bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesSiteroLegal Specialist, DPO

Legal Specialist, DPO

Sitero · Remote · Deleted · BambooHR

Job facts

FieldValue
CompanySitero
TitleLegal Specialist, DPO
Normalized title-
Department / teamCorporate
LocationWarsaw, Poland, Poland
Work modelRemote / Remote
Employment typeFull Time
Salary-
Statusdeleted
ATS providerBambooHR
Posted / first seen2026-05-14 / 2026-05-30
Changed / last seen2026-06-04 / 2026-06-02

Related slices

PageWhat it containsOpen
Company jobsActive postings from Sitero.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through BambooHR.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Warsaw.Open
Department jobsActive postings in Corporate.Open
Work model jobsActive Remote postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanySitero
Source5e442931-04b6-4910-8dff-d19862b334e4
ATS providerBambooHR

Description

Sitero is an emerging leader in Clinical services and software solutions for the life sciences industry. We have experience and expertise in a diverse range of therapeutic areas and focus on innovative, technology-enabled solutions that allow our clients to focus on their core strengths. For early phase studies through Phase III clinical trials, our experienced team delivers high-touch services and technology to ensure the safety of all stakeholders across the clinical research community with an emphasis on ethics, compliance, and innovation. Job Title: Legal Specialist, DPO Location: Poland Function: Corporate Counsel Sitero is seeking an experienced and motivated Legal Specialist who will serve a dual function role as the company’s designated Data Protection Officer (DPO). Based in Poland, this individual will provide day-to-day corporate legal counsel across a broad range of business matters while assuming primary responsibility for Sitero’s data privacy program in compliance with the EU General Data Protection Regulation (GDPR) and other applicable privacy and security laws. This is a high-visibility, dual-function role ideal for a Poland-based legal professional who possesses deep knowledge of European data protection law and is equally comfortable providing practical legal guidance on employment matters, vendor contracts, and corporate governance. The DPO function carries statutory independence under GDPR Article 37–39 and reports directly to senior leadership. ESSENTIAL DUTIES AND RESPONSIBILITIES: Data Protection Officer – DPR & Privacy Serve as Sitero’s officially designated DPO under GDPR Article 37, acting as the primary point of contact for data subjects, supervisory authorities, and internal stakeholders on all data protection matters. Lead the development, implementation, enforcement, and ongoing monitoring of Sitero’s global Data Privacy Policy and Data Protection Program to ensure full compliance with GDPR, applicable US privacy laws, and other regional privacy and security regulations. Oversee and conduct Data Privacy Impact Assessments (DPIAs) as required under GDPR Article 35, addressing the following areas in each assessment: The purpose(s) for which Personal Data is being processed and the processing operations to be carried out. Details of the legitimate interests being pursued by Sitero. An assessment of the necessity and proportionality of processing operations relative to the stated purpose(s). An assessment of the risks posed to data subjects, including likelihood and severity. Details of measures in place to minimize and handle risks, including safeguards, data security controls, and other mechanisms to demonstrate compliance. Receive, investigate, and respond to reported or discovered violations of Data Processing Agreements (DPAs), coordinating timely remediation and reporting to senior leadership; serve as the primary contact at [email protected] for all data protection inquiries and violation notifications. Maintain and continuously update Sitero’s Records of Processing Activities (RoPA) in accordance with GDPR Article 30. Manage data subject rights requests (access, rectification, erasure, portability, objection) within statutory timeframes. Review, negotiate, and maintain Data Processing Agreements and Standard Contractual Clauses (SCCs) with vendors, processors, and sub-processors. Monitor and advise on regulatory developments across EU member states, proactively identifying compliance gaps and recommending corrective action. Liaise directly with the Polish supervisory authority (UODO) and other EU data protection authorities as required. Deliver organization-wide data privacy training