Commercial Legal Counsel (m/f/d)
Commercial Legal Counsel
The Commercial Legal Team is responsible for all customer-facing legal activities, contract management, and commercial compliance across PTV Logistics' B2B SaaS operations. This role manages the full commercial contracting lifecycle, leads RFP/RFI responses, ensures product compliance with data protection and security standards (ISO 27001, GDPR), and develops standardized legal frameworks that enable efficient sales processes while protecting company interests.
Customer Contracts & Commercial Agreements:
Negotiate and draft SaaS subscription agreements, master service agreements, and license agreements
Support the sales team in complex deal negotiations with enterprise customers
Draft and negotiate professional services agreements, implementation agreements, and SOWs
Negotiate data processing agreements (DPAs) and business associate agreements (BAAs)
RFP/RFI Management & Standard Templates:
Lead legal and compliance sections of customer RFPs, RFIs, and security questionnaires
Develop and maintain library of standard RFP responses for legal, security, and compliance topics
Develop self-service contract templates for standard deal scenarios and standardize customer contract templates (SaaS agreement, DPA, Order Form)
Data Protection & GDPR Compliance:
Serve as Data Protection Officer (DPO) or coordinate with external DPO and handle data protection authority inquiries and audits
Maintain and update Records of Processing Activities (ROPA), Conduct Data Protection Impact Assessments (DPIAs) for new products and features, Manage data subject access requests (DSARs) and data breach notification procedures
Review and negotiate data processing agreements with customers and subprocessors; maintain subprocessor register and manage subprocessor notification processes
Product Compliance & Information Security:
Drive and maintain ISO 27001 certification and ongoing compliance and coordinate annual ISO 27001 audits
Develop and update information security policies and procedures
Review product features for compliance with security and privacy standards
Ensure compliance with industry-specific regulations (e.g., NIS2, DORA if applicable)
Cross-Functional Collaboration & Governance:
You are partner with Sales, Product, Customer Success on commercial legal matters and collaboration with Finance on contract revenue implications and billing terms
Required Qualifications
4–7 years of legal experience, ideally in-house at B2B SaaS or technology companies
Expertise in SaaS contract negotiation, software licensing, and balancing legal risk with business enablement
Strong knowledge of GDPR, EU data protection law, and ISO 27001 / information security frameworks
Experience with RFP/RFI processes, customer procurement, and high-volume contract negotiations
Excellent negotiation skills, strong project management and clear communication skills
Certified Information Privacy Professional/Europe (CIPP/E), ISO 27001 Lead Auditor, experience with CLM (Contract Lifecycle Management) systems is a plus
Fluent in English and German