CrawlJobs Logo

Legal Counsel - Data Privacy, InfoSec & AI Regulation

K2 Partnering Solutions

Location Icon

Location:
Italy, Milano

Category Icon
Category:
Legal

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

K2 Partnering Solutions is a global provider of unique end-to-end consultative solutions in the enterprise applications, AI, and cloud space. We are seeking a Legal Counsel with deep expertise in data privacy, cybersecurity, and the emerging field of AI governance to join our global legal team. This role will support cross-functional efforts to ensure legal and regulatory compliance across global privacy frameworks, information security standards, and responsible AI use. The ideal candidate will play a critical role in advising on privacy-by-design, negotiating key data agreements, managing risk assessments, and shaping policy and governance standards within a fast-paced, technology-driven environment.

Job Responsibility:

  • Advise on global data privacy and cybersecurity compliance frameworks, including: GDPR, UK DPA 2018, CCPA/CPRA, LGPD, and other international privacy regulations
  • Provide guidance on information security certifications and frameworks such as ISO/IEC 27001, SOC 2, and NIST CSF
  • Monitor and advise on AI governance standards, including the EU AI Act and ISO/IEC 42001 (AI Management System Standard)
  • Collaborate cross-functionally with InfoSec, product, legal, and engineering teams to ensure legal compliance, risk mitigation, and privacy-by-design in systems and operations
  • Draft and negotiate key data and privacy-related agreements, including Data Protection Agreements (DPAs), Standard Contractual Clauses (SCCs), and data processing or sharing terms
  • Advise on Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), and AI impact assessments, aligning with regulatory and ethical standards
  • Support privacy and security audits, assist in certification processes (e.g., ISO 27001, SOC 2), and manage regulatory inquiries related to data protection, cybersecurity, or AI
  • Develop and maintain internal policies and training materials on data privacy, cybersecurity best practices, and responsible AI use
  • Respond to and coordinate the completion of client security and privacy questionnaires, ensuring accurate representation of compliance posture and certifications

Requirements:

  • Law degree with a specialization or demonstrated experience in data privacy, cybersecurity law, or technology law
  • 5+ years of relevant legal experience, ideally in a multinational company or top-tier law firm
  • Strong understanding of major global privacy regulations, including GDPR, UK DPA 2018, CCPA/CPRA, LGPD, and other key international frameworks
  • Knowledge of information security standards and certifications (e.g., ISO/IEC 27001, SOC 2, NIST CSF)
  • Familiarity with AI-related regulatory frameworks, such as the EU AI Act and ISO/IEC 42001, and understanding of responsible AI principles
  • Proven ability to draft and negotiate complex data protection agreements (DPAs), Standard Contractual Clauses (SCCs), and data processing or sharing terms
  • Experience conducting or advising on Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), and AI impact assessments
  • Comfortable collaborating with cross-functional teams, including InfoSec, Engineering, Product, and Compliance, to implement privacy and security best practices
  • Excellent legal research, analytical, and communication skills, with the ability to simplify complex issues for diverse stakeholders
  • Fluent in English

Nice to have:

  • other language skills are a plus
  • Recognized privacy certifications such as CIPP/E, CIPM, or CIPT are an asset

Additional Information:

Job Posted:
December 09, 2025

Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.