Most CEOs managing significant organizations will recognize a version of this picture: outside counsel costs keep climbing, the regulatory environment keeps expanding, and the in-house legal team keeps absorbing more — more contracts, more compliance obligations, more cross-border complexity, more requests from a business that has learned to lean on legal for everything from AI deployment reviews to ESG disclosure sign-off.
The question that rarely gets asked directly is whether the legal function, as currently structured and resourced, is the right instrument for what the business now needs from it. In-house legal teams were originally built around a specific value proposition: handling routine legal work in-house is cheaper than referring everything to outside counsel. That proposition remains valid. But the scope of what companies now need from their legal function has expanded considerably — and in most organizations, the structure and resourcing of the function have not kept pace.
The result is a function that is doing more than it was designed to do, with the resources it was given when its mandate was narrower. The legal team is skilled and committed. The issue is not talent. It is organizational design.
This article makes the case for a different way of thinking about the legal function — not as a service department managing legal tasks, but as a corporate capability managing legal risk, compliance governance, and contractual intelligence across the whole organization. The distinction is significant, because the two models require different structures, different mandates, and different levels of investment. And crucially, the transition from one to the other is not something the legal department can drive on its own. It is a decision that sits with the CEO.
What follows is an attempt to lay out why that decision is worth making, what it involves, and what it delivers.
The legal team is skilled and committed. The issue is not talent. It is organizational design — and organizational design is a CEO's domain.
有規模的企業執行長,幾乎都曾面對同一幅圖景:外部法律顧問費用年年攀升,法規遵循的要求持續擴張,而內部法務團隊承接的工作只增不減——合約審查、跨境合規、AI部署評估、ESG揭露簽核,業務部門早已習慣把各類法律問題一律轉交法務處理。
然而,少有人直接追問的問題是:以現有的編制與資源,內部法務職能是否真的足以應對企業當前的需求?設立企業法務部門,最初的邏輯很清晰:將例行法律事務內化,比全數委外給律師事務所更具成本效益。這個邏輯至今仍然成立。但企業對法務職能的需求已今非昔比,而職能的架構與資源配置,卻往往停留在當年的格局。
結果是:法務團隊以遠超設計初衷的範疇在運作,卻依然受限於過去授權範圍較狹隘時所配置的資源。問題不在人才,而在組織設計。
本文要論證的,是一種不同的思考框架——將法務職能視為全公司層級的核心能力,而非處理法律事務的服務部門,讓法務承擔起法律風險管理、法規遵循治理與合約資訊整合的整體責任。兩種定位的差異,體現在截然不同的架構設計、授權範圍與資源投入。更關鍵的是,這種轉型無法由法務部門自行推動,它需要執行長做出決策。
本文試圖說明:這個決策為何值得做出、它的具體內涵是什麼,以及它能為企業帶來什麼。
問題不在於人才,而在於組織設計——而組織設計,是執行長的職責。
Section 1 — How the Cost Centre Model Emerged, and Where It Falls Short
The framing of legal as a cost center has a clear historical logic, and understanding it is the starting point for thinking about what needs to change.
In-house legal teams were built, in most companies, as a cost arbitrage play. Outside counsel was expensive. Routine legal work — contract review, employment matters, regulatory filings, standard commercial negotiations — could be handled more cheaply by salaried lawyers than by billing law firms. The economics were straightforward: every dollar invested in in-house legal capacity saved several dollars in outside counsel fees. Legal was a cost center in the technical accounting sense — it did not generate revenue — but its economic justification was direct and measurable.
Over time, as businesses grew more complex, the remit of in-house legal teams expanded with them. They took on strategic advisory work: M&A support, regulatory strategy, board governance. They absorbed new compliance domains as regulations multiplied across data privacy, employment, ESG, and technology. They became, in many companies, genuinely indispensable to how the business operated.
But the measurement framework did not evolve alongside the expanded role. Legal's contribution to a successful acquisition, to a regulatory investigation resolved without penalty, to a contract negotiation that materially improved commercial terms — these do not appear on any dashboard. The cost line remains visible. The value line remains invisible. And in most organizations, invisible value tends to be systematically underweighted when resource allocation decisions are made.
The consequence is a structural tension that most organizations are managing rather than resolving: the legal function is being asked to do more, outside counsel costs continue to rise as the in-house team reaches its capacity limits, and the investment case for expanding in-house capability is difficult to make because the value of what legal does is hard to quantify in the terms that resource allocation decisions require.
The cost line is visible. The value line is invisible. And invisible value tends to be systematically underweighted when resource allocation decisions are made.
There is a calculation that is worth doing in this context. Take your outside counsel spend over the last three years. Identify the matters where adequate in-house capacity could reasonably have handled the work. Estimate the difference between what was spent and what in-house handling would have cost. Add the matters that went to outside counsel not because they required specialist expertise, but because the in-house team was already at capacity. Consider the regulatory penalties or settlement costs in areas where earlier legal involvement might have identified the risk at a stage when it was more manageable.
The figure that emerges is a useful data point — not because it indicts any particular decision, but because it makes visible a trade-off that is usually implicit. Running the legal function below the capacity the business actually needs has a cost. Making that cost visible is the starting point for a more informed investment decision.