and awareness programs; foster a culture of privacy-by-design and data minimization. Corporate Legal Counsel Provide day-to-day legal advice on a broad range of corporate matters including commercial contracts, vendor agreements, service agreements, confidentiality/NDA agreements, and clinical trial-related legal documents. Draft, review, and negotiate contracts with clients, vendors, and business partners, ensuring alignment with Sitero’s risk tolerance and applicable law. Advise leadership on corporate governance, regulatory compliance, and risk management, escalating material legal risks as appropriate. Support intellectual property protection, including review of IP-related clauses in commercial agreements. Assist in managing disputes, claims, and litigation strategy in coordination with external counsel. Support corporate entity management and compliance filings across Sitero’s European legal entities. Stay current on Polish and EU commercial law and advise on the legal impact of regulatory changes on Sitero’s operations. Employment Law & HR Partnership Serve as the primary legal advisor to the People & HR team on all employment law matters in Poland and, where applicable, across EU jurisdictions. Advise on the full employment lifecycle, including hiring practices, employment contract templates, compensation structures, performance management, disciplinary procedures, and terminations, ensuring compliance with the Polish Labor Code and applicable EU employment directives. Review and maintain compliant employee policies, handbooks, and HR procedures, ensuring alignment with both Polish law and Sitero’s global people policies. Advise on the intersection of data privacy and human resources, including lawful bases for processing employee personal data, employee monitoring policies, and HR data retention schedules. Support the HR team with legal aspects of employee relations matters, including investigations, grievances, and accommodations. Advise on works council obligations, employee representation requirements, and collective labor matters where applicable under Polish law. Partner with HR to ensure onboarding processes, background screening, and employee data handling are fully GDPR-compliant. Provide guidance on cross-border employment arrangements, including remote work policies and international employee data transfers. EDUCATION AND EXPERIENCE REQUIRED: Law degree (LL.B., LL.M., or equivalent) from an accredited institution; admission to the Polish Bar (Radca Prawny or Adwokat) or equivalent EU bar is strongly preferred. Minimum 5 years of post-qualification legal experience, with significant exposure to data protection and privacy law. Demonstrated, in-depth knowledge of the GDPR and its practical application in a corporate environment, including DPIA methodology, DPA drafting, and interaction with supervisory authorities. Strong working knowledge of Polish employment law (Kodeks Pracy) and its application to HR and people operations. Experience drafting and negotiating commercial contracts, vendor agreements, and data processing agreements. Fluency in Polish and English (written and spoken) is required; additional EU language proficiency is an asset. Certified Information Privacy Professional / Europe (CIPP/E) or equivalent privacy certification is highly desirable. Preferred Experience Prior experience serving in a DPO capacity or in a dedicated privacy counsel role. Experience in the life sciences, clinical research, or healthcare sector, with familiarity with clinical data and regulatory frameworks (e.g., ICH-GCP, EMA guidelines). Familiarity with US privacy regulations (e.g., HIPAA, CCPA) and their interplay with GDPR. Experience with multi-jurisdictional data governance in an international organization. Working knowledge of ISO 27001 or similar information security standards. COMPENSATION & BENEFITS: Sitero proudly offers an impressive compensation package and benefits, including a competitive salary, paid time off, and healthcare and retirement benefits. EMPLOYMENT TYPE: Full Time, Permanent COMMITMENTS: Standard Hours 40 hours per week, one hour lunch, Monday – Friday. Additional hours as needed. Willing to work in shifts as and when needed. Willing to flex to accommodate India Standard Time and North American time zones as needed. DISCLAIMER: Sitero is an equal opportunity employer and welcomes all job applicants.  All qualified applicants will receive consideration for employment without discrimination on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other factors prohibited by law.

