Privacy Counsel

hackerone

Austin (TX)

On-site

USD 160,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health, life and disability insurance
Equity stock options
Retirement plans
Paid holidays & unlimited PTO
Maternity & parental leave
Employee Assistance Program

Job summary

HackerOne is seeking a Privacy Counsel to join the Privacy function to support global data protection, AI governance, and cross-border data operations across product, sales, and procurement. You will work with Product, Security, Compliance, Engineering, and Sales to provide practical privacy guidance and review customer and vendor agreements.

This is an individual contributor role for a privacy lawyer with hands-on experience and the ability to collaborate across functions in a fast-paced,

Qualifications

  • 5+ years PQE in GDPR/privacy
  • Strong knowledge of EU/UK GDPR and global privacy laws
  • Experience drafting data processing agreements (DPAs) and privacy terms
  • Experience managing data breaches, regulatory notifications, and audits
  • Understanding of AI technologies and governance frameworks
  • Experience using privacy management systems (OneTrust)
  • Able to work across diverse, global teams
  • Willingness to work independently in a fast-paced environment

Responsibilities

  • Apply an AI-First approach to privacy tooling and workflows.
  • Adapt guidance to evolving global privacy and AI regulations.
  • Provide practical, structured privacy recommendations using First Principles.
  • Support global privacy assessments including DPAs, TIAs, LIAs, and related reviews.
  • Draft, review, and negotiate DPAs and privacy terms for global deals.
  • Maintain privacy templates, policies, and contracted documentation.
  • Create and deliver internal privacy and AI governance training.
  • Assist internal/external privacy audits and coordinate with advisors.

Skills

GDPR experience
UK/EU law
Drafting DPAs
Privacy audits
AI governance
OneTrust
Cross-functional
Independent work

Education

Qualified lawyer

Tools

OneTrust

Job description

Overview

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the world\'s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner\'s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024).

HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional - it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries are moving faster than ever. With the industry shifting, HackerOne stands apart: we combine the ingenuity of the largest security research community with a best-in-class AI-powered platform, trusted by the world\'s top organizations.

Values

HackerOne is dedicated to fostering a strong and inclusive culture. We are customer obsessed and prioritize customer outcomes in our decisions and actions. We default to disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners win together by fostering empowerment, inclusion, respect, and accountability.

Position Summary

Privacy Counsel remote location: United Kingdom or USA (Boston, Washington DC, Austin, SF Bay Area, Seattle). HackerOne is seeking a Privacy Counsel to join the Privacy function to support the growing volume and complexity of global data protection, AI governance, and commercial contracting needs across the business. In this role, you will help accelerate product development, sales motions, internal procurement and cross-border data operations by providing thoughtful, practical, and globally relevant privacy support.

You will work closely with colleagues in Product, Security, Compliance, Engineering, and Sales to deliver clear guidance, support privacy assessments, and review customer and vendor agreements to help us move quickly and responsibly as we grow. This is an individual contributor role ideal for a privacy lawyer who enjoys hands-on work, cross-functional collaboration, and applying structured legal thinking to emerging technologies.

