvements: not just writing post-mortems, but driving the cross-functional work to implement systemic fixes.
  • Are comfortable participating in on-call responsibilities and leading incident response during high-severity priv
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Incident Response Manager - Privacy
Incident Response Manager - Privacy

Anthropic • San Francisco (CA)

Hybrid
USD 290,000 - 365,000
Senior Privacy Incident Response Lead
Senior Privacy Incident Response Lead

EngineersOfAI • San Francisco (CA), Northern (KY)

Hybrid
USD 180,000 - 260,000
Privacy Incident Response Lead
Privacy Incident Response Lead

Anthropic • San Francisco (CA)

Hybrid
USD 290,000 - 365,000
Privacy Incident Response Lead
Privacy Incident Response Lead

Anthropic Limited • San Francisco (CA), Northern (KY)

Hybrid
USD 290,000 - 365,000
Incident Response Manager - Product & Engineering
Incident Response Manager - Product & Engineering

Anthropic • United States

Remote
USD 290,000 - 365,000
Incident Response Manager - Product & Engineering New York City, NY; San Francisco, CA | New Yo[...]
Incident Response Manager - Product & Engineering New York City, NY; San Francisco, CA | New Yo[...]

Anthropic • New York (NY)

On-site
USD 290,000 - 365,000
Incident Response Manager – Product & Engineering
Incident Response Manager – Product & Engineering

Anthropic • New York (NY)

On-site
USD 290,000 - 365,000
Competitive compensation and benefits
Optional equity donation matching
Generous vacation and parental leave
+2
Privacy Counsel
Privacy Counsel

EngineersOfAI • New York (NY), Northern (KY)

Hybrid
USD 265,000 - 335,000
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Anthropic • San Francisco (CA)

On-site
USD 300,000 - 405,000
Staff+ Software Engineer, Privacy
Staff+ Software Engineer, Privacy

Anthropic • United States

Hybrid
USD 405,000 - 485,000