Skip to content

Senior Data Privacy Counsel & Data Protection Officer (DPO)

  • Hybrid
    • Barcelona, Catalunya [Cataluña], Spain
  • Legal

Job description

About seQura

seQura provides innovative, flexible and easy-to-use payment technologies that help merchants acquire, convert and retain more customers.

We make a difference sales performance by tailoring our solutions to different sectors, to address their unique pain points and deliver superior results in Retail, Education, Eyewear, Repairs and Travel.
We also empower smart shopping to consumers who seek more value, convenience, and flexibility in their shopping, with new payment experiences that allow them to save, access interest-free credit, or pay in small, comfortable installments of up to 24 months.

Born in Barcelona, seQura is a privately-owned fintech, currently expanding throughout southern Europe and Latin America, growing above 50% CAGR and approaching 100 Million in Annual Recurring Revenue.
Over 5000 businesses, almost 2 million shoppers, and almost 400 employees continue to rate us as one of the most loved and trusted fintechs out there, with an NPS of 87%, a Trustpilot rating of 4.7/5, and a Glassdoor rating of 4.7/5.

About the role 🤓

We are looking for a Senior Data Privacy Counsel & Data Protection Officer (DPO) to join seQura’s Legal Team and play a key role in the design, leadership, and execution of the company’s global privacy and data protection strategy.

This is a highly senior position reporting directly to the Head of Legal, combining an advisory role with the formal responsibilities of Data Protection Officer under the GDPR. The role is central to ensuring eQura’s compliance with data protection laws and best practices, while actively enabling innovation, scalability, and business growth in a fast-moving fintech environment.

The ideal candidate brings deep technical expertise in data protection law, together with a pragmatic, business-oriented mindset and the personal credibility needed to lead change, influence stakeholders, and embed a strong data protection culture across the organization.

Job requirements

What challenges you'll be solving 🚀

  • Act as seQura’s Data Protection Officer (DPO), in accordance with GDPR requirements, overseeing and monitoring compliance with data protection laws across the group.

  • Advise business, product, and tech teams on data protection and privacy matters across seQura’s current markets (Spain, France, Italy, Portugal) and future expansions.

  • Design, maintain, and continuously enhance seQura’s privacy compliance framework, policies, and internal processes.

  • Lead the implementation of privacy-by-design and privacy-by-default principles in product development, new initiatives, and strategic projects.

  • Draft, review, and negotiate privacy-related contractual clauses, including data processing agreements and cross-border data transfer mechanisms.

  • Monitor legislative and regulatory developments in the EU and other relevant jurisdictions, assess their impact, and provide clear recommendations to senior stakeholders.

  • Oversee and conduct privacy impact assessments (PIAs/DPIAs) and data protection risk analyses, working closely with Legal, Compliance, Security, Product, and Engineering teams.

  • Serve as a key point of contact with supervisory authorities and, where relevant, support the management of data protection incidents and regulatory interactions.

  • Deliver clear, practical, and business-focused guidance on GDPR, ePrivacy, and other applicable data protection laws.

  • Drive privacy training, awareness, and cultural initiatives across the organization.

  • Partner cross-functionally to ensure a coherent, pragmatic, and scalable approach to privacy, data governance, and risk management

What we offer 🤩

We have a strong and sustainable foundation, where we provide a secure and reliable workplace. You have the freedom and trust to make the best contribution possible.

One of our most valued strengths by our employees is our fellowship and supportive culture, which fosters a sense of belonging by working closely with our values. With us, you will have challenging projects to work on and push your skills and knowledge.

In addition, we are very proud of the unique office we have, which offers a comfortable and inspiring environment to work in with everything you need.

  • 23 vacation days + 2 days of free disposal per year.

  • Professional development workshops or seminars.

  • Flexible compensation plan for transportation, restaurants, and kindergarten with Cobee.

  • Health insurance discounts with Sanitas and Adeslas.

  • Urban mobility by using your own bike with Kleta.

  • Free access to healthy, organic, and sustainable fruits and snacks.

Moreover, we offer a Wellness Program that embraces a holistic approach by covering 6 areas (occupational, physical, financial, emotional, social, environmental consciousness). Each area will include a variety of activities, and you'll be able to choose from 34 different activities that best meet your needs to configure a plan that best works for you.

What you’ll need  🫱🏼‍🫲🏽

  • Education: Law degree in an EU jurisdiction. A postgraduate degree or certification in privacy, compliance, or data protection (e.g., CIPP/E, CIPM, or equivalent) is a must.

  • Experience: 8+ years of experience in privacy and data protection law, ideally within a fintech, financial institution, or fast-growing tech company, or from a leading law firm advising such clients.

  • Languages: Fluency in English and Spanish (written and spoken). Knowledge of French, Italian, or Portuguese is a plus.

  • Deep and hands-on knowledge of GDPR, the ePrivacy framework, and familiarity with international data protection regimes.

  • Proven ability to combine independence, rigor, and sound judgment with pragmatism and business awareness.

  • Excellent drafting and communication skills, with the ability to translate complex legal concepts into clear, actionable guidance for both technical and non-legal stakeholders.

  • A proactive, ownership-driven mindset, with strong collaboration skills and a genuine partnership approach.

  • Leadership, charisma, and influencing skills, with the ability to persuade, build trust, and generate meaningful impact across different levels of the organization.

  • Recognized as a trusted advisor at senior levels, with discretion, sound judgment, and the confidence to challenge when needed.

  • Demonstrated leadership capacity to design, implement, and sustain a long-term data protection program

  • Strategic thinking, with the ability to anticipate regulatory trends, align privacy priorities with business goals, and contribute to long-term planning.

We kindly ask that you submit your CV in English, as it is the official language of our community.

We promote equal opportunity to all, regardless of age, color, gender identity, medical condition, physical or mental disability, race, religion, sexual orientation, or any other characteristic. We have an inclusive environment, and respect is above all.

Do you want to be part of the change? Join us!👇

or