LEXAUPDATES
PostAdvertiseAboutContact
jobsPosted 16 days ago

Legal Counsel – Privacy & AI

T

Three Ireland

📅Primary

last date

Open Access

📍

Location/Place/Mode

Dublin, County Dublin, Ireland

🔖

Eligibility

4-6 years' post-qualification legal experience; excellent knowledge of Irish and EU data protection law, including GDPR and ePrivacy Regulations; strong understanding of emerging digital regulation and AI governance frameworks; ability to work independently and manage multiple priorities; proven project management skills; experience collaborating in multidisciplinary teams. Nice to have: experience in a commercial organisation, telecommunications or technology sector, and prior experience advising on AI governance or digital regulation.

Opportunity

The intersection of data protection and artificial intelligence has become the most dynamic frontier in legal practice. As the EU AI Act takes full effect and GDPR enforcement intensifies, telecom and technology companies are competing for lawyers who can translate regulatory complexity into commercial strategy. Three Ireland, the country's largest mobile telecommunications provider, is now hiring a Legal Counsel – Privacy & AI in Dublin—a role that sits at the very heart of this transformation.

Why Privacy & AI Legal Roles Are Booming in 2026

If you have been tracking legal job markets, you will have noticed an explosion of roles combining privacy and artificial intelligence. This is not coincidence. The EU AI Act, which entered into force in August 2024, is now in its phased implementation, and by 2026 many of its obligations apply to high-risk AI systems. At the same time, the GDPR continues to generate record fines, with Ireland's Data Protection Commission (DPC) leading major investigations against tech giants. Add to that the ePrivacy Regulations, the Data Act, NIS2 for cybersecurity, and the upcoming Digital Fairness Act, and you have a perfect regulatory storm.

“Be part of something exciting. At Three, we're all about challenging what's possible, finding smarter, faster and more agile ways to connect people and technology.”

Telecoms companies are uniquely exposed. They handle massive amounts of personal data, process location data, and operate critical infrastructure—making them prime targets for both regulators and cybercriminals. They are also early adopters of AI for network optimisation, customer service bots, and predictive analytics. This is why Three Ireland has created a dedicated counsel role focused on privacy and AI, rather than folding it into a general commercial legal position.

Inside the Role: More Than a Compliance Check

The job description is remarkably detailed, and for good reason. This is not a back-office compliance role. It is a strategic position reporting directly to the Senior Regulatory Counsel and Data Protection Officer, with a mandate to embed privacy and responsible AI into the company's DNA. Let's break down what the successful candidate will actually do.

Compliance and Advisory: The Core

  • GDPR and ePrivacy: Provide practical legal advice on Irish and EU data protection laws, including GDPR and ePrivacy Regulations. This means advising on cookie consent, email marketing, push notifications, and the entire digital tracking ecosystem.
  • Emerging Digital Regulation: Monitor, interpret, and advise on the EU AI Act, Data Act, NIS2, and CER. This is cutting-edge work—few lawyers have deep experience here, which makes this role a career-defining opportunity.
  • AI Governance: Advise on AI-enabled decision-making, profiling, analytics, and automated processing. Ensure compliance with GDPR and internal AI governance frameworks.

Policy and Contracts: The Commercial Side

  • Draft, negotiate, and maintain data protection clauses and Data Processing Agreements (DPAs) with suppliers, customers, and group entities.
  • Embed privacy-by-design and responsible AI principles into new products and services from day one.
  • Develop customer-facing privacy resources to build trust and transparency—something telecom customers deeply care about.

Incident and Risk Management: The Firefighting

  • Coordinate responses to data protection incidents, investigations, and regulatory filings.
  • Support interactions with the DPC and other EU supervisory authorities on complaints and inquiries.
  • Conduct privacy impact assessments (DPIAs), AI risk assessments, and vendor risk reviews.

There is also a governance and reporting element: you will maintain records of processing activities, produce quarterly privacy KPIs for leadership, and drive continuous improvement across privacy operations. This is a role with serious visibility at the executive level.

Who Should Apply? Decoding the Ideal Candidate Profile

Three Ireland is looking for a lawyer with 4–6 years post-qualification experience—not too junior, not too senior. This suggests they want someone who has cut their teeth in private practice or a busy in-house team, but who still has energy to be hands-on and grow into the role.

The essential requirements are clear:

  • Excellent knowledge of Irish and EU data protection law, including GDPR and ePrivacy
  • Strong understanding of emerging digital regulation and AI governance frameworks
  • Ability to work independently and manage multiple priorities
  • Proven project management skills in a fast-paced, agile environment
  • Experience working collaboratively as part of a multidisciplinary team

The “nice to have” list is equally revealing. Prior experience in a commercial organisation or the telecommunications/technology sector would be a major plus. So would direct experience advising on AI governance or digital regulation. If you have been doing GDPR work and have recently upskilled in AI, you are exactly the kind of candidate they want.