第一節 — 成本中心定位的形成與侷限
將法務定位為成本中心,有其清晰的歷史脈絡。理解這段脈絡,是思考如何變革的起點。
多數企業設立內部法務部門,最初是一個成本套利的決策。聘用受薪律師處理例行法律事務——合約審查、勞動事務、監管申報、商業談判——遠比委外給律所按時計費划算。就會計定義而言,法務是成本中心,不產生直接收入;但其經濟效益清晰可辨,投資回報直接可量。
隨著企業規模擴大、業務複雜度提升,法務職能的角色也隨之深化:從例行事務處理,延伸至併購支援、監管策略規劃、董事會治理;從單一法律管轄,擴展至個資保護、勞動法規、ESG揭露、科技監管等新興合規領域。在許多企業中,法務已成為不可或缺的核心職能。
然而,衡量框架並未隨之演進。法務在一次成功收購中的貢獻、協助化解一場監管調查的努力、在商業談判中爭取到的有利條款——這些都不會出現在任何管理報表上。成本清晰可見,價值卻無從呈現。而在大多數組織中,看不見的價值,在資源分配決策中總是系統性地被低估。
由此形成一種難以消解的結構性張力:法務被要求承擔更多,內部承載力見頂後外部法律顧問費便隨之攀升,而擴充內部能量的投資理由,卻又難以用資源分配決策所需的量化語言加以說明。
成本清晰可見,價值無從呈現。而看不見的價值,在資源分配決策中總是系統性地被低估。
有一個計算值得認真做一次。取出過去三年的外部法律顧問費支出,逐項檢視:哪些案件本可由具備足夠能量的內部團隊處理?哪些委外並非因為案件性質需要,而僅僅是因為內部資源已告罄?再加上那些若能在早期取得法務介入、本可在風險仍易於管控的階段加以化解的罰款或和解費用。
這個數字本身不指向任何決策的對錯,但它讓一個通常隱而不顯的代價變得可見:以低於實際需求的法務能量運作企業,本身就有其成本。讓這個成本浮現,才是做出更為明智的投資決策的起點。
Section 2 — The Risk-Aversion Dynamic: A Structural Issue, Not a People Issue
Beyond the resource question, there is a second structural feature of how most in-house legal functions operate that is worth understanding — because it affects how much value the function can deliver regardless of how well it is staffed.
Lawyers are trained to identify risk. This is core to legal education and professional practice, and in the right context it is precisely what you want from a legal adviser. The lawyer's professional obligation is to find what could go wrong and ensure the client understands the exposure. In private practice, the client takes that analysis and makes their own commercial decision. The lawyer's role is the advice; the decision belongs to the client.
In-house, this dynamic works differently. The in-house lawyer is not an external adviser but a member of the organization. When legal flags a risk and the business proceeds, the lawyer carries some of the exposure if the risk materializes. When legal enables a decision — identifies the structure that makes something possible — and that decision later encounters problems, legal is implicated in the outcome. The natural professional response to this asymmetry is caution: qualify opinions carefully, escalate rather than decide on close calls, and be conservative when the risk profile is unclear.
This is not a failing of the individuals involved. It is a rational response to a structural incentive design that rewards caution and does not adequately reward the enabling function. It produces, at organizational scale, a legal team that the business experiences as a friction point rather than a resource — not because the lawyers are wrong to be careful, but because the conditions under which they operate make it difficult to be anything else.
The business response to this friction is predictable: route around legal for decisions that legal will slow down, then ask legal to manage the consequences. This deepens the reactive dynamic, which reinforces the perception of legal as a brake rather than an enabler, which produces further pressure to minimize legal's involvement in real-time decisions.
The risk-aversion dynamic is not a people problem. It is a structural one — and structural problems require structural solutions, not better communication or different hiring.
The path out of this dynamic requires three things that cannot be generated from within the legal department: sufficient staffing so that lawyers are not perpetually in triage mode; a clear mandate from senior leadership about what legal's role in commercial decisions is meant to be; and a measurement framework that recognises legal's contribution to outcomes, not only its avoidance of failures.
These are organizational design questions. They sit with the CEO.
第二節 — 風險規避的結構性根源
除資源問題外,多數企業法務職能在運作上還存在另一個值得深入理解的結構性特徵——它制約著法務能夠創造的價值上限,與人員素質高低無關。
律師的訓練核心是識別風險。這是法律教育與專業實踐的基礎,在適當的情境下,正是客戶對法律顧問的期待。律師的職業義務,是找出潛在問題、確保客戶充分掌握相關曝險。在私人執業的架構下,客戶在聽取法律意見後,自行做出商業判斷;決策屬於客戶,律師負責提供建議。
然而,企業內部法律顧問面對的是全然不同的動態。內部律師不是外部顧問,而是所服務組織的一員。當法務提出風險警示、業務仍決定推進時,若日後風險成真,律師承擔了部分連帶曝險。當法務協助促成一項決策,而該決策事後出現問題時,法務亦難逃責任。面對這種不對稱結構,最理性的專業回應就是趨向保守:嚴格限定意見範圍、邊界問題傾向上報而非自行判斷、風險不明確時寧可保守。
這不是個人品格的問題,而是一種針對結構性激勵失衡的理性反應——這套激勵機制獎勵謹慎,卻不充分獎勵促成業務的功能。在整個組織層面,其結果是法務被業務部門體驗為阻力而非助力,不是因為律師謹慎有誤,而是因為他們所處的結構條件讓他們難以表現出其他樣貌。
業務部門對此的回應往往是繞過法務,自行推進他們預期法務會拖延的決策,事後再交由法務善後。這種模式進一步強化了法務的被動定位,也使業務部門更傾向於縮減法務在即時決策中的參與。
風險規避不是人的問題,而是結構的問題。結構性問題,需要結構性的解決方案——而非溝通技巧的改善或招募策略的調整。
要打破這一動態,有三個條件缺一不可,且均無法從法務部門內部自行創造:足夠的人力配置,使律師不必長期處於應急分流狀態;來自高層的明確授權,界定法務在商業決策中應扮演的角色;以及一套衡量框架,能夠正視法務對決策成果的貢獻,而不僅記錄它規避了哪些失敗。
這三個條件,都是組織設計層面的問題,答案在執行長的手中。
Section 3 — The Higher Value Tasks Question
One of the most common arguments made for investing in legal technology and process improvement is that, by automating routine work, the legal team will have more capacity for higher value tasks. It is a compelling proposition. It is also one that rarely survives the follow-up question: what, specifically, are the higher value tasks?
In most organizations, that question produces either a gesture toward 'strategic partnership' and 'proactive engagement' — phrases that describe a relationship rather than a set of activities — or a list of things the legal team is already doing and would simply do more of if it had the time. Neither answer is satisfying, and neither explains why the investment in efficiency will produce the strategic transformation being promised.
The reason the question is difficult to answer is that it contains a hidden assumption: that the higher value tasks already exist somewhere in the organization, waiting for a lawyer with available capacity to pick them up. In most organizations, that is not true. The higher value work is not sitting in a queue. It is structurally absent — because the organization has not designed a role for legal at the strategic level, has not given legal the visibility or mandate to operate there, and has not built the infrastructure that would make strategic legal engagement possible even if the time were available.
