Privacy and Cybersecurity Counsel - Europe and META
Why Work at Lenovo
We are Lenovo. We do what we say. We own what we do. We WOW our customers.
Lenovo is a US$83 billion revenue global technology powerhouse, ranked #153 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
To find out more visit www.lenovo.com and read about the latest news via our StoryHub.
Description and Requirements
The Privacy and Cybersecurity Counsel will provide legal support on cybersecurity and privacy matters across the EU and globally. The role will advise business, security, product and Legal stakeholders and translate privacy and cybersecurity requirements into practical guidance and processes.
The role is part of Lenovo’s Global Privacy & Data Protection Legal team and reports to the Lead Senior Counsel, Cybersecurity, working closely with cybersecurity, product-security, business-unit counsel and other Legal stakeholders.
Key Responsibilities
- Advise business, security, product and Legal stakeholders on cybersecurity laws and emerging requirements, including NIS2, the EU Cyber Resilience Act, DORA and related global frameworks.
- Monitor privacy and cybersecurity legislation, regulatory guidance, standards and enforcement trends, assessing their impact on Lenovo.
- Translate legal requirements into practical guidance, processes, decision frameworks and training for business and security teams.
- Support the development and enhancement of privacy and cybersecurity standards, procedures and processes as requirements evolve.
- Provide legal support for privacy and security incidents, cyber investigations and crisis response, including legal assessments and regulatory considerations.
- Conduct privacy reviews of projects and products, identifying legal requirements and providing practical recommendations.
- Draft and negotiate cybersecurity and privacy provisions in customer, supplier and other commercial agreements.
- Support customer engagements, audits, due diligence, RFPs and regulatory inquiries relating to privacy and cybersecurity.
- Work with external counsel and internal subject-matter teams on complex or specialised legal and regulatory matters.
Qualifications & requirements
- Law degree and qualification to practise law in a relevant jurisdiction, with experience in privacy, cybersecurity, technology or regulatory legal matters, preferably in a multinational technology company.
- Strong understanding of EU privacy and cybersecurity frameworks, with experience or exposure to NIS2, the Cyber Resilience Act, DORA or other EU cybersecurity legislation.
- Experience advising cross-functional stakeholders, including security, product and business teams, and explaining complex legal requirements clearly to non-legal audiences.
- Strong legal drafting, negotiation, analytical and stakeholder-management skills, with the ability to manage multiple priorities in an international environment.
- Experience supporting cybersecurity incidents, investigations, vulnerability or regulatory reporting, and working with regulators, audits or customer assessments.
- Experience with technology transactions, commercial agreements and cybersecurity/privacy provisions, as well as privacy reviews or impact assessments for technology products, services or internal initiatives.
- Familiarity with cybersecurity frameworks, industry standards and security practices, ideally gained in a global in-house legal environment.
- Excellent written and spoken English
What we offer
- Opportunities for career development and growth.
- Performance-based rewards.
- Hybrid working model (office 3 days/home office 2 days a week).
- Up to three paid Personal Days annually, plus additional vacation days.
- 100% sick leave compensation for up to two months per year.
- A broad selection of soft and hard skills training, plus individual mentoring.
- Employer contribution to the Third Pillar Pension System, and life and life-events insurance fully covered by the company.
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.
PAY TRANSPARENCY
The anticipated initial gross base salary range for this position is 32,900–48,180 EUR per year. This range applies to the primary job location Slovakia and is determined using objective, non-discriminatory and gender-neutral criteria, including skills and relevant experience. Final compensation will be based on relevant experience, skills, and business considerations.
Individuals may also be eligible for variable compensation (such as bonus or commission), depending on the role. The applicable variable pay model, eligibility, and target levels will be discussed during the recruitment process.
In addition to base salary and any applicable variable compensation, Lenovo provides statutory remuneration components required by local law, as well as Lenovo's comprehensive benefits package supporting employee well-being, development, and equal opportunities.
For roles open across multiple countries, local base salary ranges may vary based on market conditions, internal frameworks, and legal requirements. The relevant local range will be transparently communicated during the initial discussions.
AI PROCESSING NOTICE
We use AI-based tools to support some of our processes (e.g. online interviews recordings and transcripts) in order to achieve better efficiency, accuracy and for our documentation purposes. AI can make mistakes, but we always make sure that the outputs are manually reviewed by a human. You can always opt-out or contact us in case of any question.