Full job record

Job IDcd3e1ec4c1a38c2098933356100fde8d22ec148c
Org ID7b056b92-d3d0-4fcb-8157-49c2a1f3778f
Source ID5e442931-04b6-4910-8dff-d19862b334e4
Board ID5e442931-04b6-4910-8dff-d19862b334e4
Providerbamboohr
Provider Job Key454
TitleLegal Specialist, DPO
Normalized Title
Statusdeleted
Activeno
Location Text
DepartmentCorporate
Team
Employment Typefull_time
Workplace Typeremote
Remote Policyremote
CountryPoland
RegionPoland
CityWarsaw
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://sitero.bamboohr.com/careers/454
Apply URLhttps://sitero.bamboohr.com/careers/454
First Seen At2026-05-30 05:51:04Z
Last Seen At2026-06-02 10:41:40Z
Last Checked At2026-06-04 11:37:41Z
Last Changed At2026-06-04 11:37:41Z
Inactive At2026-06-04 11:37:41Z
Source Posted At2026-05-14 00:00:00Z
Source Updated At
Raw Payload Uris3://bluework-jobs-prod-raw-590183727216/raw/provider=bamboohr/board=sitero/date=2026-06-02/2026-06-02T10-41-39-200Z-93e3453f843ac05e2f931beb950fc8c6d905196511d74115d0042f8c5e435cac.json
Event Fields
{
  "content_hash": "b636f7a14fbcde351bcb28b7b7c2d818add09e6e4a3ab0ea4eaae19a4fcc9d80",
  "source_hash": "7650ece44a5e976d3fb7dbd3e058d6427ebcdb5ceab1f8a892c859886518d1a1",
  "last_changed_at": "2026-06-04T11:37:41.055Z",
  "active_status": "deleted"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Warsaw, Poland, Poland",
    "city": "Warsaw",
    "region": "Poland",
    "country": "Poland",
    "is_remote": true,
    "confidence": 0.8
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-02T10:41:40.557Z",
  "launch_scope": {
    "reason": "bamboohr_production_catalog",
    "included": true,
    "location": {
      "raw": "Warsaw, Poland, Poland",
      "city": "Warsaw",
      "region": "Poland",
      "country": "Poland",
      "is_remote": true,
      "confidence": 0.8
    },
    "countries": [
      "Poland"
    ]
  },
  "remote_policy": "remote",
  "salary_period": null,
  "workplace_type": "remote",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "list_job": {
    "id": "454",
    "isRemote": null,
    "location": {
      "city": null,
      "state": null
    },
    "atsLocation": {
      "city": "Warsaw",
      "state": null,
      "country": "Poland",
      "province": "Poland"
    },
    "departmentId": "18591",
    "locationType": "1",
    "jobOpeningName": "Legal Specialist, DPO",
    "departmentLabel": "Corporate",
    "employmentStatusLabel": "Full-Time"
  },
  "detail_errors": [],
  "detail_job_opening": {
    "location": {
      "city": null,
      "state": null,
      "postalCode": null,
      "addressCountry": null
    },
    "datePosted": "2026-05-14",
    "atsLocation": {
      "city": "Warsaw",
      "state": "Poland",
      "country": "Poland",
      "countryId": "171"
    },
    "description": "<p>Sitero is an emerging leader in Clinical services and software solutions for the life sciences industry. We have experience and expertise in a diverse range of therapeutic areas and focus on innovative, technology-enabled solutions that allow our clients to focus on their core strengths. For early phase studies through Phase III clinical trials, our experienced team delivers high-touch services and technology to ensure the safety of all stakeholders across the clinical research community with an emphasis on ethics, compliance, and innovation. </p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Job Title: Legal Specialist, DPO                     </span></p>\n<p><span style=\"font-weight: bold\">Location: Poland               </span></p>\n<p><span style=\"font-weight: bold\">Function: Corporate Counsel          </span></p>\n<p><br><br></p>\n<p>Sitero is seeking an experienced and motivated Legal Specialist who will serve a dual function role as the company’s designated Data Protection Officer (DPO). Based in Poland, this individual will provide day-to-day corporate legal counsel across a broad range of business matters while assuming primary responsibility for Sitero’s data privacy program in compliance with the EU General Data Protection Regulation (GDPR) and other applicable privacy and security laws.</p>\n<p> </p>\n<p>This is a high-visibility, dual-function role ideal for a Poland-based legal professional who possesses deep knowledge of European data protection law and is equally comfortable providing practical legal guidance on employment matters, vendor contracts, and corporate governance. The DPO function carries statutory independence under GDPR Article 37–39 and reports directly to senior leadership.