Efficiency without mandate produces lawyers who are less busy, not lawyers who are more strategic. A legal team that has automated its contract review and recovered thirty percent of its capacity will, in most organizations, spend that capacity on the next tier of reactive work that was previously being deferred — because that is what the inbox contains. And the inbox is shaped by how the organization relates to its legal function, not by how much time the lawyers have.
Efficiency without mandate produces lawyers who are less busy, not lawyers who are more strategic. The higher value tasks are not a list of activities. They are a different organizational relationship between legal and the business.
The higher value tasks, properly defined, are not a category of work. They are a description of a different organizational position. Legal involved in strategic decisions before they are made, not after. Legal with visibility over the full contract portfolio, so it can identify risk concentration and conflicting obligations that nobody else is positioned to see. Legal coordinating compliance across domains, so the organization has a complete and current picture of what it has committed to and where it is exposed. Legal providing the board with a governance-grade view of legal risk as a matter of routine, not as a crisis response.
Those are the higher value tasks. They are real, they are consequential, and they are worth the investment. But they are not available to a legal team that has been given efficiency tools without a corresponding change in mandate, visibility, or organizational position. The efficiency investment is necessary but not sufficient. What makes it sufficient — what converts recovered capacity into genuine strategic value — is the corporate-level decision to change what legal is for.
This is the question that legal operations, at its full potential, is designed to answer. And it is the question the rest of this article examines.
第三節 — 「更高價值任務」究竟是什麼
推動法務科技與流程優化最常見的理由之一,是透過自動化例行工作,騰出空間讓法務團隊專注於更高價值的任務。這個主張聽起來令人信服,卻往往無法回答一個關鍵的追問:那些「更高價值的任務」,究竟指的是什麼?
在多數企業中,這個問題換來的,要麼是對「策略夥伴」或「主動介入」的模糊描述——這些是在形容一種關係,而非一套具體的工作內容——要麼是一份法務團隊已在執行、只是希望能做得更多的清單。兩種答案都難以讓人信服,也都未能說明效率投資如何轉化為真正的策略躍升。
這個問題難以回答,根源在於一個隱藏的假設:那些更高價值的任務早已存在,只等法務空出時間去承接。但在多數企業中,事實並非如此。更高價值的工作不是積壓在等待佇列中,而是在結構上根本付之闕如——因為組織從未在策略層面為法務設計相應角色,從未賦予法務在那個層面運作所需的能見度與授權,也未曾建立讓策略性法務參與得以發生的制度基礎,即使時間充裕也不例外。
缺乏授權的效率提升,造就的是更輕鬆的律師,而非更具策略視野的律師。一個自動化了合約審查、釋放出三成工時的法務團隊,在多數組織中,這些工時將被用於處理先前積壓的下一批被動事務——因為收件匣的內容,取決於組織如何定位法務職能,而非律師手頭有多少時間。
缺乏授權的效率提升,造就的是更輕鬆的律師,而非更具策略視野的律師。更高價值的任務,不是一份工作清單,而是法務與業務之間一種全然不同的組織關係。
準確而言,更高價值的任務並非某一類工作,而是法務在組織中佔據一個不同位置的體現:在策略決策成形之前介入,而非事後補救;對完整合約組合擁有能見度,從而識別任何單一部門都無從察覺的風險集中與義務衝突;跨領域統籌法規遵循工作,使組織對自身承擔的義務與潛在曝險保持全貌掌握;並以例行彙報而非危機應對的方式,向董事會提供治理層級的法律風險視野。
以上才是真正意義上的更高價值任務——有實質內涵、影響深遠,值得投資。但這些任務對一個獲得了效率工具、卻未獲得相應授權、能見度與組織地位調整的法務團隊而言,依然遙不可及。效率投資是必要條件,但非充分條件。讓效率投資真正發揮效用的,是公司層面決定重新定義法務存在意義的那個決策。
這正是法務營運在其完整潛力下所要回答的核心問題,也是本文其餘部分所要探討的主題。
Section 4 — What Legal Operations Is, and Where Its Real Potential Lies
Legal operations, as a field, has developed a rigorous and valuable body of practice focused on how legal departments can be managed more effectively. The Corporate Legal Operations Consortium (CLOC) has been instrumental in defining and advancing this practice — mapping twelve core competency areas covering technology adoption, financial management, process improvement, data analytics, and vendor management, among others. Industry benchmarks have built on this foundation to measure efficiency metrics, cost per matter, cycle times, and outside counsel spend. Legal departments that invest in legal operations in this sense run more efficiently, reduce outside counsel spend, and deliver more consistent service to the business. This work is genuinely valuable and continues to raise the standard of how legal departments operate.
This article approaches a related but distinct question — one that sits alongside the legal department management question rather than in place of it. The question is not how the legal department can operate more effectively within its current organizational position, but what the organization as a whole needs to build at corporate level in order to get full value from its legal capability. These are complementary questions, and they require answers at different levels of the organization.
The reason the corporate-level question is worth examining separately is structural. A legal operations program that reports to the General Counsel, funded by the legal budget, and measured by legal department metrics will improve the legal department. There are things it is less well positioned to change: legal's visibility over contracts held by procurement, sales, or HR; legal's involvement in AI deployment decisions made by the technology department; the General Counsel's standing to coordinate compliance activity across business units; or the board's view of what the legal function is worth to the organization as a whole.
How the legal department can operate more effectively, and what the organization needs to build at corporate level to get full value from its legal capability — these are complementary questions that require answers at different levels.
The corporate-level question is about the infrastructure that gives the organization a complete and current picture of its legal and compliance obligations, and the governance frameworks to manage them systematically. This is not a legal department initiative. It is a corporate governance investment.
Consider what this looks like in practice. In many organizations, no single function has a complete view of all the contracts to which the company is a party. Legal holds some agreements. Procurement holds supply contracts. Sales holds customer agreements. HR holds employment documents. Finance holds financing arrangements. Each department manages its own contractual obligations in isolation — without visibility over what other departments have committed to, or how obligations across different agreements may interact.