But the personal qualities matter just as much. The job description uses phrases like “commercially minded”, “proactive problem-solver”, and “making complex legal and regulatory issues clear and accessible.” That tells you they don't want a timid lawyer who hides behind legal jargon. They want a business partner who can sit in product development meetings, understand technology, and craft workable solutions.

Why This Role Could Define Your Legal Career

For ambitious privacy lawyers, this is more than just another job. It is a chance to get in on the ground floor of AI governance in the telecom sector. The EU AI Act is still maturing, and companies are struggling to find lawyers who understand both the legal framework and the technology. By joining Three Ireland, you will gain unrivalled experience in:

  • Regulatory interaction: Dealing with the DPC and other EU supervisory authorities on high-stakes issues.
  • Emerging tech law: Working on AI risk assessments and governance frameworks that are still evolving.
  • Commercial drafting: Negotiating DPAs with global suppliers and enterprise customers.
  • Strategic influence: Shaping how a major telecom integrates privacy and responsible AI into its business strategy.

In-house roles offer a different lifestyle from private practice. You are not billing hours; you are solving problems. Three Ireland describes itself as an agile, forward-thinking company, and the role comes with a hybrid working model (3 days in the Dublin office per week), competitive salary, annual bonus, pension contribution, and 25 days of holiday plus 2 company days. You can even buy or sell up to 5 extra days of leave each year. There is also healthcare insurance, life assurance, a subsidized canteen, free on-site parking, and access to learning and development tools.

How to Apply and Stand Out

The application link is not a LinkedIn “Easy Apply” button. Three Ireland directs candidates to its own careers page: https://www.three.ie/careers. If you require reasonable adjustments for the interview process, you can email aoife.omeara@three.ie. A word of advice from a career coach's perspective: tailor your CV to highlight any AI-related legal work, even if it was informal. If you have completed the IAPP's AI Governance Professional (AIGP) certification, make that prominent. Mention specific GDPR investigations you have handled, DPAs you have negotiated, and any experience with ePrivacy consent mechanisms.

Also, note that the company welcomes applicants who do not meet every “nice to have” criterion. The job ad explicitly says: “If you do not ‘tick every box’ in this job description, you likely have other valuable skills that would make you a great fit.” That is a strong signal that they value potential and cultural fit over a perfect checklist.

Frequently Asked Questions

1. Is this role open to candidates outside Ireland?

The job posting does not specify nationality or visa requirements. However, it is based in Dublin, and the role requires knowledge of Irish and EU data protection law. Candidates should check their right to work in Ireland and may want to contact Three Ireland's recruitment team via the careers page for clarification.

2. What is the application process?

Candidates should apply directly through Three Ireland's careers website (three.ie/careers). The posting also mentions contacting aoife.omeara@three.ie if reasonable adjustments are needed for an interview. A typical process involves an initial screening, one or more interviews with the legal team, and possibly a technical or case-based exercise.

3. Which laws and regulations should I focus on to prepare for this role?

Priority areas include GDPR (especially its analysis of automated decision-making and profiling), the ePrivacy Directive/Regulations regarding cookies and direct marketing, the EU AI Act risk categories and governance mandates, the Data Act, NIS2, and the evolving guidance from the European Data Protection Board (EDPB) on AI and data protection.

4. Does Three Ireland offer flexible working or other employee benefits?

Yes. The company operates a hybrid model requiring 3 days per week in the Dublin head office. Benefits include a competitive salary, annual performance bonus, pension contribution, 25 days annual leave plus 2 company days, the option to buy or sell 5 days of leave each year, healthcare insurance, life assurance, phone & laptop, subsidized canteen, learning & development tools, and free on-site parking.

This is a unique opportunity for a privacy lawyer to step into the future of legal practice. With AI regulation still in flux, the chance to help shape a telecom giant's response is genuinely once-in-a-generation. If you have the GDPR foundation and a curiosity for technology, do not let this one pass you by.

Advertisement
Ad slot — configure in AdSense

More Legal Job Opportunities

jobs

Fund Legal – Assistant Vice President

State Street

📅 Open

View Details →
jobs

Legal Counsel / Senior - Real Estate Investments

SD Legal

📅 Open

View Details →
jobs

Legal Counsel – Calvin James Recruitment (Abu Dhabi, UAE)

Calvin James Recruitment

📅 Open

View Details →
jobs

Senior Legal Counsel - Digital Banking

SD Legal

📅 Open

View Details →
Advertisement
Ad slot — configure in AdSense