Why this role matters:
Healthcare is being transformed by technology, and privacy is at its core. At Doctolib, we're building the future of digital health and we need exceptional privacy professionals to help us do it right.
As Privacy Legal Counsel, you'll be at the forefront of groundbreaking challenges: shaping how AI innovations meet the highest privacy standards and building scalable data protection frameworks across multiple jurisdictions.
You'll work on cutting-edge AI-driven health solutions, tackle complex regulatory questions at the intersection of data protection and healthcare regulation, and have real influence on products that improve healthcare for millions of people every day.
What you’ll do
You'll join our dynamic Privacy team currently composed of two privacy lawyers, and led by our Global Data Protection Officer & Director. Together, we're building compliant, pragmatic, and sustainable data protection frameworks that enable innovation while safeguarding user privacy.
Our culture is pragmatic, collaborative, and entrepreneurial.
Your responsibilities include but are not limited to:
Partnering with Engineering teams to design innovative health solutions that comply with data protection regulation and sector-specific healthcare regulations;
Contributing to our global and local certification efforts (ISO 27001, ISO 27701, HDS, and emerging EHDS compliance frameworks);
Driving strategic privacy initiatives, shaping and implementing our global data protection strategy;
Developing and maintain privacy policies, processes, and documentation that scale across countries;
Participating to the development of awareness and training actions on data protection to ensure successful end-to-end delivery of our privacy ambitions;
Supporting and collaborate seamlessly with the Legal team on data privacy topics;
Supporting investigation and resolution of privacy incidents;
Monitoring regulatory developments (GDPR, AI Act, EHDS, ePrivacy, national health data laws) and translate them into actionable guidance for our teams.
Who you are
Before you read on — if you don't have the exact profile described below, but you feel this job description matches your skill set, we still encourage you to apply.
You could be our next team mate if you have:
Proven experience working with health data and healthcare regulation;
5+ years of hands-on privacy experience in tech, healthcare, regulatory bodies, or top-tier law firms;
Deep expertise in EU data protection law (GDPR, ePrivacy) and AI regulation;
Good understanding of healthcare regulation landscape and health data specificities (knowledge of EHDS, HDS, or similar health data fra meworks);
Advised and support senior stakeholders on complex, high-stakes legal matters;
Fluency in French and English (both written and spoken).