In some organizations — and this is a common and understandable situation — legal has deliberately ceded custody of certain contracts to the business units that use them, as a practical response to limited capacity. A legal team that cannot manage its full workload will prioritize what it must hold. The result, regardless of intent, is that the organization lacks a consolidated view of its contractual commitments.
This is a corporate governance gap, not a legal department gap. It cannot be addressed within the legal department's budget and mandate. It requires a corporate-level decision about who is responsible for maintaining the organization's complete picture of its legal obligations — regulatory and contractual — and what authority and resources that function needs to do its job.
第四節 — 法務營運的本質與潛力所在
法務營運作為一個專業領域,已發展出一套嚴謹、有價值的實踐體系,聚焦於如何提升法務部門的管理效能。企業法務運作聯盟(CLOC)在推動這一領域的定義與發展上貢獻卓著,梳理出涵蓋科技應用、財務管理、流程優化、數據分析與供應商管理等十二大核心能力。業界基準在此基礎上發展出完整的效能衡量體系。在這個框架下持續投入的法務部門,確實能夠提升運作效率、降低外部法律顧問費用、為業務提供更一致的服務支援。這套工作有其真實價值,也在持續提升整個行業的管理水準。
本文探討的,是一個與此並行、但層次有所不同的問題——並非取代法務部門管理的討論,而是從互補的角度加以延伸。這個問題不是「法務部門如何在現有組織位置上提升效能」,而是「企業整體需要在公司層面建立什麼,才能從其法律能力中獲取完整的價值」。這是兩個互補的問題,需要在組織的不同層面分別作答。
之所以值得將公司層面的問題單獨審視,原因在於結構性的限制。一個向法務長彙報、以法務預算支應、以部門指標衡量的法務營運計畫,能夠提升法務部門的表現,但有一些事情它難以改變:法務對採購、業務或人資部門所持有合約的能見度;法務對科技部門AI部署決策的參與程度;法務長跨業務部門統籌法規遵循工作的權威;以及董事會對法務職能整體價值的認知。
如何提升法務部門的效能,以及企業需要在公司層面建立什麼才能充分發揮法律能力——這是兩個互補的問題,需要在不同層面分別作答。
公司層面所要建立的,是一套讓組織對全部法律與法規遵循義務保有完整、即時掌握的基礎架構,以及系統性管理這些義務的治理框架。這不是法務部門的內部計畫,而是公司治理層面的投資。
現實情況往往是:許多企業內部並無任何單一職能擁有公司全部合約的完整視野。法務持有部分協議、採購持有供應商合約、業務持有客戶協議、人資持有僱傭文件、財務持有融資安排,各自為政,對彼此的承諾與潛在義務交叉影響缺乏掌握。
在某些企業中,法務基於資源有限的現實考量,已主動將特定合約的保管責任讓渡給相應業務部門,這是可以理解的務實選擇。然而無論初衷為何,結果都是一致的:組織缺乏對自身合約承諾的完整圖景。
這是公司治理層面的缺口,而非法務部門層面的問題。它無法在法務部門的預算與授權框架內解決,需要的是公司層面的決策:誰來負責維護組織對其全部法律義務的完整掌握,以及執行這項職責所需的職權與資源如何配置。
Section 5 — Why This Cannot Be Solved at the Departmental Level
Understanding why legal operations, at its full potential, requires corporate ownership rather than departmental initiative is important — because it explains why the problem has persisted in organizations that have capable, committed legal teams.
The evidence paradox
To make the investment case for corporate-level legal operations, it is necessary to demonstrate the value of infrastructure that does not yet exist, using data that will only be available after it has been built. This is not a failure of analysis or advocacy — it is a structural feature of any investment in governance capability. The return on preventing a compliance failure is invisible until the failure that was prevented is compared against the cost of failures that were not. The General Counsel can make an informed argument; only the CEO can make the decision to act on it without waiting for the evidence that the investment itself would generate.
Authority
A governance program owned by the legal department does not carry the organizational authority to redesign how other departments manage their legal obligations. Requiring procurement to centralize contract governance, requiring IT to route AI deployment decisions through a cross-functional review, requiring HR to integrate employment practices into a broader compliance framework — these involve changes to how other departments operate, and they will not happen on the basis of a request from a peer function. They happen when the CEO has set the expectation that they will.
Perception
A legal operations initiative driven by legal is naturally perceived by other departments as legal expanding its remit. Even where the intent is to serve the whole organization, the program will encounter resistance that has nothing to do with its merits — because the departmental context in which it originates shapes how it is received. A program commissioned at the corporate level, with a clear statement of its purpose and scope, carries a different kind of legitimacy.
Bandwidth
A legal team managing a full operational workload does not have the spare capacity to simultaneously build the cross-functional relationships, data infrastructure, and governance frameworks that corporate-level legal operations requires. Building this capability while continuing to manage day-to-day legal work is not a realistic expectation unless the organization is willing to fund both. Recognizing this — and making resourcing decisions accordingly — is a corporate judgment call, not a departmental one.
None of these are arguments against the legal department's capability or commitment. They are structural features of how organizations work — and recognizing them is the starting point for designing a solution that can actually succeed.
