Lead legal reviews of data-related contracts, vendor agreements, and partnerships.
Ensure all contracts include legally enforceable data protection, privacy, and security clauses. Provide legal consultation on data-related policies, procedures, and compliance frameworks.
Serve as legal support for data regulatory compliance efforts, ensuring contractual language aligns with PDPL, GDPR, and other national & global laws.
Oversee legal risk assessments related to data usage, processing, and storage.
Ensure legal compliance in cross-border data transfers and jurisdiction-specific obligations.
Provide legal representation in regulatory discussions, audits, and investigations related to data governance.
Define legal procedures for data breach response, ensuring compliance with notification and reporting obligations in accordance with the national & global laws.
Support incident response teams in handling legal aspects of data breaches, including remediation strategies. Provide data legal expertise to Qiddiya's subsidiaries, affiliates, and partner organizations.
Ensure harmonization of data-related legal requirements across Qiddiya and its subsidiaries and affiliated/sister companies. Stay updated on legal and regulatory changes, aligning Qiddiya's data-related legal requirements.
Desired Candidate Profile
8+ years of experience in data protection law, and regulatory compliance.
Certifications: CIPP, CIPM, IAPP, ISO 27701. Deep knowledge of national & global data laws, and emerging regulatory frameworks.
Bachelor's degree in a relevant field is required; a Master's degree is a plus.
Ability to interpret and draft legal language for policies, regulatory filings, and government reporting.
Expertise in legal risk management for data.
Experience drafting and negotiating (DPAs), (SCCs), and legal safeguards for data protection.