Privacy Counsel

ElevenLabs ElevenLabs · AI Frontier · New York, NY · Operations

Seeking an experienced Privacy Counsel to shape and scale ElevenLabs’ global privacy program, advising on privacy, data protection, and AI governance issues across products and operations. The role involves supporting commercial transactions, implementing privacy-by-design, conducting risk assessments, and monitoring evolving AI regulatory frameworks.

What you'd actually do

  1. Advise on global privacy and data protection laws, including GDPR, CCPA/CPRA, and other international regulatory frameworks.
  2. Advise on privacy and regulatory risks relating to AI systems, biometric data, voice technologies, and other sensitive data types.
  3. Partner with Product and Engineering teams to implement privacy-by-design principles and support responsible development of AI products.
  4. Conduct and oversee privacy risk assessments, including Data Protection Impact Assessments (DPIAs) and related documentation.
  5. Support commercial transactions by advising on data protection terms, including DPAs, BAAs, cross-border data transfers, and privacy provisions in customer agreements.

Skills

Required

  • JD with active membership in at least one U.S. state bar (New York preferred), or qualification to practice law in the United Kingdom or an EU jurisdiction.
  • 6-12 years of relevant legal experience, with a focus on privacy compliance and data governance.
  • Strong knowledge of GDPR, CCPA/CPRA, and cross-border data transfer mechanisms (e.g., SCCs).
  • Excellent communication, stakeholder management, and problem-solving skills.

Nice to have

  • Experience advising AI, technology or SaaS companies on global privacy compliance and data governance.
  • Experience advising on AI, data use, or emerging technology regulatory frameworks is a strong plus.
  • Familiarity with security and privacy frameworks such as SOC 2, ISO 27001, or similar.

What the JD emphasized

  • global privacy program
  • privacy, data protection, and AI governance issues
  • evolving privacy and AI regulatory frameworks
  • AI systems, biometric data, voice technologies, and other sensitive data types
  • privacy-by-design principles
  • privacy risk assessments
  • data protection terms
  • evolving legal and regulatory developments relating to privacy, AI governance, and data use
  • privacy policies, procedures, and governance frameworks
  • privacy-related regulatory inquiries, audits, and incidents
  • privacy awareness and training
  • applying privacy law to cutting-edge products
  • evolving regulatory landscapes
  • AI, technology or SaaS companies on global privacy compliance and data governance
  • AI, data use, or emerging technology regulatory frameworks