第五節 — 為何此問題無法在部門層面解決
理解為何法務營運在完整發揮其潛力時,需要公司層級的主導而非部門自發的推動,至關重要——這解釋了為何即便擁有能力優秀、盡職盡責的法務團隊,許多企業仍長期在原地踏步。
舉證困境
要為公司層級的法務營運建立投資論據,必須在基礎架構尚未存在之前,就論證其潛在價值。這不是能力或溝通的問題,而是所有治理能力投資共有的結構性特徵——防患未然的回報,只有在對比「已成功預防」與「未能預防」的後果之後,才能清晰可見。法務長可以提出充分的理由,但只有執行長才能在投資回報尚未量化的前提下,做出行動的決策。
職權不足
由法務部門主導的治理計畫,不具備要求其他部門調整法律義務管理方式的組織職權。要求採購部門集中管理合約治理、要求資訊部門將AI部署納入跨職能審查程序、要求人資部門將僱傭實踐整合至更廣泛的法規遵循框架——這些均涉及改變其他部門的運作方式,非由同級職能提出要求所能推動,而是需要執行長明確設定期望,才能付諸實現。
認知障礙
由法務主導的法務營運計畫,往往被其他部門解讀為法務在擴張地盤。即便其真實意圖是服務整個組織,計畫仍可能遭遇與其實質內容無關的抵制——因為倡議的源頭,決定了它被接收的方式。由公司層級委託、清晰界定目的與範疇的計畫,具備截然不同的正當性與推動力。
資源上限
一個承擔全量日常法律工作的法務團隊,不具備同時建立公司層級法務營運所需的跨職能協作機制、數據基礎架構與治理框架的餘力。在維持日常業務服務的同時推動這項建設,現實上並不可行——除非組織願意同時為兩者提供資源。認識到這一點並據此做出資源配置決策,是公司層面的判斷,而非部門所能自行解決的問題。
以上四點,不是對法務部門能力或意願的質疑,而是組織運作規律的結構性特徵。正視這些特徵,才是設計真正可行解決方案的起點。
Section 6 — What Legal Operations Looks Like at Corporate Level
If legal operations is a corporate governance investment rather than a departmental efficiency program, what is it in practice? What does the CEO commission, and what should the organization expect it to deliver?
The right starting point is a structured assessment — not of the legal department's performance, but of the organization's legal and compliance infrastructure as a whole. The questions that assessment should answer include: Where are the contracts to which the company is a party held, and does any single function have a complete and current picture of them? What regulatory and contractual obligations does the company face, and where does responsibility for managing each sit? Which compliance areas are managed without systematic legal involvement? Where have decisions been made without legal input that subsequently created legal exposure? What is the company spending on outside counsel, and how much of that spend reflects work that an adequately resourced in-house function could have handled?
The answers produce a picture that most organizations have not previously assembled in one place — and the financial framing that makes the investment case: the outside counsel spend that in-house capacity could absorb, the compliance exposure that current structures leave unmanaged, and the cost of significant failures in any of those areas. This is the corporation's business case — grounded in numbers that belong in the CFO's domain, not just the GC's.
What the investment builds, at corporate level, has four components:
Not simply a document repository, but a governance framework that determines how contracts are negotiated, stored, monitored, and renewed across every function that enters into agreements on the company's behalf. Owned at corporate level, it gives the organization a consolidated and current view of every material commitment it has made. It ensures that compliance obligations embedded in contracts — data protection standards a customer requires, ESG covenants a lender has imposed, AI governance requirements a supply agreement contains — are visible and tracked alongside regulatory obligations.
A standing mechanism that connects regulatory and contractual compliance activity across legal, any dedicated compliance function that exists, and the business units. Not a replacement for departmental compliance work — operational ownership stays with the departments — but the infrastructure that ensures those activities are coordinated, that cross-domain risks are identified, and that the legal exposure created by compliance activity across the organization is systematically assessed. In companies with a dedicated compliance department, this function bridges the gap between the two disciplines — which frequently operate in parallel rather than in concert. This function is most effective when it reports to the CEO or the board, because its mandate is organizational rather than departmental.
A rigorous analysis of the right mix of in-house capability, outside counsel engagement, and alternative legal service providers for the organization's actual legal needs — not the needs that can be met within the current budget. Conducted with full visibility over what the organization needs and what the gap is costing, this analysis typically reveals both that the present model is more expensive than it appears and that there are specific areas where specialist external expertise genuinely adds value that in-house capability cannot replicate. The result is a resourcing model that is both more effective and more cost-efficient than the default of gradually expanding outside counsel spend.
Regular, structured reporting to the board and senior leadership on the organization's legal risk and compliance posture: a governance-grade view of material legal exposures, compliance obligation status, contract risk concentration, and the legal dimensions of strategic decisions under consideration. The board's ability to govern these areas effectively depends on having this information as a matter of routine, not only when a specific issue arises.
第六節 — 公司層級的法務營運架構
若法務營運是公司治理投資而非部門效率計畫,其實踐內涵是什麼?執行長委託的是什麼,組織應預期它交付什麼?
正確的起點是一次結構性評估——評估對象不是法務部門的績效,而是組織整體的法律與法規遵循基礎架構。這次評估應回答:公司合約存放於何處、是否有任何單一職能保有完整即時的掌握?各業務領域的法規與合約義務如何分配管理責任?哪些合規領域缺乏系統性法務參與?哪些決策在未取得法務意見的情況下做出、事後產生法律曝險?公司外部法律顧問費支出中,有多少本可由資源充足的內部職能處理?
這些問題的答案,將呈現出多數企業從未整合呈現過的全貌,同時也構成投資論據所需的財務框架:可由內部能量吸收的外部費用、現有架構下未受管控的法規遵循曝險,以及重大失誤的潛在代價。這份論據的核心數字,屬於財務長的視野,而不僅僅是法務長的倡議。
在公司層面建立的法務營運架構,包含四個核心組成部分:
不只是文件管理系統,而是一套治理框架,規範所有代表公司簽訂協議的職能,在合約談判、存儲、監控與續約各環節的標準作業方式。由公司層級統一管理,讓組織首次對全部重大承諾保有整合、即時的掌握。合約中嵌入的法規遵循義務——客戶要求的個資保護標準、貸款機構要求的ESG條款、供應協議包含的AI治理要求——均在同一框架下與監管義務並行追蹤管理。
一個常設性的協調機制,連結法務部門、各業務線的法規遵循職能以及相關業務部門,確保監管合規與合約合規工作相互協調、跨領域風險得以識別,並對組織整體的法律曝險進行系統性評估。這一機制並非取代各部門的合規工作,而是確保各方工作形成有效協同。對於設有獨立合規部門的企業而言,這一職能橋接了法務與合規往往各自掌握部分圖景卻難以整合的落差。此職能若直接向執行長或董事會彙報,效能最為顯著。
基於企業真實法律需求(而非現有預算所能支應的需求),對內部能量、外部法律顧問委派及替代性法律服務提供者之間最佳配置比例的嚴謹分析。在充分掌握需求缺口及其實際代價的前提下進行,這項分析通常會揭示:現有模式的隱性成本高於表面所呈現的,以及確實存在若干需要外部專業能量的領域,其價值是內部配置所無法複製的。最終形成的資源配置模型,在效能與成本效益上均優於持續擴增外部委託支出的慣性選擇。
定期、有結構地向董事會及高階管理層彙報組織的法律風險與法規遵循狀況,提供治理層級的視野:包括重大法律曝險、法規遵循義務履行狀態、合約風險集中度,以及各項策略決策的法律面向。董事會有效履行監督職責的前提,是以例行方式取得這些資訊,而非僅在特定問題浮現時才被動回應。
Section 7 — The CEO's Role
The reason this article is addressed to the CEO, rather than to the General Counsel, is not that the GC lacks the insight or capability to want this change. It is that the change requires decisions and authority that sit at the corporate level. There are three specific things the CEO is uniquely positioned to do.
