CrawlJobs Logo

Legal Counsel, Compliance & Data Privacy

https://www.marriott.com Logo

Marriott Bonvoy

Location Icon

Location:
India , Gurgaon

Category Icon
Category:

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The attorney in this position will be part of the Marriott Law Department providing legal services to the properties and offices part of the Asia Pacific Excluding China. This attorney will help support our culture of integrity by providing legal support for the company’s Ethics and Global Compliance program, including crucial risk areas such as Anti-corruption and anti-bribery, Economic and trade sanctions, Antitrust and competition law, Anti-money laundering, Ethics and Code of Conduct, White-collar crimes, Whistleblower hotline (Business Integrity Line), and other critical areas as designated by the company’s compliance programs. In addition, the Legal Counsel is also responsible for developing, implementing, and executing Marriott’s growing Global Privacy program while promoting compliance with applicable privacy, data, and information protection laws.

Job Responsibility:

  • Support the objectives set by the Board’s Audit Committee and the Company’s Legal and Ethical Steering Committee (LESC)
  • Support the APEC Continent’s Legal and Ethical Compliance Committee (LECC)
  • Collaborate with other corporate departments with compliance responsibilities
  • Function as part of investigation working groups
  • Provide legal advice and tactical direction to auditors, investigators, and human resource managers
  • Guide business partners and staff departments on day-to-day operational issues
  • Support legal compliance knowledge management efforts
  • Develop and provide legal compliance training
  • Support the Company’s Privacy & Information Security Continent Committee
  • Monitor and document data protection and privacy developments
  • Conduct legal reviews of national regulations, agency rules, national standards, and enforcement guidelines
  • Perform gap and risk assessments
  • Support business units with legal advice, privacy assessments, guidance, contract drafting, contract review, and contract negotiation
  • Administer, maintain, and improve company internal control privacy policies
  • Develop, review, and maintain training material and guidance
  • Provide legal advisory services on data protection and privacy incidents
  • Interact and communicate with national and local authorities
  • Collaborate with Global Information Security and other relevant business units

Requirements:

  • Excellent academic records with a law degree from an accredited law school
  • 3+ years of legal experience in a law firm or corporate law department of national reputation
  • Active Bar membership (if licensed in the United States) or practicing certificate
  • Experience in one or more of the following practice areas: (1) ABAC/AML/Investigations, (2) Trade/Sanctions, (3) Competition, (4) Data Protection/Privacy
  • Outstanding analytical, writing, and oral presentation skills
  • Excellent written and oral communication skills in English
  • Identify and assess issues quickly and provide legally sound recommendations consistent with good business practices and reason
  • Strong problem-solving/analytical skills and excellent organizational skills
  • Ability to work well under pressure while producing a high volume of accurate work
  • Strong interpersonal and consultative skills with an ability to interact effectively and work diplomatically with individuals at all levels
  • Constructive approach to dealing with conflict, and ability to influence and achieve successful results
  • Excellent client service
  • Ability to work independently, take ownership of, and effectively resolve problems
  • Ability to think strategically and provide leadership when needed
  • Flexibility for travel

Additional Information:

Job Posted:
March 22, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Legal Counsel, Compliance & Data Privacy