</p>\n<p><br><br></p>\n<p><span style=\"font-weight: bold\">ESSENTIAL DUTIES AND RESPONSIBILITIES:</span></p>\n<p><br></p>\n<p><em>Data Protection Officer – DPR &amp; Privacy</em></p>\n<ul>\n<li>Serve as Sitero’s officially designated DPO under GDPR Article 37, acting as the primary point of contact for data subjects, supervisory authorities, and internal stakeholders on all data protection matters.</li>\n<li>Lead the development, implementation, enforcement, and ongoing monitoring of Sitero’s global Data Privacy Policy and Data Protection Program to ensure full compliance with GDPR, applicable US privacy laws, and other regional privacy and security regulations.</li>\n<li>Oversee and conduct Data Privacy Impact Assessments (DPIAs) as required under GDPR Article 35, addressing the following areas in each assessment:</li>\n<li>The purpose(s) for which Personal Data is being processed and the processing operations to be carried out.</li>\n<li>Details of the legitimate interests being pursued by Sitero.</li>\n<li>An assessment of the necessity and proportionality of processing operations relative to the stated purpose(s).</li>\n<li>An assessment of the risks posed to data subjects, including likelihood and severity.</li>\n<li>Details of measures in place to minimize and handle risks, including safeguards, data security controls, and other mechanisms to demonstrate compliance.</li>\n<li>Receive, investigate, and respond to reported or discovered violations of Data Processing Agreements (DPAs), coordinating timely remediation and reporting to senior leadership; serve as the primary contact at [email protected] for all data protection inquiries and violation notifications.</li>\n<li>Maintain and continuously update Sitero’s Records of Processing Activities (RoPA) in accordance with GDPR Article 30.</li>\n<li>Manage data subject rights requests (access, rectification, erasure, portability, objection) within statutory timeframes.</li>\n<li>Review, negotiate, and maintain Data Processing Agreements and Standard Contractual Clauses (SCCs) with vendors, processors, and sub-processors.</li>\n<li>Monitor and advise on regulatory developments across EU member states, proactively identifying compliance gaps and recommending corrective action.</li>\n<li>Liaise directly with the Polish supervisory authority (UODO) and other EU data protection authorities as required.</li>\n<li>Deliver organization-wide data privacy training and awareness programs; foster a culture of privacy-by-design and data minimization.</li>\n</ul>\n<p><br></p>\n<p><em>Corporate Legal Counsel</em></p>\n<ul>\n<li>Provide day-to-day legal advice on a broad range of corporate matters including commercial contracts, vendor agreements, service agreements, confidentiality/NDA agreements, and clinical trial-related legal documents.</li>\n<li>Draft, review, and negotiate contracts with clients, vendors, and business partners, ensuring alignment with Sitero’s risk tolerance and applicable law.</li>\n<li>Advise leadership on corporate governance, regulatory compliance, and risk management, escalating material legal risks as appropriate.</li>\n<li>Support intellectual property protection, including review of IP-related clauses in commercial agreements.</li>\n<li>Assist in managing disputes, claims, and litigation strategy in coordination with external counsel.</li>\n<li>Support corporate entity management and compliance filings across Sitero’s European legal entities.</li>\n<li>Stay current on Polish and EU commercial law and advise on the legal impact of regulatory changes on Sitero’s operations.</li>\n</ul>\n<p><br></p>\n<p><em>Employment Law &amp; HR Partnership</em></p>\n<ul>\n<li>Serve as the primary legal advisor to the People &amp; HR team on all employment law matters in Poland and, where applicable, across EU jurisdictions.</li>\n<li>Advise on the full employment lifecycle, including hiring practices, employment contract templates, compensation structures, performance management, disciplinary procedures, and terminations, ensuring compliance with the Polish Labor Code and applicable EU employment directives.</li>\n<li>Review and maintain compliant employee policies, handbooks, and HR procedures, ensuring alignment with both Polish law and Sitero’s global people policies.