The legal function will operate within whatever mandate the organization sets for it. A legal team that has been resourced and positioned as a reactive service function will behave like one — not because the individuals are unambitious, but because the organizational signals around them shape what is expected and rewarded. A CEO who reframes legal's mandate — explicitly, and with consistent follow-through — from reactive service to active risk and governance capability changes the operating context for the whole function. This does not require additional budget as a first step. It requires clarity about what the organization expects legal to be.
The structured assessment of the organization's legal and compliance infrastructure is most useful when it is commissioned at corporate level, conducted with appropriate independence, and reported to the board. This ensures that its findings are not filtered through any single department and that they are available to inform decisions at the right level. The findings will almost always be informative, occasionally surprising, and consistently useful as the basis for a well-grounded investment decision.
The corporate-level legal operations infrastructure — contract governance, compliance coordination, resourcing model, board reporting — should be funded and governed as a corporate investment, not as an addition to the legal department's overhead. This framing matters practically: it determines the governance of the function, the authority it carries in relation to other departments, and how its returns are measured and attributed. Treating it as a corporate infrastructure investment, comparable to other governance and risk management investments the organization makes, produces the right framework for evaluating both the cost and the return.
The investment case is straightforward. A single avoided regulatory enforcement action or significant litigation loss will typically exceed the annual cost of the program many times over. The compounding returns — in reduced outside counsel spend, in compliance incidents managed before they escalate, in commercial decisions improved by timely legal input — build year on year.
第七節 — 執行長的角色
本文之所以以執行長為對話對象,而非法務長,並非因為法務長缺乏推動變革的洞察力或意願,而是因為這項變革所需的決策與職權,其本質在公司層面。有三件事,唯有執行長方能做到。
法務職能的運作,以組織所設定的授權框架為邊界。一個以被動服務職能姿態定位與配置的法務團隊,就會以被動服務的方式運作——不是因為成員缺乏抱負,而是因為組織所傳遞的訊號,決定了什麼是被期待、什麼是被獎勵的行為。執行長若能明確重新定義法務的授權——從被動應急轉向主動的風險與治理能力——並持續貫徹這一定位,整個職能的運作脈絡將隨之改變。這一步驟,作為起點,不需要新增預算,需要的是清晰的組織期望。
組織法律與法規遵循基礎架構的結構性評估,在公司層面委託、以適當獨立性進行、並向董事會彙報時,效用最為完整。這可確保評估結果不受任何單一部門的視角篩選,並能在適當層級為決策提供依據。此類評估的結論,往往具有啟發性,有時令人意外,始終是做出紮實投資決策的有效基礎。
公司層級的法務營運基礎架構——合約治理、法規遵循協調、資源配置模型、董事會報告——應作為公司投資而非法務部門的行政管理費用來規劃與管理。這一定位在實務上至關重要:它決定了職能的治理架構、其相對於其他部門的職權,以及其回報如何被衡量與歸因。將其納入公司治理與風險管理投資的整體框架,方能對成本與回報進行恰當的評估。
投資論據其實相當直接。一次成功規避的重大監管執法行動或訴訟損失,其節省金額往往遠超計畫的年度費用。複合回報持續積累:外部法律顧問費逐年下降、合規事件在升級前得到管控、商業決策因法務的即時參與而更為審慎周全。
Section 8 — What to Expect, and When
For an organization that has made this investment, what does progress look like over time?
The most visible early change is structural. The organization has a consolidated view of its material contractual commitments for the first time. The compliance coordination function is operational. Legal is involved in decisions it was previously not part of — AI deployments, significant supplier changes, new product launches. Outside counsel spend begins to decline. The General Counsel is presenting to the board on legal risk as an organizational matter. The legal team, operating with a clearer mandate and adequate resources, is engaging more strategically — because the conditions for strategic engagement now exist.
The data begins to tell a story. The organization can see its compliance posture across all domains. It can connect legal involvement to decision outcomes: the transactions where legal was engaged at the strategy stage, versus those where it was brought in later. Outside counsel spend reductions are measurable and attributable. Compliance issues that were identified and addressed before escalating are visible in the record. The legal team is operating with a different profile — more anticipatory, more integrated into business decisions, more able to give the clear guidance the business needs.
The organization has built something that delivers durable value: legal and compliance capability that is genuinely integrated into how the business operates. Legal input is sought as a matter of course. Compliance is coordinated across domains. The contract portfolio is managed with full visibility. The board governs legal risk with adequate information. The General Counsel is a consequential voice in strategic discussions.
These outcomes are consistent with what the evidence shows in organizations that have made comparable investments. Research by the ACC and Harbor finds that organizations with mature legal operations functions spend 25 percent less per legal outcome and resolve matters 40 percent faster than those without. CLOC's 2025 data shows productivity gains of 25 to 35 percent in well-structured legal functions. The returns are not achieved by departments working harder within existing constraints. They are achieved by organizations that have redesigned the constraints.
— ACC / Harbor 2024
第八節 — 投資回報的時間軸
完成這項投資的組織,在不同階段會看到怎樣的進展?
