The opportunity
Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver. Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on building the Waymo Driver—The World's Most Experienced Driver™—to improve access to…
What you'll do
Serve as the primary, on-the-ground Privacy Counsel for Waymo's operations,: product launches, and engineering initiatives across Germany and the broader EU, acting as a trusted advisor to ensure compliance with GDPR, ePrivacy, and local laws like the BDSG.
Advise on "Privacy by Design" and data minimization principles for European: market entry, working directly with Product, Engineering, and AI/ML teams to design innovative privacy solutions for complex sensor data and model training.
Proactively build and maintain constructive relationships with EU Data: Protection Authorities (DPAs), acting as the primary legal contact for regulatory inquiries, data protection impact assessments (DPIAs), audits, and ongoing local engagement.
Lead rapid, localized legal response for any EU data incidents, coordinating: internal investigations and compliance reviews, managing strict notification timelines, and mitigating regulatory risk.
Partner with Waymo’s Public Policy, Trust & Safety, and Regulatory Affairs: teams to monitor, review, and help shape emerging European privacy legislation, developing advocacy strategies to influence policy changes that support responsible innovation.
A Juris Doctor (or equivalent law degree) and active qualification to: practice law in Germany (e.g., Volljurist) or another relevant EU jurisdiction.
What they're looking for
- + years of legal experience with significant expertise in European privacy,: data protection, and regulatory compliance, preferably in-house at a global technology company.
- Deep, practical expertise in the General Data Protection Regulation (GDPR): and German national data protection laws (BDSG), with a track record of operationalizing these frameworks for complex data flows.
- Direct experience engaging with European Data Protection Authorities (DPAs): and working with government or regulatory bodies to navigate rulemaking processes and compliance readiness.
- Experience advising on cross-border data transfers, international data: governance, and translating strict legal requirements into practical engineering specifications.