Director/principal Counsel, AI Governance

Unity Unity · Enterprise · United States · Remote · Legal

This role focuses on establishing and overseeing privacy-centric governance for AI development and deployment, ensuring compliance with international AI laws, privacy regulations, and ethical standards. It involves leading AI program governance, managing AI incident response, overseeing AI risk management, and ensuring model accuracy and cybersecurity from a legal and compliance perspective.

What you'd actually do

  1. Lead AI Program Governance and Policy: Determine the applicability of international AI laws, lead policy development, act as the Framework Owner, and establish ethical standards and clear guidelines for AI development. Streamline substantial assessments (Privacy, Safety, AI) and propose AI-enabled tooling to reduce effort.
  2. Manage AI Incident Response: Review and modify incident response processes to incorporate AI-specific triggers and regulatory reporting lines, aligning them with existing roles and Security’s AI Acceptable Use Policy.
  3. Oversee AI Risk Management: Maintain the AI Risk Management Policy and define a standard risk taxonomy (rights-based versus technical risks).
  4. Ensure Accuracy, Robustness, and Cybersecurity: Advise on adapting security and compliance programs to meet AI-specific legal obligations and collaborate with technical teams to ensure models satisfy defined accuracy metrics and compliance standards.
  5. Implement Quality Management and Monitoring: Review and adjust standard Quality Management System (QMS) protocols for AI design, testing, validation, and post-market monitoring. Maintain standard processes and reporting templates for continuous model performance and compliance.

Skills

Required

  • 3+ years focused on AI or data-centric products
  • Strong knowledge of international AI regulatory frameworks (e.g., EU AI Act)
  • Strong knowledge of global privacy laws (e.g., GDPR, CCPA)
  • Strong knowledge of discrimination/bias standards
  • Experience designing policies, templates, QMS, and documentation for regulated technologies
  • Familiarity with incident response
  • Familiarity with risk management taxonomies
  • Familiarity with model performance monitoring
  • Proven ability to collaborate cross-functionally with Product, Engineering, Legal counterparts, and Security teams
  • Excellent communication skills

Nice to have

  • Experience with accessibility standards
  • Experience with cybersecurity frameworks
  • Experience with contractual provisions for technology products
  • IAPP Certifications

What the JD emphasized

  • AI laws
  • privacy regulations
  • ethical standards
  • AI regulatory frameworks
  • global privacy laws
  • discrimination/bias standards
  • regulated technologies
  • model performance monitoring
  • AI-specific legal obligations
  • AI-specific triggers
  • AI Acceptable Use Policy