最顯著的早期變化是結構性的:組織首次擁有對所有重大合約承諾的整合視野;法規遵循協調職能正式運作;法務開始參與過去從未涉足的決策——AI部署評估、重要供應商調整、新產品上市審核。外部法律顧問費開始下降。法務長開始向董事會提供組織層級的法律風險報告。法務團隊在更清晰的授權與充足資源的支撐下,逐步轉向更具策略性的參與模式——因為策略性參與所需的結構性條件,至此終於成立。
數據開始說話。組織可以全面掌握各領域的法規遵循狀況;可以追溯法務介入與決策結果之間的關聯——在策略規劃階段即取得法務意見的交易,與在事後才補充法務審查的交易,兩者呈現截然不同的結果。外部法律顧問費的下降具有可衡量性與可歸因性。及早識別、在升級前妥善處理的合規問題,也在記錄中清晰可見。
組織所建立的,已是具備持久價值的治理能力:法律與合規能力真正融入企業運作的各個環節。法務意見成為決策流程的標準配置。各領域的合規工作在統一框架下協調推進。合約組合在完整能見度下受到系統性管理。董事會以充足的資訊對法律風險進行例行治理。法務長成為策略討論中不可或缺的聲音。
以上成果,與已做出類似投資的組織所呈現的實證一致。ACC與Harbor的研究顯示,具備成熟法務營運職能的組織,每件法律事務的成本較對照組低25%,處理週期快40%。CLOC 2025年產業報告指出,架構完善的法務職能可帶來25至35%的生產力提升。這些回報並非源於在原有限制框架內加倍努力,而是來自對這些限制框架本身的重新設計。
— ACC / Harbor 2024
Section 9 — Why Legal Specifically: A Fair Challenge
A rigorous reader will have noticed that much of the structural argument in this article applies, in general form, to other corporate support functions. Finance, HR, and IT have all grown in scope and strategic importance over the past two decades. The case for treating them as corporate capabilities rather than departmental overhead could, in principle, be made in the same terms. It is a fair observation, and it deserves a direct response rather than a deflection.
The general argument is correct. A CEO who has already given the CFO genuine strategic authority, or positioned the CHRO as a consequential voice on workforce risk at board level, has already made the equivalent decision for those functions. The solution is the same in each case: recognize that the function's value is corporate rather than departmental, commission it accordingly, and measure the return at the right level.
But there are three features of the legal function that make the gap — when it exists — more consequential than the equivalent gap in most other support functions.
Finance produces a balance sheet reviewed by the board as a matter of routine. HR produces workforce metrics that appear on dashboards. Legal's contribution and legal's gaps are almost entirely invisible until something goes wrong. The contract reviewed improperly does not announce itself until there is a dispute. The compliance obligation missed does not appear until there is an enforcement action. The decision that needed legal input but did not receive it does not leave a visible record of the absence. Legal's accountability loop is largely silent — which means the gap can widen for years before any signal emerges.
Finance assesses financial risk. HR assesses workforce risk. IT assesses technology risk. Each function operates within its own domain. Legal is structurally the only function whose professional obligation extends across every other function's activities simultaneously — assessing the legal exposure in Finance's loan covenants, HR's employment practices, Procurement's supplier agreements, and IT's technology deployments, all at once. When legal is absent or under-resourced, that cross-functional view does not get redistributed to other departments. It simply does not exist.
A CFO who supports a capital allocation decision that later underperforms is not in the same professional position as a lawyer who signed off on a transaction structure that later fails. The incentive asymmetry in legal — where caution is professionally rational even when it is organizationally costly, where enabling a failed decision carries more career risk than blocking a potentially successful one — does not have a direct parallel in finance or HR. It is a feature of legal professional culture, reinforced by legal training and professional liability frameworks, and it does not dissolve simply because the lawyer moves in-house. Addressing it requires specific interventions — mandate, measurement, and organizational design — that are not needed in the same form for other functions.
The argument for treating legal as a corporate capability applies, in its general form, to other support functions too. What makes legal distinctive is not its importance — it is that its gaps are invisible, its cross-functional obligation is unique, and its risk-aversion dynamic requires specific structural remedies.
The CEO who has already made this investment for other functions will find that making it for legal follows the same logic. The CEO who has not yet made it for any function may find that legal is the most useful place to start — precisely because its gaps are the least visible, and therefore the most likely to have been accumulating unnoticed.
第九節 — 為何法務有別於其他職能
細心的讀者可能已經注意到,本文的核心論點在一般形式上同樣適用於其他公司後台支援職能。財務、人資與資訊科技在過去二十年間均大幅擴展了其職能範疇與策略地位,將這些職能定位為公司層級能力的論據,理論上也可以用相同的邏輯提出。這是一個合理的觀察,值得正面回應而非迴避。
這個一般性論點是成立的。已賦予財務長真正策略職權、或讓人資長在董事會層面有效發聲的執行長,事實上已對那些職能做出了等效決策。解決方案的邏輯是一致的:認識到職能的價值屬於公司層級而非部門層級,據此委託推動,並在正確層面衡量回報。
然而,法務職能具備三個特徵,使得其缺口——一旦存在——比多數其他支援職能的等效缺口更具影響力。
財務產出的資產負債表,是董事會例行審閱的對象。人資產出的人力指標,以常態方式呈現於管理報表。法務的貢獻與法務的缺口,則幾乎完全沉默——直至某件事出了差錯。審查不足的合約,在爭議發生之前不會主動揭示問題;未能及時識別的法規遵循義務,在執法行動啟動之前不會出現;需要法務介入卻未能取得的決策,也不會留下缺席的可見記錄。法務的問責迴路幾近無聲——這意味著缺口可能在任何警訊浮現之前,悄悄擴大多年。
財務評估財務風險,人資評估人力風險,資訊科技評估技術風險——各職能在自身領域內運作。法務在結構上是唯一一個專業義務同時橫跨所有其他職能活動的職能:評估財務部門借款合約中的法律義務、人資部門僱傭實踐的法律風險、採購部門供應商協議的潛在曝險、資訊部門技術部署的合規要求。當法務缺席或資源不足時,這個跨職能視野不會由其他部門接手,它就是不存在。
支持了一項事後表現不如預期的資本配置決策的財務長,與簽核了一個事後出現問題的交易結構的法律顧問,在職業風險上所處的位置截然不同。法務特有的激勵不對稱——謹慎在專業上具有理性依據,即便在組織效益上成本高昂;促成一項失敗決策所承擔的職涯代價,遠高於阻止一項可能成功的決策——在財務或人資專業中並無直接的對應現象。這是法律專業文化的特徵,不因律師轉入企業內部而消解。解決這一動態,需要針對性的結構性干預,而這些在其他職能中並不以同樣的形式存在。
將法務定位為公司層級能力的論點,其一般形式適用於所有支援職能。法務的獨特性不在於其重要性,而在於:其缺口不可見、其跨職能義務是唯一的、其風險規避動態需要特定的結構性解方。
已為其他職能完成這項投資的執行長,在轉向法務時將認出熟悉的邏輯。尚未為任何職能做出這項投資的執行長,或許會發現法務是最值得優先考慮的起點——正是因為它的缺口最不可見,因此也最有可能已在不知不覺中積累多年。
Conclusion — A Governance Asset Worth Building
The legal function has, in most organizations, grown significantly in scope and importance over the past two decades — absorbing new regulatory domains, supporting increasingly complex commercial activity, and becoming embedded in governance processes that did not previously exist. The investment in the function has not always kept pace with that expansion.
