Madrid, Community of Madrid, Spain
SVP Global Privacy Officer & Legal Head Group Tech & AI I lead the global privacy strategy in more than 60 countries, advise on the legal impact of artificial intelligence, and help international teams navigate with clarity and confidence in an increasingly demanding regulatory environment. I work with two convictions: 1️⃣ Help my clients understand and implement legal requirements in a pragmatic, holistic, and agile manner. 2️⃣ Assist them in putting their customers and end-users at the center, maintaining their trust and building sustainable relationships. My purpose is to transform complex or poorly aligned legal requirements into simple, actionable solutions adapted to a constantly changing environment. 🔹 WHAT I DO ▶ I translate the GDPR, the EU AI Regulation, and other international privacy regulations into useful and applicable business solutions. ▶ I design global privacy, data protection, and AI strategies that drive innovation and trust. ▶ I lead multidisciplinary and international teams, building bridges between the legal, technological, and human aspects. ▶ I share knowledge at international training sessions and conferences. 🔹 WHY I CAN HELP YOU OR YOUR COMPANY ✔ More than 20 years of international experience in technology law, privacy, and data protection. ✔ I have advised more than 30 countries, led a global team of 40 professionals, and trained hundreds of people in AI, privacy and ethics. ✔ I design compliance policies, contracts, and processes that actually work. ✔ I simplify regulations so they deliver real business value. ✔ I understand the challenges of legal, IT, and business teams because I have spent years listening to and supporting them. 🔹 WHY ME → I understand the intersection between law, technology, and people, and I translate it into clear, business-savvy actions. → I combine a global vision, practical experience, and purposeful leadership. → I am approachable, direct, and strategic, and I enjoy making things easier for others. → An active voice in global forums such as CIPL and the World Employment Confederation. → An international leader with experience in Spain, Switzerland, and France. I am fluent in Spanish, English, and French. 🎤 Available as an international speaker for events, conferences, or training on: • Privacy, data protection, AI, and digital ethics. • The EU AI Regulation and its practical application. • Purposeful human leadership, diversity, and personal development.
Group Legal Department (headquarters in Zurich). 👤 Reported to the General Counsel until March 2025. From April 2025, to the SVP Group Head of Corporate Functions. 📊 Regularly report to the Audit Committee of the Board of Directors 👥 Direct team: 8 people 🌍 Privacy community: +40 professionals 🔹 Main responsibilities: → IT and Digital legal partner, including AI, supporting the execution of the global strategy → Member of the Responsible AI Committee → I co-lead the implementation of the EU AI Law, ensuring regulatory and ethical compliance → I lead the AI Series, monthly sessions for more than 350 employees on topics such as AI and intellectual property, AI and privacy, algorithmic bias, and ethical risks → I oversee the global data protection program, defining annual KPIs and monitoring compliance monthly in more than 60 countries → I am the Group Data Protection Officer (DPO), responsible for global privacy strategy, relations with authorities, and incident response → I review and negotiate global technology contracts, including specific clauses on privacy, cybersecurity, personal data, and automation → I coordinate with global teams to ensure the correct application of the privacy by design principle in all tools and systems. → I promote best practices in the ethical use of technology and in adapting legal models to new realities such as cookies, dark patterns, opaque algorithms, and generative AI systems. → I provide cross-functional advice to business, legal, and IT departments on regulatory risks, impact assessments, international transfers, and GDPR compliance. ✨ Notable achievements: ✓ I co-lead the implementation of the EU AI Regulation in the Group. ✓ I promoted the AI Series to train legal and business teams. ✓ I simplified and updated technology contracts by incorporating AI elements. ✓ I led a team specialized in cookies, dark patterns, and cybersecurity.
Group Legal Department (headquarters). 👤 Reported to the General Counsel 📊 Regularly reported to the Audit Committee of the Board of Directors 👥 Direct team: 5 people 🌍 Global privacy community: +20 professionals 🔹 Main responsibilities: → Lead the Global Data Protection Program, ensuring compliance with the GDPR and other international privacy laws → Appointed Group Data Protection Officer (DPO), with responsibility for more than 60 countries → Oversee the creation, validation, and implementation of all privacy deliverables, including policies, procedures, notices, international transfer mechanisms, training, organizational model, and third-party management → Coordinate relationships with data protection authorities and lead the response to privacy incidents at the corporate level → Escalation point for Local Privacy Officers, with legal advisory roles in impact assessments, risk management, and strategic consultations → Advise corporate functions and countries on the legal implications of technology initiatives and transformation projects Digital → Monitor the Group's regulatory compliance through audits, review of processing activities, and verification of technical and organizational measures → Promote global privacy training and ongoing awareness, tailored to different levels and functions → Collaborate with the Information Security area in the design of appropriate controls for systems that process personal data ✨ Notable achievements: ✓ Coordinated the legal review and GDPR adaptation of more than 70 Group websites ✓ Led a hybrid training program (online + in-person) with more than 10,000 employees trained in privacy ✓ Consolidated the Global Privacy Operating Model (GOM), which remains in force at the corporate level
Group Legal Department (headquarters). 👤 Reported to the General Counsel 📊 Regularly reported to the Audit Committee of the Board of Directors 👥 Direct team: 3 people 🔹 Main responsibilities: → Lead the global data protection program in 60+ jurisdictions, ensuring the correct implementation of the GDPR and other international regulations → Coordinate local compliance initiatives, aligning global priorities, methodologies, and KPIs → Advise on IT law and privacy on global projects, especially on digital transformation initiatives → Define and deliver data protection training to key functions that process personal data daily → Assess and mitigate regulatory, business, and technology risks related to data processing → Drive the global privacy strategy as a cross-cutting element of the business, integrating privacy by design into tools and processes → Approve new versions of global tools, real-world testing, and technological developments that impact personal data → Issue Binding privacy standards and recommendations aligned with Group policies → Coordinate with IT, Cybersecurity, and corporate functions to ensure data security and incident response → Represent the Group at international forums, participating in conferences and expert committees on privacy and data protection ✨ Notable achievements: ✓ Defined and secured approval of the global GDPR compliance program by the Group CEO ✓ Secured the necessary investment for its deployment and ensured that each European country designated a privacy officer ✓ Organized an international collaborative team and developed global templates such as consent policies and web legal terms ✓ Secured local management commitment to support the effective implementation of the GDPR
👤 Reported to several partners at the firm 🔹 Main responsibilities: → Advised national and international clients on technology law, data protection, intellectual property, e-commerce, outsourcing, and telecommunications → Participated in due diligence processes related to acquisitions and mergers, with a focus on regulatory compliance, licensing, software contracts, and intangible asset management → Drafted, reviewed, and negotiated complex contracts related to software licenses, digital services, and personal data processing → Supported technology clients in their international expansion, identifying legal risks and proposing sound and secure contractual strategies → Prepared legal reports, contractual clauses, and compliance schemes for highly regulated sectors ✨ Notable achievements: ✓ Participated in several international due diligence processes, analyzing risks associated with intellectual property and personal data ✓ Reviewed and adapted technology license agreements for use with end-users in multiple jurisdictions