What You Will Do
  • Apply an AI-First approach by using AI tools responsibly to improve research quality, drafting efficiency, and privacy assessment workflows.
  • Demonstrate Change Agility by adapting quickly to evolving global privacy and AI regulations, adjusting guidance as new risks, tools, or requirements emerge.
  • Use First Principles Problem Solving to simplify complex privacy questions, clarify assumptions, and provide clear, structured recommendations.
  • Leverage Data-Driven Decision Making during DPIAs, and related assessments by grounding evaluations in evidence, criteria, and regulatory expectations.
  • Support the current Privacy function with global privacy assessments, including DPAs, AI DPAs, TIAs, LIAs, and other structured risk reviews.
  • Review new and existing product features, AI capabilities, and data practices as part of privacy-by-design, identifying risks and opportunities early in development.
  • Draft, review, and negotiate data processing agreements (DPAs), privacy terms, and commercial contracts to support global sales and procurement.
  • Maintain and update privacy contractual documentation and internal templates and policies.
  • Create and deliver internal training on privacy and AI governance.
  • As part of the Privacy function, support internal and external privacy audits, coordinate with external advisors, and ensure alignment across business functions on assessment findings and remediation.
  • Monitor evolving privacy laws, case law, AI governance frameworks, and regulatory trends, sharing key insights with stakeholders to maintain compliance and anticipate future requirements.
Minimum Qualifications
  • Qualified lawyer (UK or EU) with GDPR experience and 5+ years PQE (mix of in-house or private practice). Years matter less than impact; relevant specialist experience may apply even if 5+ years is not met.
  • Strong knowledge of EU/UK GDPR and familiarity with global privacy laws (US, Middle East, Asia).
  • Experience drafting and negotiating data processing agreements and handling privacy-related issues in a global business context.
  • Proven ability to manage data breaches, regulatory notifications, and privacy audits.
  • Excellent communication skills with the ability to simplify complex legal concepts for non-legal audiences.
  • Strong understanding of AI technologies, their ethical implications, and related legal frameworks.
  • Excellent analytical, problem-solving, and decision-making skills with the ability to provide practical and strategic legal advice.
  • Experience using privacy management systems such as OneTrust.
  • Ability to manage multiple priorities and work collaboratively across diverse teams.
  • Comfortable working independently in a fast-paced, global environment.
Preferred Qualifications
  • Certified Information Privacy Professional (CIPP).
  • Artificial Intelligence Governance Professional (AIGP) or other relevant certifications.
  • German language proficiency.
  • Experience in cybersecurity, offensive security, or SaaS environments.
Compensation

UK Tier: 95K to 115K; offers equity.

US Tiers: Tier A (SF Bay Area): 180K to 215K; offers equity. Tier B (all other US locations): 160K to 190K; offers equity.

Job benefits include health, life and disability insurance; equity stock options; retirement plans; paid holidays and unlimited PTO; paid maternity and parental leave; leaves of absence; and an Employee Assistance Program. Eligibility may differ by country.

Other

Visa/work permit sponsorship is not available. Employment is contingent on a background check. HackerOne is an Equal Opportunity Employer. For US-based roles, qualified applicants with arrest and conviction records will be considered as required by the San Francisco Fair Chance Ordinance.

Compensation Range: 90K - 110K

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Privacy Counsel - AI Governance & DPIAs (Remote UK)
Privacy Counsel - AI Governance & DPIAs (Remote UK)

HackerOne • United States

On-site
USD 120,000 - 148,000
Health insurance
Equity stock options
Unlimited PTO
+1
Senior Privacy and AI Counsel
Senior Privacy and AI Counsel

Harvey • New York (NY)

On-site
USD 210,000 - 265,000
Senior Privacy Counsel
Senior Privacy Counsel

Socket.dev • United States

On-site
USD 200,000 - 235,000
Remote Privacy Counsel — Global AI & Data Governance
Remote Privacy Counsel — Global AI & Data Governance

hackerone • Washington

On-site
USD 160,000 - 190,000
Equity
Health insurance
Unlimited PTO
+1
Senior Privacy and AI Counsel
Senior Privacy and AI Counsel

Harvey AI • New York (NY)

On-site
USD 210,000 - 265,000
Remote Privacy Counsel: AI & Data Compliance
Remote Privacy Counsel: AI & Data Compliance

hackerone • Seattle (WA)

On-site
USD 160,000 - 215,000
Equity stock options
Health, life and disability insurance
Retirement plans
+2
Remote Privacy Counsel: AI & Global Data Privacy
Remote Privacy Counsel: AI & Global Data Privacy

hackerone • Boston (MA)

On-site
USD 160,000 - 190,000
Health insurance
Life insurance
Disability insurance
+7
Senior Privacy Counsel
Senior Privacy Counsel

Abnormal AI • United States

On-site
USD 200,000 - 235,000
Equity
Competitive salary
Benefits package
Senior Privacy Counsel
Senior Privacy Counsel

Abnormal AI, Inc. • United States

On-site
USD 200,000 - 235,000
Equity
Comprehensive benefits package
Senior Privacy Counsel
Senior Privacy Counsel

Abnormal • United States

On-site
USD 180,000 - 240,000