Technical Lead II - Security Privacy
POS-31884
About the team
The Security Privacy team builds and operates the services that help HubSpot understand, protect, and manage personally identifiable information (PII) across the entire platform. We own a suite of backend and frontend systems that automatically scan HubSpot’s codebase and infrastructure to catalog PII usage and ownership, classify datasets, enforce data protection standards, and orchestrate GDPR deletion workflows when customers exercise their rights. Our tools make it straightforward for every engineering team at HubSpot to know what sensitive data they handle and to do the right thing with it.
We sit within the Security Automated Assurance group, and partner closely with HubSpot’s Privacy, Legal, and Security organisations as well as product and infrastructure teams across the company.
About the role
A Technical Lead II is a player‑coach responsible for leading the Security Privacy team. You’ll be a high‑performing engineer who:
Owns the technical direction for privacy tooling and co‑sets product strategy as part of the TL/PM triad.
Leads delivery of complex projects across data privacy, PII management, and data protection domains, often working with other TLs to unblock cross‑team work.
Takes proactive ownership for your team’s on‑call health, reliability, and code quality.
Grows the engineers around you and builds an inclusive, high‑trust team culture.
This is a hands‑on leadership role: you’ll spend a large portion of your time designing systems, writing code, and reviewing changes, while also providing technical guidance and coaching.
In this role, you’ll get to
Lead the Security Privacy team building services that catalog PII, classify datasets, enforce data protection standards, and automate GDPR deletion workflows across HubSpot.
Design and evolve distributed systems that scan HubSpot's codebase and infrastructure to detect PII usage, track dataset ownership, and orchestrate privacy‑related actions at scale.
Own reliability and on‑call for the services your team runs, including alerting, incident response, and continuous improvement of our data privacy pipelines.
Collaborate with Privacy, Legal, and Security teams to translate data protection requirements and regulations into robust technical solutions.
Mentor and coach engineers through design reviews, pairing, and thoughtful feedback, raising the bar on engineering quality and execution.
Shape the roadmap for how HubSpot manages and protects personal data at scale, balancing long‑term platform investments with near‑term regulatory and business needs.
We’re looking for people who
Are senior backend engineers who have already led small teams, projects, or technical areas and are ready for a broader leadership scope.
Are comfortable designing and operating distributed systems (e.g., microservices, message queues, data pipelines) in production.
Have strong experience with at least one JVM language (ideally Java) and relational databases (e.g., MySQL); experience with technologies like Kafka, asynchronous processing, or large‑scale data systems is a plus.
Care deeply about reliability, observability, and operational excellence, and have participated in or run on‑call rotations before.
Communicate clearly with engineers and non‑engineers, and enjoy working closely with product, design, and non‑technical partners in security and compliance.
Value mentorship, feedback, and inclusion, and want to help build a team where people from different backgrounds can do their best work.
Nice to have
Experience in security, compliance, risk, or privacy domains (e.g., SOX, ISO 27001, SOC reports, data protection) or strong interest in learning this space.
Background building data or reporting platforms that integrate with third‑party systems and internal data warehouses.
Experience with Kafka, event‑driven architectures, or large‑scale data ingestion and processing.
Prior work with auditors, risk, or GRC teams, or building systems that support audits and regulatory requirements.
Why HubSpot
HubSpot engineers work in small, autonomous teams with a high degree of ownership over what they ship and how they run it in production. We deploy frequently, learn quickly from our customers, and invest heavily in engineering excellence and developer experience. In Security Automated Assurance, you’ll see a direct connection between the systems you build and HubSpot’s ability to earn and keep our customers’ trust at scale.
Technical Lead II - Security Privacy
POS-31884
About the team
The Security Privacy team builds and operates the services that help HubSpot understand, protect, and manage personally identifiable information (PII) across the entire platform. We own a suite of backend and frontend systems that automatically scan HubSpot’s codebase and infrastructure to catalog PII usage and ownership, classify datasets, enforce data protection standards, and orchestrate GDPR deletion workflows when customers exercise their rights. Our tools make it straightforward for every engineering team at HubSpot to know what sensitive data they handle and to do the right thing with it.
We sit within the Security Automated Assurance group, and partner closely with HubSpot’s Privacy, Legal, and Security organisations as well as product and infrastructure teams across the company.
About the role
A Technical Lead II is a player‑coach responsible for leading the Security Privacy team. You’ll be a high‑performing engineer who:
Owns the technical direction for privacy tooling and co‑sets product strategy as part of the TL/PM triad.
Leads delivery of complex projects across data privacy, PII management, and data protection domains, often working with other TLs to unblock cross‑team work.
Takes proactive ownership for your team’s on‑call health, reliability, and code quality.
Grows the engineers around you and builds an inclusive, high‑trust team culture.
This is a hands‑on leadership role: you’ll spend a large portion of your time designing systems, writing code, and reviewing changes, while also providing technical guidance and coaching.
In this role, you’ll get to
Lead the Security Privacy team building services that catalog PII, classify datasets, enforce data protection standards, and automate GDPR deletion workflows across HubSpot.
Design and evolve distributed systems that scan HubSpot's codebase and infrastructure to detect PII usage, track dataset ownership, and orchestrate privacy‑related actions at scale.
Own reliability and on‑call for the services your team runs, including alerting, incident response, and continuous improvement of our data privacy pipelines.
Collaborate with Privacy, Legal, and Security teams to translate data protection requirements and regulations into robust technical solutions.
Mentor and coach engineers through design reviews, pairing, and thoughtful feedback, raising the bar on engineering quality and execution.
Shape the roadmap for how HubSpot manages and protects personal data at scale, balancing long‑term platform investments with near‑term regulatory and business needs.
We’re looking for people who
Are senior backend engineers who have already led small teams, projects, or technical areas and are ready for a broader leadership scope.
Are comfortable designing and operating distributed systems (e.g., microservices, message queues, data pipelines) in production.
Have strong experience with at least one JVM language (ideally Java) and relational databases (e.g., MySQL); experience with technologies like Kafka, asynchronous processing, or large‑scale data systems is a plus.
Care deeply about reliability, observability, and operational excellence, and have participated in or run on‑call rotations before.
Communicate clearly with engineers and non‑engineers, and enjoy working closely with product, design, and non‑technical partners in security and compliance.
Value mentorship, feedback, and inclusion, and want to help build a team where people from different backgrounds can do their best work.
Nice to have
Experience in security, compliance, risk, or privacy domains (e.g., SOX, ISO 27001, SOC reports, data protection) or strong interest in learning this space.
Background building data or reporting platforms that integrate with third‑party systems and internal data warehouses.
Experience with Kafka, event‑driven architectures, or large‑scale data ingestion and processing.
Prior work with auditors, risk, or GRC teams, or building systems that support audits and regulatory requirements.
Why HubSpot
HubSpot engineers work in small, autonomous teams with a high degree of ownership over what they ship and how they run it in production. We deploy frequently, learn quickly from our customers, and invest heavily in engineering excellence and developer experience. In Security Automated Assurance, you’ll see a direct connection between the systems you build and HubSpot’s ability to earn and keep our customers’ trust at scale.
