Job Description
About Bolt
Bolt is shaping a future where cities are built for people, not cars. What started as an ambitious project of a 19-year-old in 2013 has grown into a global mobility platform used by more than 200 million customers and 4.5 million driver and courier partners across 50 countries.
From ride-hailing and food delivery to scooters, e-bikes, and car-sharing, Bolt helps people move through cities every day. Small, autonomous teams drive this work, combining the speed and ownership of a startup with the scale of a global technology company backed by more than 1bn in funding.
And we're just getting started.
About the role
As Privacy Counsel, you will focus on Bolt6s Commerce and payments-related activities, including privacy governance, data sharing, contracting, product support, vendor and partner arrangements, and regulatory-facing data protection work. You will work closely with the Senior Privacy Counsel and collaborate with Legal, Compliance, Risk, InfoSec, Product, and business stakeholders across the organisation.
Beyond Commerce, you may also support other verticals, projects, and headquarters functions as business needs evolve, offering broad exposure across one of the EU6s most diverse and operationally complex privacy portfolios.
Main tasks and responsibilities:
- Act as lead privacy counsel for Bolt6s Commerce function, advising on products, payments activities, and partner arrangements
- Provide practical, risk-calibrated privacy advice across Product, Legal, Compliance, Risk, InfoSec, and business stakeholders
- Draft, review, and negotiate data protection documentation, including DPAs, data sharing, intragroup, and international transfer agreements
- Support privacy in regulated and payments environments, including third-party risk, outsourcing, ICT governance, and data governance
- Advise on user journeys, customer-facing privacy materials, consent mechanisms, and data subject rights processes
- Monitor legal developments and support privacy governance, our DPO6s activities, and broader privacy initiatives across the business
Requirements
- You are a qualified lawyer with proven experience in privacy, data protection, technology law, or financial services regulation, ideally within a regulated environment (e.g. bank, fintech, or payments provider)
- You have a strong working knowledge of GDPR and can independently analyse and apply EU data protection law in complex, real-world scenarios
- You have experience advising on privacy matters across multi-stakeholder environments, including vendors, partners, systems, and data flows
- You have hands-on experience drafting and negotiating data protection agreements, including DPAs, data sharing, intragroup, and international transfer documentation
- You understand privacy considerations in payments, outsourcing, ICT governance, vendor management, and regulated digital services, with familiarity with frameworks such as DORA or PSD2/PSD3
- You take a practical, commercially aware, and solutions-oriented approach, with strong communication skills, the ability to work independently in fast-paced environments, and interest in areas such as product launches, privacy-by-design, regulatory engagement, and AI-enabled legal operations
Company offers
- Play a direct role in shaping the future of mobility.
- Impact millions of customers and partners in 600+ cities across 50+ countries.
- Work in fast-moving autonomous teams with some of the smartest people in the world.
- Accelerate your professional growth with unique career opportunities.
- Get a rewarding salary and stock option package that lets you focus on doing your best work.
- Enjoy the flexibility of working in a hybrid mode with a minimum of 2 days in the office each week to foster strong connections and teamwork.