New

Senior Legal Counsel, Data Privacy

At Bombardier, we design, build and maintain the world’s peak-performing aircraf...
Location
Location
Canada , Dorval
Salary
Salary:
Not provided
bombardier.com Logo
Bombardier
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • More than 5 years of experience in a similar role for a company or in private practice, in a reputable law firm
  • Degree in Law and are a Member of the Quebec or Ontario Bar, or, a Degree in another Business-related discipline (e.g. IT) combined with a solid experience tied to the role
  • Good knowledge of global privacy laws, and the ability to interpret and apply such laws, in Quebec, the U.S. and Europe (GDPR)
  • Certified Information Privacy Professional (CIPP) or have a similar certification from the International Association of Privacy Professionals (IAPP) or other reputable professional association (or possess the relevant qualifications to become one and are willing to study towards such goal)
  • Experience with privacy breach incident responses, privacy impact assessments, and review of data processing agreements
  • Can reconcile compliance requirements with practical business needs
  • Possess excellent verbal and written communication skills
  • Fluency in both French and English is essential
  • Can manage large projects as a proven team player with excellent interpersonal skills
  • Possess solid knowledge of various IT applications such as Microsoft Outlook, Word and Excel
Job Responsibility
Job Responsibility
  • Support the implementation of the Privacy & Data Protection program and governance strategy, based on the company’s operations and applicable global legislation
  • Provide legal expertise in various privacy-related matters
  • Support the continuous adherence to the company’s Privacy & Data Protection program, policies, and best practices
  • Ensure compliance with applicable laws and regulations
  • Develop and implement trainings relating to Privacy & Data Protection for internal teams
  • Ensure compliance with applicable laws and regulations, including by reviewing documentation such as data processing agreements, privacy notices, policies, processes and directives, and advising teams
  • Manage privacy incidents and breaches, internal audits, investigations and interact with local data protection authorities, when required
  • Process and manage data subjects’ rights requests
  • Advise on the keeping of certain records of processing activities
  • Perform activities related to privacy impact assessments and other similar risk assessments or management activities
What we offer
What we offer
  • Insurance plans (Dental, medical, life insurance, disability, and more)
  • Competitive base salary
  • Retirement savings plan
  • Employee Assistance Program
  • Tele Health Program
  • Fulltime
Read More
Arrow Right
New

Senior / Legal Counsel - Data Privacy

Location
Location
Hong Kong , Hong Kong
Salary
Salary:
Not provided
https://www.randstad.com Logo
Randstad
Expiration Date
January 25, 2026
Flip Icon
Requirements
Requirements
  • Bachelor Degree with at least 8 years of relevant experience (can consider non-qualified Lawyers) ideally with data privacy qualifications
  • Demonstrated experience of privacy laws across APAC, Europe, US and other regions
  • Ideally some exposure working in-house within large scale organisations
  • Able to work with stakeholders
  • Fluent English and Chinese is required
Job Responsibility
Job Responsibility
  • Draft, review and negotiate various agreements related to policies, guidelines and standards
  • Work with the team in conducting privacy risk assessments and data breach incident handling
  • Responsible for providing support and advice to business units on data privacy and protection issues across the region and supporting global functions
  • Build and manage tools/systems with technology teams for internal related processes
  • Conduct a variety of data protection and privacy training to teams
  • Fulltime
Read More
Arrow Right

Global Data Privacy Counsel

We are looking for a senior attorney with extensive experience in global data pr...
Location
Location
United States , Atlanta
Salary
Salary:
Not provided
arrive.com Logo
Arrive
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Juris Doctor degree from a reputable, accredited U.S. law school
  • Active license in good standing with one or more U.S. state bars (Georgia preferred)
  • 10+ years of progressive experience in data privacy and cybersecurity legal matters, with significant in-house experience at a high-growth, technology-driven company
  • Deep expertise and knowledge of and hands-on experience with U.S. and international data privacy, cybersecurity, and compliance laws and frameworks (including GDPR, CCPA/CPRA, PCI-DSS, ISO certifications, and other relevant global standards) and leading-edge AI regulations and frameworks
  • Demonstrated success in providing strategic legal counsel that balances risk management with enabling innovation and business growth, particularly in payments and data-driven initiatives
  • Proven experience leading global privacy and data protection programs, including managing privacy and data protection risk frameworks and governance
  • Experience managing external counsel, auditors, and regulators
  • Proven ability to lead, develop, and inspire diverse, global teams, including direct leadership experience with Data Protection Officers and other privacy professionals
  • Strong business acumen with the ability to translate complex legal concepts into clear, actionable advice that aligns with business objectives and supports deal-making and sales acceleration
  • Excellent communication and interpersonal skills, with the ability to influence stakeholders at all levels, including senior executives and cross-functional teams globally
Job Responsibility
Job Responsibility
  • Serve as a trusted strategic legal advisor to executive leadership, business unit and function heads, and the governance committees on global privacy, data protection, and cybersecurity risks, as well as opportunities aligned with rapid business growth and innovation
  • Design, lead, and continuously evolve the global privacy and data protection program, ensuring it not only meets regulatory requirements but also supports scalable growth and competitive advantage in a fast-paced, high-growth environment
  • Partner closely with product, technology, payments, data, software and hardware sales, marketing, and strategy teams to embed privacy-by-design and data governance principles into all data-driven and payment-related initiatives
  • Advise on privacy, data protection, cross-border data processing, and emerging technologies (AI and machine learning), in connection with parking, public transport and other urban mobility technologies and data services (B2B, B2C), to help the company navigate these complex regulatory environments while accelerating innovation
  • Balance risk management with enabling agility—help business units achieve their ambitious growth objectives without compromising compliance or customer trust
  • Lead and manage a global, unified privacy and data protection team, including the EU Data Protection Officer and EU Privacy Program Manager, and serve as the global privacy and data protection leader responsible for harmonizing privacy and data protection practices across all regions
  • Act as the company’s U.S. and Canada Privacy Officer, overseeing all U.S.-specific and Canada-specific aspects of the global privacy and data protection program
  • Own enterprise-wide development, implementation, and continuous improvement of privacy and data protection policies, standards, and frameworks aligned with relevant global privacy and data protection-related regulations
  • Develop and maintain a privacy and data protection risk management framework and a dashboard of key privacy metrics to inform leadership decision making and monitor program effectiveness in a high-growth environment
  • Lead privacy and data protection audits and program assessments to ensure compliance and identify areas for improvement aligned with rapid company growth
Read More
Arrow Right