</li>\n<li>Advise on the intersection of data privacy and human resources, including lawful bases for processing employee personal data, employee monitoring policies, and HR data retention schedules.</li>\n<li>Support the HR team with legal aspects of employee relations matters, including investigations, grievances, and accommodations.</li>\n<li>Advise on works council obligations, employee representation requirements, and collective labor matters where applicable under Polish law.</li>\n<li>Partner with HR to ensure onboarding processes, background screening, and employee data handling are fully GDPR-compliant.</li>\n<li>Provide guidance on cross-border employment arrangements, including remote work policies and international employee data transfers.</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">EDUCATION AND EXPERIENCE REQUIRED:</span></p>\n<ul>\n<li>Law degree (LL.B., LL.M., or equivalent) from an accredited institution; admission to the Polish Bar (Radca Prawny or Adwokat) or equivalent EU bar is strongly preferred.</li>\n<li>Minimum 5 years of post-qualification legal experience, with significant exposure to data protection and privacy law.</li>\n<li>Demonstrated, in-depth knowledge of the GDPR and its practical application in a corporate environment, including DPIA methodology, DPA drafting, and interaction with supervisory authorities.</li>\n<li>Strong working knowledge of Polish employment law (Kodeks Pracy) and its application to HR and people operations.</li>\n<li>Experience drafting and negotiating commercial contracts, vendor agreements, and data processing agreements.</li>\n<li>Fluency in Polish and English (written and spoken) is required; additional EU language proficiency is an asset.</li>\n<li>Certified Information Privacy Professional / Europe (CIPP/E) or equivalent privacy certification is highly desirable.<br><br></li>\n</ul>\n<p><em>Preferred Experience</em></p>\n<ul>\n<li>Prior experience serving in a DPO capacity or in a dedicated privacy counsel role.</li>\n<li>Experience in the life sciences, clinical research, or healthcare sector, with familiarity with clinical data and regulatory frameworks (e.g., ICH-GCP, EMA guidelines).</li>\n<li>Familiarity with US privacy regulations (e.g., HIPAA, CCPA) and their interplay with GDPR.</li>\n<li>Experience with multi-jurisdictional data governance in an international organization.</li>\n<li>Working knowledge of ISO 27001 or similar information security standards.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">COMPENSATION &amp; BENEFITS:</span></p>\n<p>Sitero proudly offers an impressive compensation package and benefits, including a competitive salary, paid time off, and healthcare and retirement benefits.</p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">EMPLOYMENT TYPE:</span></p>\n<p>Full Time, Permanent</p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">COMMITMENTS:</span></p>\n<ul>\n<li>Standard Hours 40 hours per week, one hour lunch, Monday – Friday. Additional hours as needed.</li>\n<li>Willing to work in shifts as and when needed.</li>\n<li>Willing to flex to accommodate India Standard Time and North American time zones as needed.</li>\n</ul>\n<p><br></p>\n<p><span style=\"font-weight: bold\">DISCLAIMER: </span></p>\n<p>Sitero is an equal opportunity employer and welcomes all job applicants.  All qualified applicants will receive consideration for employment without discrimination on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other factors prohibited by law.</p>\n<p><br></p>",
    "compensation": null,
    "departmentId": "18591",
    "locationType": "1",
    "seekPromoted": false,
    "jobCategoryId": null,
    "jobOpeningName": "Legal Specialist, DPO",
    "departmentLabel": "Corporate",
    "jobOpeningStatus": "Open",
    "minimumExperience": "Manager/Supervisor",
    "jobOpeningShareUrl": "https://sitero.bamboohr.com/careers/454",
    "employmentStatusLabel": "Full-Time"
  }
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/cd3e1ec4c1a38c2098933356100fde8d22ec148c?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/7b056b92-d3d0-4fcb-8157-49c2a1f3778fJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/5e442931-04b6-4910-8dff-d19862b334e4JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/cd3e1ec4c1a38c2098933356100fde8d22ec148c/eventsJSON