Responsibilities
- Act as a legal authority on emerging AI, privacy, and security regulations, interpreting complex legal changes into practical guidance for leadership in both legal and technical domains.
- Support integration following acquisition by aligning AI, privacy, and security practices across entities under the new parent company structure, ensuring consistent data protection standards.
- Collaborate across teams to assess legacy processes and develop scalable governance models that meet corporate compliance expectations.
- Create and maintain privacy and AI-related sales materials and frequently asked questions to equip sales teams and speed up contract negotiations.
- Advise product teams on data handling practices including retention policies, lawful basis for processing, and international data transfers.
- Review user experience designs for compliance, particularly around dark patterns, and ensure privacy is embedded in AI systems and digital communications.
- Deliver expert legal guidance on AI, privacy, and security matters to executive, corporate, employment, product, and commercial departments across both organizations.
- Lead cybersecurity legal initiatives involving multiple departments, setting clear objectives and outcomes in line with new regulatory demands.
- Improve incident response frameworks and policies to align with global data protection requirements and ensure ongoing resilience.
- Manage all aspects of data subject access requests from initiation through resolution.
- Conduct data protection and privacy impact assessments in partnership with engineering and product teams.
- Ensure privacy-by-design principles are integrated throughout the product development lifecycle.
- Train internal teams and maintain up-to-date policies related to privacy and data handling.
- Support compliance with telecommunications regulations regarding SMS and email communications.
- Evaluate technical safeguards and recommend appropriate technical and organizational measures (TOMs).
- Translate enforcement trends and regulatory updates into proactive compliance strategies.
- Facilitate alignment between internal practices and external legal obligations in a post-acquisition environment.
- Promote consistent legal standards across jurisdictions with diverse privacy laws.
- Enable faster deal closures through accurate, legally sound privacy documentation.
- Provide ongoing legal support to cross-functional teams requiring AI and data governance expertise.