Legal Counsel - Data Privacy, InfoSec & AI Regulation

K2 Partnering Solutions is a global provider of unique end-to-end consultative s...
Location
Location
Italy , Milano
Salary
Salary:
Not provided
k2partnering.com Logo
K2 Partnering Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Law degree with a specialization or demonstrated experience in data privacy, cybersecurity law, or technology law
  • 5+ years of relevant legal experience, ideally in a multinational company or top-tier law firm
  • Strong understanding of major global privacy regulations, including GDPR, UK DPA 2018, CCPA/CPRA, LGPD, and other key international frameworks
  • Knowledge of information security standards and certifications (e.g., ISO/IEC 27001, SOC 2, NIST CSF)
  • Familiarity with AI-related regulatory frameworks, such as the EU AI Act and ISO/IEC 42001, and understanding of responsible AI principles
  • Proven ability to draft and negotiate complex data protection agreements (DPAs), Standard Contractual Clauses (SCCs), and data processing or sharing terms
  • Experience conducting or advising on Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), and AI impact assessments
  • Comfortable collaborating with cross-functional teams, including InfoSec, Engineering, Product, and Compliance, to implement privacy and security best practices
  • Excellent legal research, analytical, and communication skills, with the ability to simplify complex issues for diverse stakeholders
  • Fluent in English
Job Responsibility
Job Responsibility
  • Advise on global data privacy and cybersecurity compliance frameworks, including: GDPR, UK DPA 2018, CCPA/CPRA, LGPD, and other international privacy regulations
  • Provide guidance on information security certifications and frameworks such as ISO/IEC 27001, SOC 2, and NIST CSF
  • Monitor and advise on AI governance standards, including the EU AI Act and ISO/IEC 42001 (AI Management System Standard)
  • Collaborate cross-functionally with InfoSec, product, legal, and engineering teams to ensure legal compliance, risk mitigation, and privacy-by-design in systems and operations
  • Draft and negotiate key data and privacy-related agreements, including Data Protection Agreements (DPAs), Standard Contractual Clauses (SCCs), and data processing or sharing terms
  • Advise on Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), and AI impact assessments, aligning with regulatory and ethical standards
  • Support privacy and security audits, assist in certification processes (e.g., ISO 27001, SOC 2), and manage regulatory inquiries related to data protection, cybersecurity, or AI
  • Develop and maintain internal policies and training materials on data privacy, cybersecurity best practices, and responsible AI use
  • Respond to and coordinate the completion of client security and privacy questionnaires, ensuring accurate representation of compliance posture and certifications
Read More
Arrow Right

