| Location | Orlando, FL |
The Senior Legal Counsel, Digital & Data Compliance serves as a strategic legal advisor responsible for providing guidance on privacy, data protection, cybersecurity, digital technologies, artificial intelligence (AI), data governance, and regulatory compliance. This role partners closely with the business, technology, information security, product, marketing, and compliance teams to enable innovation while managing legal and regulatory risks associated with the collection, use, storage, transfer, and protection of data.
With more than 225 locations worldwide, Signature Aviation is the largest global network of private aviation terminals, delivering safe, convenient, and elevated experiences to those we serve. As a premier hospitality organization and a certified Great Place to Work, we are committed to redefining private air travel. Our nearly 6,000-strong team of aviation experts and enthusiasts is dedicated to delivering excellence to our guests and communities, and it starts with taking care of our team. Signature provides a variety of benefits, programs, and resources to support our team members' overall well-being and professional development. We proudly volunteer and give back, focusing on elevating the neighborhoods where we operate, empowering the next generation of aviation professionals, and supporting our veterans.
From your health to your financial wellness, there are several benefits for you and your family when joining Signature Aviation.
Our Benefits:
Qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, or other protected characteristics.
Minimum Education and/or Experience:
Knowledge, Skills, and Abilities
Preferred:
Travel
Physical Demands
Essential Duties and Responsibilities:
Privacy and Data Protection
Lead and support the Company's privacy and data protection program.
Provide guidance on data lifecycle practices, including collection, use, transfer, and retention of personal data.
Support privacy-by-design initiatives across products, services, digital platforms, and business processes.
Conduct and advise on privacy impact assessments, data protection impact assessments, risk assessments, and records of processing activities.
Oversee third-party data compliance and partner with the IT, security, compliance, and business teams to implement effective privacy controls.
Support privacy-related regulatory inquiries, audits, and investigations.
Regulatory Compliance & Governance
Monitor, interpret, and advise on evolving global digital, privacy, data protection, AI, and cybersecurity laws and regulations, including GDPR, UK GDPR, CCPA/CPRA, PIPEDA, and other emerging frameworks.
Support development and maintenance of compliance frameworks, policies, training programs, and governance practices.
Advise executive leadership on legal and regulatory developments affecting digital operations.
Support regulatory examinations, audits, investigations, and enforcement inquiries.
Partner with compliance and risk management teams to implement effective governance structures.
Contracting & Commercial Support
Review and negotiate data processing agreements (DPAs), data sharing agreements, cross-border data transfer mechanisms, and other privacy-related contract terms.
Draft, review, and negotiate technology and digital services agreements, including software development, hosting, and managed services.
Advise procurement and vendor management teams on third-party risk, data protection, cybersecurity, and compliance considerations.
Support mergers, acquisitions, partnerships, and strategic transactions involving data and technology assets.
Digital & Technology Law
Advise on legal issues related to digital transformation, cloud services, SaaS agreements, software licensing, e-commerce, and digital platforms.
Counsel stakeholders on legal risks associated with emerging technologies such as AI, machine learning, blockchain, and digital identity solutions.
Support product development teams throughout the product lifecycle.
Cybersecurity & Incident Response
Provide legal guidance on cybersecurity governance and risk management.
Support incident response activities, including breach assessments, notification obligations, regulatory reporting, and communications strategies.
Advise on legal requirements relating to cyber resilience and security frameworks.
Collaborate with Information Security and Compliance teams on cybersecurity policies and controls.
Artificial Intelligence & Emerging Technologies
Provide insights that inform responsible AI use, bias mitigation protocols, and other risk-management safeguards.Review AI use cases, model deployment, vendor solutions, and contractual protections.
Support the development of internal AI governance frameworks and policies.
Assess legal risks related to automated decision-making, algorithmic transparency, and intellectual property.
Essential Duties and Responsibilities:
Privacy and Data Protection
Lead and support the Company's privacy and data protection program.
Provide guidance on data lifecycle practices, including collection, use, transfer, and retention of personal data.
Support privacy-by-design initiatives across products, services, digital platforms, and business processes.
Conduct and advise on privacy impact assessments, data protection impact assessments, risk assessments, and records of processing activities.
Oversee third-party data compliance and partner with the IT, security, compliance, and business teams to implement effective privacy controls.
Support privacy-related regulatory inquiries, audits, and investigations.
Regulatory Compliance & Governance
Monitor, interpret, and advise on evolving global digital, privacy, data protection, AI, and cybersecurity laws and regulations, including GDPR, UK GDPR, CCPA/CPRA, PIPEDA, and other emerging frameworks.
Support development and maintenance of compliance frameworks, policies, training programs, and governance practices.
Advise executive leadership on legal and regulatory developments affecting digital operations.
Support regulatory examinations, audits, investigations, and enforcement inquiries.
Partner with compliance and risk management teams to implement effective governance structures.
Contracting & Commercial Support
Review and negotiate data processing agreements (DPAs), data sharing agreements, cross-border data transfer mechanisms, and other privacy-related contract terms.
Draft, review, and negotiate technology and digital services agreements, including software development, hosting, and managed services.
Advise procurement and vendor management teams on third-party risk, data protection, cybersecurity, and compliance considerations.
Support mergers, acquisitions, partnerships, and strategic transactions involving data and technology assets.
Digital & Technology Law
Advise on legal issues related to digital transformation, cloud services, SaaS agreements, software licensing, e-commerce, and digital platforms.
Counsel stakeholders on legal risks associated with emerging technologies such as AI, machine learning, blockchain, and digital identity solutions.
Support product development teams throughout the product lifecycle.
Cybersecurity & Incident Response
Provide legal guidance on cybersecurity governance and risk management.
Support incident response activities, including breach assessments, notification obligations, regulatory reporting, and communications strategies.
Advise on legal requirements relating to cyber resilience and security frameworks.
Collaborate with Information Security and Compliance teams on cybersecurity policies and controls.
Artificial Intelligence & Emerging Technologies
Provide insights that inform responsible AI use, bias mitigation protocols, and other risk-management safeguards.Review AI use cases, model deployment, vendor solutions, and contractual protections.
Support the development of internal AI governance frameworks and policies.
Assess legal risks related to automated decision-making, algorithmic transparency, and intellectual property.