Full-Time

Senior Privacy & Cybersecurity Counsel

Confirmed live in the last 24 hours

Booking Holdings

Booking Holdings

Compensation Overview

$225k - $275kAnnually

+ Annual Bonus + Equity Grant

Senior, Expert

Westport, CT, USA

Hybrid work model: Two days in-office.

Category
Risk & Compliance
Cybersecurity
IT & Security
Legal & Compliance

You match the following Booking Holdings's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • JD with a minimum of 8 years of relevant legal experience in law firms, governmental agencies, or in-house legal departments.
  • In-house experience at a multinational, consumer-facing technology company is strongly preferred.
  • CIPP/US or CIPP/E preferred.
  • Deep knowledge of global privacy laws, including GDPR, CCPA/CPRA, and other relevant regulations.
  • Strong understanding of cybersecurity regulations and standards, such as NIST, ISO 27001, and industry-specific requirements.
  • Proven experience in privacy impact assessments, cybersecurity incident response management, and commercial contract negotiations.
  • Exceptional written, verbal, and presentation skills; ability to convey complex concepts to diverse audiences.
  • Demonstrated ability to lead cross-functional teams and facilitate effective decision-making.
  • Strong relationship-building skills and ability to influence stakeholders across functions and geographies.
  • Experience managing data protection operations, protecting data subject rights, and enabling data-driven business outcomes.
Responsibilities
  • Provide expert advice on global privacy laws, cybersecurity regulations, and compliance strategies to align with business priorities.
  • Support incident response, including regulatory notifications and stakeholder communications.
  • Counsel on privacy and cybersecurity aspects of mergers and acquisitions, including due diligence and post-integration.
  • Develop and oversee incident response policies and procedures.
  • Monitor and assess global regulatory developments to shape compliance strategies for U.S. and international data privacy, personal information, and cybersecurity standards.
  • Coordinate multi-jurisdictional regulatory assessments with regional counsel.
  • Lead the creation and maintenance of privacy notices, internal policies, incident playbooks, and other program materials.
  • Negotiate vendor and third-party contracts, ensuring strong data protection terms.
  • Provide expertise on privacy-by-design, privacy impact assessments, and data protection reviews.
  • Support compliance with public disclosure requirements, including SEC filings and other regulatory obligations.
  • Act as a trusted advisor to brand privacy leaders, procurement teams, marketing, and business stakeholders.
  • Foster cross-functional collaboration to integrate privacy and cybersecurity considerations into business processes and technology initiatives.
  • Partner with business leaders to align privacy and cybersecurity efforts with organizational objectives.
Desired Qualifications
  • In-house experience at a multinational, consumer-facing technology company is strongly preferred.

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A