The result is a gap — not a crisis, and not a failure of any individual or team, but a structural misalignment between what the legal function is being asked to do and what it has been given the resources and mandate to do well. That misalignment has a cost, and the cost accumulates quietly: in outside counsel spend that substitutes for in-house capacity, in compliance obligations that are managed reactively rather than proactively, in decisions that would have benefited from legal input that was not available at the right moment.
Legal operations — properly conceived as a corporate governance investment rather than a departmental efficiency program — is the mechanism for closing that gap. It gives the organization a complete picture of its legal and compliance obligations. It connects the disciplines that currently operate in silos. It gives the legal function the mandate, the resources, and the infrastructure to deliver the strategic value it is capable of delivering.
The question is not whether the organization needs this capability. Most already do. The question is whether to build it deliberately, on the organization's own timeline, or to build it reactively, when circumstances require it.
The question for the CEO is not whether the organization needs this capability — most already do, and are already paying for the gap in ways that don't show up on a single budget line. The question is whether to build it deliberately, on the organization's own terms and timeline, or to build it reactively, when a specific event makes the need impossible to ignore.
The first approach is less expensive, more considered, and produces better outcomes. It is also the one that requires a proactive decision rather than a crisis response. That decision sits with the CEO — not because the legal team lacks the will to pursue it, but because only the CEO can give it the organizational weight it needs to succeed.
How CloudVista Can Help
CloudVista works with multinationals across Asia on the intersection of legal operations, compliance governance, and data privacy — the disciplines that converge when an organization decides to treat its legal function as a corporate asset.
If your organization is assessing its legal operations maturity or considering a corporate-level governance investment, we can help with:
- →Legal operations assessment — a structured review of your organization's legal and compliance infrastructure, identifying gaps and building the financial case for investment. Explore our Legal Operations practice →
- →Data & AI governance — building the governance frameworks that connect legal, compliance, and technology risk across your organization. Explore our Data & AI Governance practice →
- →Contract review tool — for organizations looking to reduce outside counsel spend on routine agreements, our AI-assisted contract review tool provides fast, structured analysis of NDAs and commercial contracts. Try our Contract Review tool →
This article is for informational purposes only and does not constitute legal advice. Organizations should seek qualified legal counsel for advice specific to their circumstances and jurisdictions.
結語 — 值得建立的治理資產
過去二十年間,法務職能在多數企業中無論在範疇還是重要性上都大幅提升——吸納了新興法規領域、支撐了日趨複雜的商業活動、嵌入了過去並不存在的治理流程。然而,對法務職能的資源投入,卻未能與這種擴張同步跟進。
由此形成一個缺口——不是危機,也不是任何個人或團隊的失職,而是法務職能被要求承擔的工作,與其所獲得的資源及授權之間的結構性落差。這個落差有其代價,且以靜默的方式持續積累:委外法律顧問費替代了本可由內部承擔的工作、法規遵循義務在被動應付而非主動管控的狀態下運作、商業決策因法務介入缺位而失去應有的風險把關。
法務營運——在其正確定位下,作為公司治理投資而非部門效率計畫——正是縮小這一缺口的機制。它讓組織對全部法律與法規遵循義務保有完整圖景,連結當前各自為政的合規工作,並賦予法務職能所需的授權、資源與基礎架構,使其具備真正發揮策略價值的條件。
問題不在於組織是否需要這種能力——多數已然需要。問題在於:是以主動、審慎的方式建立它,還是等到情況迫使時再被動應對。
對執行長而言,問題不是組織是否需要這種能力——多數已然需要,且正以不會出現在單一預算項目上的方式默默付出代價。問題是:選擇在組織自身的條件與節奏下主動建立,還是等到某個具體事件使需求無可迴避時才被動構建。
前者成本更低、更為審慎、也能帶來更好的結果,同時也是需要主動決策而非被動回應的選擇。這個決策屬於執行長——不是因為法務團隊缺乏推動的意願,而是因為唯有執行長,才能賦予它在組織中成功落地所需的分量。
CloudVista 如何提供協助
CloudVista為亞洲各地的跨國企業提供法務營運、合規治理及資料隱私的交叉領域諮詢——正是組織決定將法務職能視為公司資產時,多個專業領域同時匯聚的地方。
若您的組織正在評估法務營運成熟度或考慮公司層級的治理投資,我們可以協助您:
- →法務營運評估——對組織法律與合規基礎架構進行結構性審查,識別缺口並建立投資的財務論據。探索我們的法務營運服務 →
- →資料與AI治理——建立連結法務、合規與技術風險的治理框架。探索我們的資料與AI治理服務 →
- →合約審查工具——對於希望降低例行協議外部法律顧問費用的組織,我們的AI輔助合約審查工具提供快速、結構化的NDA及商業合約分析。試用我們的合約審查工具 →
本文僅供參考,不構成法律建議。組織應就其具體情況及所在司法管轄區尋求具備資格的法律顧問提供意見。