At a Glance
- Tasks: Shape and implement cutting-edge data protection and privacy policies globally.
- Company: Join Sumsub, a leading verification platform trusted by over 4,000 clients.
- Benefits: Enjoy remote work, flexible hours, extra time off, and fair compensation.
- Why this job: Make a real impact on online security and privacy for users worldwide.
- Qualifications: 5+ years in data protection, strong communication skills, and a passion for privacy.
- Other info: Be part of a diverse team that values individuality and continuous growth.
The predicted salary is between 36000 - 60000 £ per year.
Sumsub is a leading full-cycle verification platform that enables scalable compliance. From identity and business verification to ongoing monitoring, our platform adapts to different risk appetites and market demands, ensuring global compliance. It allows customizing analytics and workflows with a no-code interface.
Over 4,000 clients including Bitpanda, Wirex, Avis, Bybit, Vodafone, Duolingo, Kaizen Gaming, and TransferGo trust Sumsub to accelerate growth, prevent fraud, and maintain compliance worldwide.
Now we are looking for a Legal Counsel (Privacy & Data Protection) to join our Data Protection team. As a key member of our global legal team, you will play a pivotal role in shaping and implementing cutting-edge data protection, security, and privacy policies, ensuring compliance across the EMEA, APAC, US and other regions. You will also be responsible for keeping abreast of emerging data protection legislation affecting the regions in which we provide service.
What You Will Be Doing
- Maintain and update data protection, security, and privacy policies and procedures, and ensure effective consent management.
- Assist with data deletion and DSARs, and respond to privacy-related queries with timely and pragmatic advice.
- Support the review and drafting of data protection contractual terms in agreements with customers and suppliers, including DPAs, DTAs, and other relevant agreements.
- Assist with the onboarding of new technologies and/or vendors.
- Maintaining Records of Processing Activities (ROPA), conducting Data Protection Impact Assessments (DPIAs), and performing Legitimate Interest Assessments (LIAs) to ensure compliance with GDPR and support privacy-by-design across the organization.
- Monitor emerging data protection legislation and oversee data processing registrations across jurisdictions.
- Deliver (or oversee delivery of) GDPR training (in some cases bespoke to the business team) to new starters, carry out ad-hoc training related to data storage, retention, sharing and deletion of all data.
- Support the maintenance of the firms ISO 27001, ISO 27701, GDPR, UK GDPR and other data privacy certifications.
About You
- 5+ years of practical experience of applying relevant data protection and privacy legislation (GDPR, UK GDPR etc.) ideally within tech companies operating on a global scale.
- You are a self-starter who can quickly understand the company's operations and work independently with minimal supervision.
- IAPP CIPP/E, CIPM or CIPT or equivalent certification is desirable.
- A general understanding of technology and security issues impacting privacy projects and programs.
- A genuine interest and desire to work in the privacy field.
- Awareness of ongoing and recent developments across the privacy landscape.
- Attention to detail and commitment to quality, strong written and verbal communication skills.
- Team-focused with a passion for learning, excellence and continuous improvement.
- Strong problem-solving abilities, flexible, able to navigate transformational growth and ambiguity, show initiative and anticipate needs, and able to focus on multiple workstreams at once.
- Experience handling cross-border data privacy matters and implementing local regulatory requirements.
What We Offer
- Remote-first, trust-based culture. Work from the place that works best for you. No mandatory office days, no attendance trackers.
- True flexibility. We do not fix you to a 9-to-5 schedule. You can adjust your working hours when needed, as long as your day stays productive and in sync with the team.
- Extra time off. Your birthday is a holiday here. Add to that 10 personal days each year, seven sick days without paperwork, and extra time to enjoy Christmas and New Year.
- Work that matters. Our mission is to build a digital world that is secure, accessible and inclusive for everyone.
- Compensation. We offer fair and transparent pay, benchmarked to the market.
- Truly global. We work across continents and time zones, with teammates and customers from all over the world.
- Growth built in. Clear goals, open feedback and personal development plans.
- Team offsites. Sometimes just Slack is not enough. That is why we meet in person a few times a year.
- Getting you set up. We make sure you have access to the tools and hardware you need to do your work well.
- Friendly by design. Our logo is a dog for a reason. We keep things human, open and kind.
The hiring stages TA screening -> Hiring Manager Interview -> Assignment. Sounds like a great opportunity for your career development? Then go ahead and apply! We are a global community of innovators, creators, and thinkers, and we believe that diversity fuels our innovation. Sumsub is proud to be an equal opportunity employer, committed to building a diverse and inclusive workforce. We welcome applications from people of all backgrounds, cultures, genders, experiences, abilities and perspectives. Join us in shaping the future inclusively.
Legal Counsel (Privacy & Data Protection) employer: Sumsub
Contact Detail:
Sumsub Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Legal Counsel (Privacy & Data Protection)
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend webinars, and join relevant groups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you tailor your responses and show that you're genuinely interested in being part of their team.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online platforms. This will help you get comfortable with common questions and refine your answers, making you more confident when it counts.
✨Tip Number 4
Don’t forget to follow up after interviews! A quick thank-you email can leave a lasting impression and shows your enthusiasm for the role. Plus, it keeps you on their radar as they make their decision.
We think you need these skills to ace Legal Counsel (Privacy & Data Protection)
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Legal Counsel role. Highlight your experience with data protection legislation and any relevant certifications. We want to see how your skills align with our needs!
Show Your Passion: Let us know why you're excited about working in privacy and data protection. Share any personal projects or interests that demonstrate your commitment to this field. We love seeing genuine enthusiasm!
Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language to describe your experiences and achievements. We appreciate a well-structured application that’s easy to read!
Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. We can’t wait to hear from you!
How to prepare for a job interview at Sumsub
✨Know Your Data Protection Legislation
Make sure you brush up on GDPR, UK GDPR, and any other relevant data protection laws before your interview. Being able to discuss these regulations confidently will show that you're not just familiar with the legal landscape but also genuinely interested in the role.
✨Showcase Your Problem-Solving Skills
Prepare examples of how you've navigated complex data privacy issues in the past. Whether it's handling DSARs or conducting DPIAs, having specific scenarios ready will demonstrate your practical experience and ability to think critically under pressure.
✨Understand the Company’s Operations
Take some time to research Sumsub and its verification platform. Understanding how their services work and the challenges they face in compliance will help you tailor your responses and show that you're a good fit for their team.
✨Prepare Questions About Their Privacy Policies
Think of insightful questions regarding their current data protection policies and how they adapt to emerging legislation. This not only shows your interest in the role but also your proactive approach to ensuring compliance and security.