At a Glance
- Tasks: Support global data protection and AI governance while collaborating across teams.
- Company: Join HackerOne, a leader in privacy and security innovation.
- Benefits: Enjoy competitive salary, equity options, unlimited PTO, and comprehensive health benefits.
- Other info: Dynamic role with opportunities for growth in a fast-paced environment.
- Why this job: Make a real impact on privacy in an AI-driven world with hands-on legal work.
- Qualifications: Qualified lawyer with GDPR experience and strong analytical skills.
The predicted salary is between 80000 - 100000 £ per year.
HackerOne is seeking a Privacy Counsel to join our Privacy function to support the growing volume and complexity of global data protection, AI governance, and commercial contracting needs across the business. In this role, you will help accelerate product development, sales motions, internal procurement and cross‑border data operations by providing thoughtful, practical, and globally relevant privacy support. You will work closely with colleagues in Product, Security, Compliance, Engineering, and Sales to deliver clear guidance, support privacy assessments, review customer and vendor agreements, and help us move quickly and responsibly as we grow. This is an individual contributor role ideal for a privacy lawyer who enjoys hands‑on work, cross‑functional collaboration, and applying structured legal thinking to emerging technologies.
What You Will Do
- Apply an AI‑first approach by using AI tools responsibly to improve research quality, drafting efficiency, and privacy assessment workflows.
- Demonstrate change agility by adapting quickly to evolving global privacy and AI regulations, adjusting guidance as new risks, tools, or requirements emerge.
- Use first‑principles problem solving to simplify complex privacy questions, clarify assumptions, and provide clear, structured recommendations.
- Leverage data‑driven decision making during DPIAs and related assessments by grounding evaluations in evidence, criteria, and regulatory expectations.
- Support the current Privacy function with global privacy assessments, including DPIAs, AI DPIAs, TIAs, LIAs, and other structured risk reviews.
- Review new and existing product features, AI capabilities, and data practices as part of privacy‑by‑design, identifying risks and opportunities early in development.
- Draft, review, and negotiate data processing agreements (DPAs), privacy terms, and commercial contracts to support global sales and procurement.
- Maintain and update privacy contractual documentation and internal templates and policies.
- Create and deliver internal training on privacy and AI governance.
- Support internal and external privacy audits, coordinate with external advisors, and ensure alignment across business functions on assessment findings and remediation.
- Monitor evolving privacy laws, case law, AI governance frameworks, and regulatory trends, sharing key insights with stakeholders to maintain compliance and anticipate future requirements.
Minimum Qualifications
- Qualified lawyer (UK or EU) with GDPR experience, PQE 5+ years (mix of in‑house or private practice experience).
- Strong knowledge of EU/UK GDPR and familiarity with global privacy laws (US, Middle East, Asia).
- Experience drafting and negotiating DPAs and handling privacy‑related issues in a global business context.
- Proven ability to manage data breaches, regulatory notifications and privacy audits.
- Excellent communication skills with the ability to simplify complex legal concepts for non‑legal audiences.
- Strong understanding of AI technologies, their ethical implications, and related legal frameworks.
- Excellent analytical, problem‑solving, and decision‑making skills with the ability to provide practical and strategic legal advice.
- Experience in using privacy management systems such as OneTrust is required.
- Ability to manage multiple priorities and work collaboratively across diverse teams.
- Comfortable working independently in a fast‑paced, global environment.
Preferred Qualifications
- Certified Information Privacy Professional (CIPP).
- Artificial Intelligence Governance Professional (AIGP) and other relevant certifications.
- German language proficiency.
- Experience in cybersecurity, offensive security, or SaaS environments.
Compensation
UK Tier: £80K – £100K Offers equity.
Benefits
- Health (medical, vision, dental), life, and disability insurance.
- Equity stock options.
- Retirement plans.
- Paid public holidays and unlimited PTO.
- Paid maternity and parental leave.
- Leaves of absence (including caregiver leave and leave under CO's Healthy Families and Workplaces Act).
- Employee Assistance Program.
Eligibility may differ by country.
Legal & EEO Statements
Visa/work permit sponsorship is not available. Employment at HackerOne is contingent on a background check. HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws. This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time. For U.S. based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.
Privacy Counsel — AI-First Global Privacy & DPAs employer: HackerOne
HackerOne is an exceptional employer that fosters a collaborative and innovative work culture, particularly for those in the Privacy Counsel role. With a strong focus on employee growth, we offer comprehensive benefits including unlimited PTO, equity options, and robust health insurance, all while working at the forefront of AI governance and global data protection in a dynamic environment. Join us to make a meaningful impact as we navigate the complexities of privacy in technology together.
StudySmarter Expert Advice🤫
We think this is how you could land Privacy Counsel — AI-First Global Privacy & DPAs
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend relevant events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their approach to privacy and AI governance, and think about how your skills can contribute. Tailor your responses to show you’re the perfect fit for their team.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online platforms to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive and engaged with our brand.
We think you need these skills to ace Privacy Counsel — AI-First Global Privacy & DPAs
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience with GDPR and privacy law. We want to see how your skills align with the specific needs of the Privacy Counsel role, so don’t hold back on showcasing your relevant achievements!
Showcase Your Collaboration Skills:Since this role involves working closely with various teams, it’s important to demonstrate your ability to collaborate effectively. Share examples of past experiences where you’ve worked cross-functionally, especially in fast-paced environments.
Be Clear and Concise:When drafting your application, clarity is key! Use straightforward language to explain complex legal concepts, as we appreciate candidates who can simplify information for non-legal audiences. This will show us your communication skills right from the start.
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about our company culture and values!
How to prepare for a job interview at HackerOne
✨Know Your Privacy Laws
Make sure you brush up on your knowledge of GDPR and other global privacy laws. HackerOne is looking for someone who can navigate these regulations with ease, so be prepared to discuss how you've applied this knowledge in past roles.
✨Showcase Your AI Understanding
Since the role involves an AI-first approach, demonstrate your understanding of AI technologies and their ethical implications. Be ready to share examples of how you've used AI tools in your previous work, especially in relation to privacy assessments.
✨Prepare for Cross-Functional Collaboration
This position requires working closely with various teams like Product, Security, and Sales. Think of examples where you've successfully collaborated across departments and how you communicated complex legal concepts to non-legal audiences.
✨Be Ready for Problem-Solving Scenarios
Expect to tackle hypothetical scenarios that require first-principles problem-solving. Practice simplifying complex privacy questions and providing structured recommendations, as this will showcase your analytical skills and decision-making abilities.