Head of Legal, Compliance

Il y a 12 heures

Leudelange, Luxembourg Leasys Temps plein
Full time-Permanent (f/m/x) Leudelange, Luxembourg 1. Role Purpose The Head of Legal, Compliance & Data Privacy leads and coordinates the company’s legal, regulatory compliance and data protection activities. The role provides Management and business functions with clear, pragmatic and commercially oriented advice, protects the company’s interests and ensures compliance with applicable laws, regulations and Group requirements. Acting as a trusted business partner, the role supports sound decision-making, promotes a strong compliance culture and ensures the timely identification, management and escalation of legal, compliance and data privacy risks. 2.

Key Responsibilities
Legal
• Provide legal advice to Management and business functions on corporate, commercial, regulatory and operational matters.
• Draft, review and negotiate customer, supplier and partnership agreements and other legal documentation.
• Identify and assess legal and contractual risks and recommend proportionate mitigation measures.
• Manage corporate governance and statutory obligations, including corporate records, delegations, powers of attorney, resolutions and regulatory filings.
• Coordinate disputes, claims, litigation and legal recovery matters, including the management of external lawyers and legal service providers.
• Monitor relevant legal developments and support strategic projects, public tenders, outsourcing arrangements, new products and exceptional transactions. Compliance
• Implement and maintain the local compliance framework in line with applicable regulations and Group policies, standards and procedures.
• Monitor regulatory developments, assess their impact and coordinate the implementation of required changes.
• Perform and coordinate compliance risk assessments relating to the company’s activities, products, processes and organisational changes.
• Oversee the AML/CTF framework, including KYC, customer and counterparty due diligence, enhanced due diligence, sanctions screening and ongoing monitoring.
• Review escalated compliance alerts, higher-risk relationships, suspected fraud, misconduct and conflicts of interest.
• Monitor compliance risks and controls, coordinate remediation actions and report regularly to Management, governance committees and relevant Group functions.
• Maintain clear and auditable policies, procedures and records, and provide compliance training and awareness. Data Privacy
• Coordinate the local data privacy framework and monitor compliance with the GDPR, applicable local requirements and Group policies.
• Maintain the record of processing activities and other required privacy documentation.
• Advise on personal-data processing, privacy requirements in contracts, data retention and privacy-by-design.
• Coordinate Data Protection Impact Assessments and the processing of data-subject requests.
• Assess and manage personal-data incidents, including investigation, documentation, remediation and notifications where required.
• Provide data privacy guidance, training and awareness, and liaise with the CNPD, Group specialists and other relevant stakeholders when necessary. 3. Key Competencies
• Strong legal judgement, analytical thinking and problem-solving skills.
• Pragmatic and business-oriented approach, with the ability to translate complex requirements into workable solutions.
• Leadership, ownership and sound decision-making.
• Excellent communication, negotiation and stakeholder-management skills.
• Ability to influence and collaborate effectively across functions and within an international matrix organisation.
• High level of integrity, independence, discretion and confidentiality.
• Strong organisational skills, attention to detail and ability to manage multiple priorities and deadlines.
• Ability to escalate material risks clearly and constructively. 4. Qualifications and Experience
• Master’s degree in law or equivalent. Additional expertise or qualifications in compliance or data protection is an advantage.
• 5 to 8 years of relevant professional experience across legal and compliance activities, preferably including data privacy responsibilities.
• Previous experience coordinating a function, managing employees or leading cross-functional activities.
• Sound knowledge of Luxembourg and EU legal and regulatory requirements, including commercial and corporate law, AML/CTF and GDPR.
• Experience in an international or regulated environment. Experience in automotive, mobility, leasing or financial services is an advantage.
• Professional fluency in French and English, both written and spoken. This position offers an excellent opportunity for an experienced legal and compliance professional seeking increased responsibility, autonomy and exposure to senior stakeholders within an international organisation.