Privacy Counsel, GermanyNew

The opportunity

Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver. Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on building the Waymo Driver—The World's Most Experienced Driver™—to improve access to…

What you'll do

  • Serve as the primary, on-the-ground Privacy Counsel for Waymo's operations,: product launches, and engineering initiatives across Germany and the broader EU, acting as a trusted advisor to ensure compliance with GDPR, ePrivacy, and local laws like the BDSG.

  • Advise on "Privacy by Design" and data minimization principles for European: market entry, working directly with Product, Engineering, and AI/ML teams to design innovative privacy solutions for complex sensor data and model training.

  • Proactively build and maintain constructive relationships with EU Data: Protection Authorities (DPAs), acting as the primary legal contact for regulatory inquiries, data protection impact assessments (DPIAs), audits, and ongoing local engagement.

  • Lead rapid, localized legal response for any EU data incidents, coordinating: internal investigations and compliance reviews, managing strict notification timelines, and mitigating regulatory risk.

  • Partner with Waymo’s Public Policy, Trust & Safety, and Regulatory Affairs: teams to monitor, review, and help shape emerging European privacy legislation, developing advocacy strategies to influence policy changes that support responsible innovation.

  • A Juris Doctor (or equivalent law degree) and active qualification to: practice law in Germany (e.g., Volljurist) or another relevant EU jurisdiction.

What they're looking for

  • + years of legal experience with significant expertise in European privacy,: data protection, and regulatory compliance, preferably in-house at a global technology company.
  • Deep, practical expertise in the General Data Protection Regulation (GDPR): and German national data protection laws (BDSG), with a track record of operationalizing these frameworks for complex data flows.
  • Direct experience engaging with European Data Protection Authorities (DPAs): and working with government or regulatory bodies to navigate rulemaking processes and compliance readiness.
  • Experience advising on cross-border data transfers, international data: governance, and translating strict legal requirements into practical engineering specifications.