Privacy Legal Counsel

The Coloplast North America BEC team advises leaders and employees within the No...
Location
Location
United States , Minneapolis
Salary
Salary:
Not provided
coloplast.com Logo
Coloplast
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Juris Doctorate from US accredited law school
  • Licensed attorney in the US, admitted to the Bar in at least one jurisdiction
  • Minimum 3+ years legal experience as a practicing attorney
  • Demonstrated expertise in HIPAA, and US data privacy laws and issues applicable to medical device companies and HIPAA covered entities
  • Previous experience providing Privacy support for a medical device or pharmaceutical company
Job Responsibility
Job Responsibility
  • Subject matter expert on HIPAA and US/Canada consumer privacy laws, supporting the North American businesses which includes non-HIPAA covered entities, and two HIPAA covered entities and many Business Associate functions
  • Provide guidance and training about permitted uses and disclosures of personal data to North American stakeholders
  • Provide guidance to global and IT stakeholders to ensure that privacy requirements are embedded across technology platforms and systems
  • Oversee investigation into data privacy incidents and breaches, ensuring prompt remediation and corrective actions in compliance with HIPAA and consumer privacy standards
  • Other job duties as assigned
  • Parttime
Read More
Arrow Right

Legal Counsel

We are looking for a mid-level Legal Counsel (m/f/d) to help Appinio sustain its...
Location
Location
Germany , Hamburg
Salary
Salary:
Not provided
appinio.com Logo
Appinio
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of experience in privacy and data protection, ideally gained in-house
  • Strong knowledge of EU and German data protection law (GDPR, BDSG, TTDSG)
  • Experience in commercial contracting and general corporate compliance
  • Ideally a fully qualified German lawyer (Volljurist) who has completed both state examinations (Zweites Staatsexamen)
  • Confident in advising on both EU and international level
  • Confident advising internal stakeholders across Product, Research, Tech, and Commercial
  • Excellent legal drafting skills in German and English
  • Proactive, analytical, and comfortable working independently
  • Curious about the intersection of privacy, technology, and AI
  • Based in Europe (ideally in Germany, Spain, or the UK)
Job Responsibility
Job Responsibility
  • Advise on EU GDPR, and other privacy laws across the UK, US, and LATAM
  • Draft, review, and negotiate Data Processing Agreements (DPAs) and Standard Contractual Clauses (SCCs)
  • Manage Data Subject Rights Requests (access, deletion, portability, etc.) within statutory deadlines
  • Oversee Data Protection Impact Assessments (DPIAs) and ensure privacy-by-design in product and research processes
  • Monitor cross-border data transfers and manage Transfer Impact Assessments (TIAs)
  • Maintain and enhance Appinio’s internal privacy policies and compliance frameworks
  • Conduct internal audits and risk reviews, driving continuous improvement
  • Track new regulatory developments and translate them into actionable business guidance
  • Partner with commercial legal to ensure contracts align with privacy obligations
  • Support due diligence processes and respond to client security and privacy questionnaires
What we offer
What we offer
  • Flexibility Policy - no hard cap on the number of vacation days
  • Temporary work from abroad - up to 180 days per year (if based in EU)
  • All the hardware you need and your own MacBook
  • Deutschland ticket or access to a mobility budget (if located in Hamburg or Berlin)
  • Subsidised Urban Sports Club membership (if located in Germany or Spain)
  • Access to Co-working spaces (if located in Hamburg, Berlin, Munich, London, Madrid, Barcelona, or New York)
  • Fulltime
Read More
Arrow Right

