FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Legal Counsel – Compliance
Lecturio Weiterbildung & TrainingsLegal Counsel für Datenschutz- und IT-Compliance bei Lecturio, einem digitalen E-Learning-Anbieter. Umsetzung von DSGVO-, AI-Act- und Security-Assurance-Prozessen für Kunden und Partner.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in IT compliance and data protection processes, particularly in relation to GDPR, AI Act, and US higher-education requirements. Proficient in managing data subject requests and utilizing AI and automation tools for operational efficiency.
Highest-signal resume keywords
IT ComplianceGDPR KnowledgeData Protection OperationsExperience with HECVATFluent in German and English
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information SecurityThird-Party Risk ManagementTechnical Understanding of EncryptionSingle Sign-On (SSO)Data Processing Activities (VVT/ROPA)Incident ManagementAutomation ToolsAI Tools UtilizationDocument DraftingContract Management
Soft Skills
Structured PrioritizationConfident Customer InteractionIndependenceCritical ThinkingPersonal Responsibility
Tools & Technologies
N8nZapierGRC PlatformsVantaDrata
Industry Keywords
HECVATSOC 2VPAT/WCAGTechnical and Organizational Measures (TOMs)Data Protection Officer (DPO)Chief Technology Officer (CTO)Chief Privacy Officer (CPO)
About the role
Key responsibilities & impact- Operational implementation of data protection and IT compliance processes at the intersection of the GDPR, the AI Act and US higher-education requirements such as HECVAT and SOC 2
- Respond to security and privacy questionnaires, e.g., HECVAT, VPAT/WCAG and security questionnaires
- Conduct technical discussions with IT security leads from universities and hospitals
- Build a centralized Trust & Compliance knowledge base including a process for keeping it up to date
- Maintain records and registers, including records of processing activities (VVT/ROPA), subprocessors, certificates, deletion policy, technical and organizational measures (TOMs) and incidents
- Operationally manage data subject requests
- Triage new IT and AI tools coming from business units
- Build a central contract register and manage standard and bespoke agreements, DPA versions and deviation analyses
- Keep DPA annexes technically up to date
- Establish scalable processes and leverage AI and automation tools for document comparisons and drafting
- Work closely with the Data Protection Officer (DPO), CTO and CPO
Requirements
What you’ll need- Approximately 3–5 years of experience in IT compliance, GRC, information security, privacy operations or third‑party risk, ideally in a SaaS/software environment
- Experience answering enterprise security questionnaires, e.g., HECVAT, VSA and SIG
- Solid technical understanding, e.g., encryption, SSO, hosting and backups
- Fluent in German and English, both written and spoken (minimum C1 level)
- Experienced, critically minded use of AI tools
- Experience with automation tools such as n8n or Zapier, or GRC platforms like Vanta or Drata is a plus
- High degree of independence and personal responsibility
- Structured prioritization skills
- Confident demeanor when interacting with customers and IT stakeholders
Benefits
Comp & perks- Flexible working hours and remote work
- Free access to Lecturio learning platform for personal and professional development
- Regular team and company events
- Complimentary drinks and fruit in the office
- Free access to coaching sessions and additional mental health benefits