Medior Legal Counsel (Privacy, Security & AI Compliance).
Key Skills
Job Description
You bring legal expertise into a fast-moving SaaS environment and play a key role in shaping how organisations manage privacy, security and AI compliance. You translate complex regulations into practical, scalable solutions and work closely with product, sales and customers. You contribute directly to how our platform supports frameworks like GDPR, ISO 27001, NIS2 and the EU AI Act. Role details. Legal / Compliance 3–5+ years Rotterdam Focus areas. Privacy Security AI compliance Languages. English Dutch Apply now What you bring. 3–5+ years of experience in privacy, data protection, IT law or compliance Strong knowledge of GDPR and affinity with AI and security regulations Experience in privacy, security and/or AI compliance is required Experience in a commercial or technology-driven environment Excellent communication skills in English and Dutch Nice to have. Experience with international privacy or security frameworks Experience working with SaaS or technology companies Experience on the customer side (e.g. as a Privacy Officer), giving insight into real-world challenges What sets you apart. You combine legal expertise with a pragmatic mindset. You translate complex regulations into clear, actionable solutions and communicate effectively with both technical and non-technical stakeholders. You enjoy working where law, technology and business come together. Inside the role. You bring legal expertise into a fast-moving SaaS environment and help shape how organisations manage privacy, security and AI compliance. You work closely with product, sales and customers to ensure regulations are translated into practical, scalable solutions. Translate complex regulations (GDPR, ISO 27001, NIS2, EU AI Act) into practical solutions Contribute to how our platform supports privacy, security and AI governance frameworks Work closely with product and engineering to embed compliance into the platform Support sales in positioning legal and compliance value towards customers Advise customers on privacy, security and AI compliance challenges Help improve and evolve our compliance frameworks and best practices What we offer. A role at the intersection of law, technology and product development Direct impact on how organisations manage privacy, security and AI governance A high-quality SaaS platform with strong market relevance A fast-growing, international environment with short decision lines A performance-driven culture where expertise and ownership are valued A company-sponsored fitness membership—because we believe strong performance starts with physical and mental well-being
Core Responsibilities
You will translate complex regulations like GDPR, ISO 27001, and the EU AI Act into practical, scalable solutions within a SaaS environment. You will work cross-functionally with product, engineering, and sales teams to embed compliance into the platform and advise customers on governance challenges.
Requirements
Candidates must have 3–5+ years of experience in privacy, data protection, or IT law with strong knowledge of GDPR. Excellent communication skills in both English and Dutch are required, along with a pragmatic mindset for navigating legal and technical intersections.
Benefits
- Company-sponsored fitness membership
About PrivacyPerfect
Industry: Software Development
Company size: 11-50 employees
GRCPerfect is a global Governance, Risk, and Compliance (GRC) SaaS solution that helps organisations simplify compliance, strengthen resilience, and manage governance and risk through one integrated platform. Built on a strong European foundation, with data storage and processing hosted in Europe, GRCPerfect combines global compliance capabilities with trusted security and regulatory standards. Our platform helps organisations centralise and automate: • Privacy management and data protection • Information Security Management Systems (ISMS) • Risk management and risk assessments • Vendor and third-party risk management • AI governance and AI risk management • Audits, incidents, and compliance workflows GRCPerfect supports frameworks and regulations including GDPR, ISO/IEC 27001, NIS2, DORA, the EU AI Act, and other international compliance requirements. With automation, configurable workflows, built-in templates, and audit-ready reporting, organisations can reduce manual work, improve operational resilience, and scale governance and compliance efficiently across the business.