At a Glance
- Tasks: Join our team to shape AI compliance and guide data protection strategies.
- Company: Harness, a leading AI Software Delivery Platform valued at $5.5B.
- Benefits: Remote work options, competitive salary, and opportunities for professional growth.
- Other info: Work remotely from France, Spain, Germany, or the UK.
- Why this job: Make a real impact on responsible AI use and global privacy standards.
- Qualifications: Qualified lawyer with 1-3+ years in privacy and technology law.
The predicted salary is between 60000 - 80000 € per year.
Harness is the AI Software Delivery Platform company, led by technologist and entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B). Harness has raised approximately $570M in funding and is valued at $5.5B, backed by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual Ventures, Citi Ventures, and more. As AI accelerates code creation, the real bottleneck has shifted to everything after the code – testing, deployments, application security, reliability, compliance, and cost optimization. Harness brings AI and automation to this “outer loop,” helping teams ship software faster while maintaining security and governance throughout the entire software delivery lifecycle.
Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness Platform applies deep context and intelligent automation across the software delivery lifecycle with governance and policy-driven controls embedded throughout the platform. Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls, and helped manage $2.8B in cloud spend — enabling customers like United Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%, reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency. With a global team across 26 offices and 25 countries, Harness is shaping the future of AI software delivery — and we’re looking for exceptional talent to help us move even faster.
Position Summary
We are seeking an experienced and strategic Counsel to join our Privacy, Security & AI (“PSAI”) Office. In this role, you will play a critical part in guiding our product and AI compliance, supporting global privacy and data protection strategy, and helping shape the company’s approach to responsible and ethical data use. You’ll advise senior leadership, collaborate with cross-functional stakeholders, and help ensure that our data practices are aligned with global legal and regulatory obligations, including those emerging around AI governance and advanced technologies.
About the role
- AI
- Support the development and implementation of the AI Governance Program
- Draft and implement AI policies, procedures, and best practices for both internal use of AI and product development
- Lead internal awareness campaigns to foster a culture of responsible AI across the organization.
- Support AI Use Case Intake Assessments
- Provide AI advice to key stakeholders (product, procurement)
- Support customers queries and questionnaires
- Product Compliance
- Collaborate closely with product and engineering teams to evaluate and mitigate privacy and AI compliance risks during development and deployment.
- Review and assess AI/ML use cases for compliance with legal and ethical standards, including EU AI Act, OECD AI Principles, and NIST AI RMF.
- Contribute to development of governance frameworks for responsible AI, including fairness, explainability, and accountability controls.
- Privacy & Data Protection Legal Strategy
- Lead complex legal analysis and provide strategic privacy advice on global data protection laws (e.g., GDPR, CCPA/CPRA, LGPD, PIPEDA, APPI), with a main focus on US federal and state privacy and EU GDPR.
- Guide business and technical teams on lawful bases for processing, purpose limitation, transparency, and data minimization.
- Evaluate and advise on complex personal data use cases, including sensitive data, automated decision-making, and biometric processing.
- Implement best practices around privacy to ensure the competitive edge of the company.
- Draft and review breach-related communications, including regulator and data subject notices.
- Conduct privacy reviews for third-party vendors and tools to ensure alignment with internal standards and legal requirements.
- Drive the development, maintenance, and enhancement of the company’s privacy compliance program.
- Maintain and oversee updates to the Records of Processing Activities (ROPA), and ensure accountability documentation is current and complete.
- Partner with security, compliance, and product teams to integrate privacy by design into internal processes and external-facing technologies.
- Lead and advise on complex Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
- Oversee and conduct Transfer Impact Assessments (TIAs) to assess and document data transfer risks.
- Manage Legitimate Interests Assessments (LIAs) and ensure robust justification and safeguards are in place.
- Identify privacy and AI-related risks and recommend scalable mitigation strategies across the organization.
- Audits, Monitoring & Regulatory Readiness
- Support or lead the legal function in responding to privacy audits, regulator inquiries, and due diligence requests.
- Prepare documentation, gap analyses, and remediation plans to ensure audit readiness.
- Track and interpret global privacy and AI regulatory developments, and support internal implementation efforts.
About you
- Qualified lawyer (active bar membership in at least one jurisdiction).
- 1-3+ years of legal experience, with a focus on privacy, data protection, and technology law.
- Deep understanding of GDPR, CCPA/CPRA, and global privacy frameworks.
- Preferred experience with FedRamp, PCI DSS and ISO frameworks.
- Extensive experience with PIAs/DPIAs, TIAs, LIAs, and cross-border data transfer mechanisms.
- Strong understanding of privacy issues in product development, data science, and AI applications.
Preferred:
- CIPP/E, CIPP/US and AIGP.
- Direct experience working with or interpreting AI legal and regulatory frameworks (e.g., EU AI Act).
- Strong negotiation skills, particularly in data protection clauses and international data transfer agreements.
Work Location
Remote within France, Spain, Germany, or the UK.
Counsel – Privacy, Security & AI Office in London employer: Harness
Harness is an exceptional employer that fosters a dynamic and innovative work culture, where employees are empowered to shape the future of AI software delivery. With a strong focus on professional growth, Harness offers extensive opportunities for career advancement and development, alongside a commitment to ethical practices in privacy and data protection. Working remotely from France, Spain, Germany, or the UK, you will be part of a global team that values collaboration and creativity, making a meaningful impact in the tech industry.
StudySmarter Expert Advice🤫
We think this is how you could land Counsel – Privacy, Security & AI Office in London
✨Tip Number 1
Network like a pro! Reach out to folks in your industry on LinkedIn or at events. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Know what they stand for, especially around privacy and AI, so you can show how you fit right in!
✨Tip Number 3
Practice your pitch! Be ready to explain how your skills align with the role. Highlight your experience in privacy and data protection, and don’t forget to mention any relevant legal frameworks you know.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of the Harness team.
We think you need these skills to ace Counsel – Privacy, Security & AI Office in London
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter for the Counsel position. Highlight your experience in privacy, data protection, and AI compliance, as these are key areas for us at Harness.
Showcase Relevant Experience:When detailing your work history, focus on your legal experience related to GDPR, CCPA, and AI frameworks. We want to see how your background aligns with our needs in the Privacy, Security & AI Office.
Be Clear and Concise:Keep your application straightforward and to the point. Use clear language to convey your qualifications and avoid jargon unless it's relevant to the role. We appreciate clarity!
Apply Through Our Website:Don’t forget to submit your application through our official website. This ensures that your application gets to the right people and helps us keep track of all candidates efficiently.
How to prepare for a job interview at Harness
✨Know Your Stuff
Make sure you brush up on your knowledge of privacy laws like GDPR and CCPA, as well as AI governance frameworks. Being able to discuss these topics confidently will show that you're not just familiar with the legal landscape but also passionate about it.
✨Showcase Your Experience
Prepare specific examples from your past work that demonstrate your expertise in privacy, data protection, and technology law. Highlight any experience you have with PIAs, DPIAs, and compliance strategies, as this will resonate well with the interviewers.
✨Ask Smart Questions
Come prepared with insightful questions about Harness's approach to AI governance and privacy compliance. This not only shows your interest in the role but also gives you a chance to assess if the company aligns with your values and career goals.
✨Be Ready for Scenario-Based Questions
Expect to tackle hypothetical scenarios related to privacy breaches or AI compliance challenges. Practise articulating your thought process and how you would navigate these situations, as this will demonstrate your strategic thinking and problem-solving skills.