Legal Counsel - Data & Information Security (f/d/m)
Posted on August 25, 2025 (about 12 hours ago)
General Information
Reports to: Philip Ihde, Chief Operating Officer
Talent Partner: Celia Nielsen, People & Talent Partner
Salary Band:
IC L1 Junior: 49-57k € + VSOP (5% of annual gross salary)
IC L2 Mid-Level: 64-76k € + VSOP (10% of annual gross salary)
Remote Policy: Remote-first culture with offices in Berlin and Hamburg
Talent Partner: Celia Nielsen, People & Talent Partner
Salary Band:
IC L1 Junior: 49-57k € + VSOP (5% of annual gross salary)
IC L2 Mid-Level: 64-76k € + VSOP (10% of annual gross salary)
Remote Policy: Remote-first culture with offices in Berlin and Hamburg
Your mission
HelloBetter is a pioneer in digital healthcare, developing evidence-based digital health applications for mental health conditions such as stress management, depression, problematic alcohol use, panic disorder, anxiety, vaginismus, and sleep disorders. Six of HelloBetter's ten applications are approved as digital health applications, available free of charge by prescription to insured adults in Germany. The Legal Counsel will provide expert legal guidance and oversee data protection and information security management to ensure compliance with GDPR, DiGAV, and other regulations. The role requires a fully qualified lawyer with a background in data privacy law, an organized approach, and commitment to security and compliance culture.
Your objectives
Data Protection Management:
- Provide legal guidance and oversee data protection management system, including retention policies, Data Protection Impact Assessments, Technical and Organisational Measures, and records of processing activities.
- Drive data protection certification process pursuant to Article 42 GDPR (once available)
- Manage and respond to data subject requests, ensuring timely and accurate resolution.
- Serve as the primary point of contact for external Data Protection Officer.
- Provide legal support for management and monitoring of the ISMS (ISO 27001), including supplier management, incident management, and risk management.
- Advise on implementation of information security norms and standards to ensure legal and regulatory adherence.
- Organise, execute, and follow up on internal and external audits, including implementing improvements.
- Serve as the primary point of contact for external Data Protection Officer.
- Monitor legal and regulatory developments in data privacy and information security, advising management strategically.
- Develop and monitor data privacy and information security training programs for all employees.
- Contribute to a quarterly leadership newsletter focusing on GDPR and related topics.
- Draft, review, and negotiate commercial contracts focusing on data processing agreements, supplier agreements, and technology licensing.
- Provide legal advice on contract law, corporate governance, and other legal matters.
- Contribute legal expertise to internal projects on data protection and information security.
- Collaborate with cross-functional teams to embed privacy and security by design principles in projects.
- Participate in industry groups for best practices and emerging legal trends.
Your profile
Must-Haves:
- Law degree or equivalent European qualification.
- 3+ years post-qualification experience in a data protection or technology-focused legal role.
- Experience managing data protection management system and/or legal counsel on an information security management system, including audits.
- Experience handling data subject requests and managing security/privacy incidents legally.
- Excellent organisational and project management skills.
- Strong communication and negotiation skills for collaboration with technical and non-technical stakeholders.
- Proactive, solution-oriented mindset with attention to detail.
- Fluency in English and German, including legal and business proficiency.
- Certification in data protection or information security.
- Experience in healthcare or technology sectors.
- Experience with legal ticket management and supplier relationship management.
- Interest in legal and ethical implications of AI.
Why us?
Meaningfulness
Privacy Policy for Applicants
- Mental health is a human right; we help thousands monthly with depression, stress, insomnia, burnout, and other issues.
- Unique product at forefront of digital health research.
- Product effectiveness continuously evaluated; studies published since 2014.
- Transparent data strategy, goals, and results.
- Pioneers in mental health application development and innovation.
- Operate in an exciting emerging market.
- Annual training budget of 1,000 euros for personal growth and development.
- Remote-first culture hiring globally within +/- 4.5 hours CET time window.
- Offices in Berlin and Hamburg for on-site work if preferred.
- Relocation option and support.
- Fair and equal treatment per Anti-Harassment Policy.
- Flexible working hours enabling workday shaping.
- Company language English focusing on inclusive language.
- Transparent salary bands.
- Additional 10 paid leave days for non-birth parents after childbirth or adoption.
- 28 vacation days + compensation for weekend holidays.
- Tenure-based paid time off up to three additional days.
- Permanent employment contract.
- Attractive Virtual Stock Option Plan for employees.
- Tax-deductible pension plan with above-average employer contribution.
- Free or subsidized fitness memberships.
- Regular team events.
Privacy Policy for Applicants
Interview Process
1. Screening Interview with People team (30 min)
2. Take-home Case Study (2 hours)
3. Case Study & Technical Interview with Legal team (60 min)
4. Hiring Manager Interview with Philip, Chief Operating Officer (60 min)
5. Offer Talk (15 min)
2. Take-home Case Study (2 hours)
3. Case Study & Technical Interview with Legal team (60 min)
4. Hiring Manager Interview with Philip, Chief Operating Officer (60 min)
5. Offer Talk (15 min)
About us
HelloBetter, founded in 2015 under the name GET.ON Institut für Online Gesundheitstrainings GmbH by researchers and psychologists, develops and evaluates 10 online programs covering mental health issues, cooperating with universities including Harvard and Amsterdam. Six therapy programs are approved digital health applications available by prescription in Germany. The company, based in Berlin and Hamburg, employs 130+ people and has received various awards including Wilhelm Exner Award in Psychology and Digital Health Award.
Your Application at HelloBetter
Thank you for your interest in HelloBetter and our commitment to advancing digital mental health. To apply, please complete the short form on their site.
Submit your CV in English or German. Additional documents like cover letters, certificates, recommendation letters, or other achievements may be included.
Ensure total file size is under 20 MB and upload files in PDF or JPG format as Word documents are not accepted.
If issues arise during upload, contact [email protected].
Submit your CV in English or German. Additional documents like cover letters, certificates, recommendation letters, or other achievements may be included.
Ensure total file size is under 20 MB and upload files in PDF or JPG format as Word documents are not accepted.
If issues arise during upload, contact [email protected].