Privacy Counsel
HybridBarcelona, Catalonia, Spain
Job Summary
Provide legal advice on data protection matters under global frameworks such as the GDPR, offering expert, risk-based privacy guidance to the business on new products, initiatives, and operational changes. Draft and negotiate Data Processing Agreements and intra-group transfer agreements, conduct privacy due diligence for third-party onboarding and M&A contexts, and support data mapping activities including Data Protection Impact Assessments. Develop and maintain global privacy policies, notices, and internal procedures while conducting maturity audits to ensure consistent reporting and remediation. Manage investigations or proceedings with data protection authorities and support communications with the Group management board and supervisory committees. Monitor ongoing developments around AI governance to improve compliance frameworks and ensure responsible use of AI systems.
Required Qualifications
- Proven experience (2 to 3 + years) in data protection / privacy or related areas
- An educational background in law, at least bachelor's or comparable degree
- Excellent English language skills
- Strong communication and stakeholder management skills, with experience influencing across different cultures and functions
- Proactive, taking ownership, anticipating challenges, and actively supporting initiatives forward
Desired Qualifications
- Certified expertise on EU privacy laws (IAPP CIPP/E, CIPM, TÜV DPO etc.) is a plus
- Demonstrated experience in advising online technology companies and data-driven businesses, across multiple jurisdictions is a plus
- Polish, Spanish or German is a plus
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.