Privacy Counsel

Privacy Counsel role at Fever, the world's leading tech platform for culture and...
Location
Location
Spain , Madrid
Salary
Salary:
Not provided
https://feverup.com/fe Logo
Fever
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Be a barred lawyer in a EU jurisdiction or the UK is a plus (especially France, UK, Portugal and Germany)
  • 6 or more years post-bar professional legal experience focused on implementation of global privacy compliance programs
  • At least 4-5 years of in-house experience —preferably in high-growth, technology and direct-to-consumer business
  • An internationally recognized privacy certification, such as CIPP/E, CIPM, CIPT or CDPP is a plus
  • Speak fluent English with a command of legal English, with Portuguese, German, French, Italian or Spanish fluency a plus
  • Previous experience in implementation and deployment of privacy procedures (data mapping, vendor risk management, data subject requests, etc.)
  • Excellent academic record or experience in top-notch companies or top-tier law-firms
  • Team-player commitment and technology affinity with marketplace platforms and digital services
Job Responsibility
Job Responsibility
  • Support Privacy team in developing Fever's global privacy program to ensure compliance with data protection laws across Europe and international regulations
  • Provide advice to Legal department and business units on privacy requirements and risks for informed decision making and privacy-by-design initiatives
  • Assistance in definition of requirements and controls for monitoring ISO 27001 & ISO 27701 certifications
  • Perform third party services risk assessments and negotiate data sharing/processing agreements and data protection issues within commercial contracts
  • Maintain understanding of trends and initiatives in privacy and personal data management to provide risk-based strategic advice
  • Coordinate responses to requests from individuals and law enforcement or government agencies
  • Provide counsel and oversight on response to personal data breaches
  • Identify and escalate significant or potential data protection or privacy issues
  • Assist in design of training on privacy and data protection
What we offer
What we offer
  • Attractive compensation package consisting of base salary
  • 40% discount on all Fever events and experiences
  • Work in location in heart of city with possible travel across markets
  • Home office friendly
  • Responsibility from day one and professional and personal growth
  • Great work environment with young, international team of talented people
  • Health insurance and other benefits such as Flexible remuneration with 100% tax exemption through Cobee
  • English Lessons and Gympass
  • Possibility to receive in advance part of salary by Payflow
  • Free snacks, drinks and fruit at office
  • Fulltime
Read More
Arrow Right

Data Protection & AI Counsel

Our Privacy, AI & Data Protection Counsel position is a fantastic opportunity fo...
Location
Location
United Kingdom
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience with a focus on privacy, data protection, and AI domains
  • Expertise in global privacy concepts and laws (specifically US, EU, UK privacy and data protection laws are a must)
  • General understanding and experience handling other global laws or ability to learn, understand and practically implement new laws quickly
  • Expertise in AI governance frameworks (e.g., EU AI Act, ISO, NIST AI RMF)
  • Expertise in security best practices
  • Ability to assess a wide variety of complex situations and questions quickly and provide practical, business oriented advice
  • Ability to multi-task and work in a fast paced environment with a “go-getter” and hands on approach
  • Proven ability to learn quickly about new technologies and what data protection risks and challenges these create for the business and understand how to practically mitigate and manage such risks
  • Proven ability to assess, mitigate, and manage risks related to AI deployment, data privacy, and regulatory compliance
  • A team-player, collaborative mindset, with experience collaborating with legal, compliance, and technical teams to implement Privacy-Enhancing Technologies (PETs) and ensure responsible AI deployment across the organization
Job Responsibility
Job Responsibility
  • Be part of Wiz’s global Data Protection team to advance Wiz’s global privacy, data protection, and AI compliance program, with a specific focus on third party risk management and mitigation, enterprise initiatives involving AI and data protection considerations and AI Governance
  • Work closely with the wider Wiz legal, compliance and security teams
  • Support the procurement legal team as the Subject Matter Expert for privacy, AI and data protection matters arising in Wiz’s vendor relationships and third-party contracts
  • Advising and assisting Wiz’s commercial procurement attorneys on negotiating DPAs, security addenda and AI provisions
  • Providing practical, business oriented solutions while protecting Wiz’s data and interests
  • Developing and maintaining internal resources and providing training and guidance to help the teams with their BAU work
  • Provide guidance to internal business stakeholders on managing privacy, data protection, and AI-related risks in vendor engagements and a wide variety of internal initiatives involving privacy, AI and data protection considerations, ensuring alignment with Wiz’s compliance framework and principles and applicable laws
  • Identify, assess, mitigate and track privacy, data protection and AI-related risks at the enterprise level to ensure compliance with regulatory and industry standards, and help drive programs that strengthen privacy and AI risk management across the company
  • Contribute to the building and maturity of Wiz’s AI Governance Program and track the evolving landscape of AI regulations and standards (e.g., EU AI Act, US states GenAI Laws) and provide practical guidance to different internal teams
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.