SonicJobs Logo
Login
Left arrow iconBack to search

Information Security Compliance Manager and Data Protection Officer DPO

TIGER RESOURCING SOLUTIONS LIMITED
Posted 3 days ago, valid for 8 hours
Location

London, Greater London EC1R 0WX

Contract type

Full Time

In order to submit this application, a Reed account will be created for you. As such, in addition to applying for this job, you will be signed up to all Reed鈥檚 services as part of the process. By submitting this application, you agree to Reed鈥檚 Terms and Conditions and acknowledge that your personal data will be transferred to Reed and processed by them in accordance with their Privacy Policy.

Sonic Summary

info
  • Our client is looking for an Information Security Compliance Manager and Data Protection Officer (DPO) to ensure adherence to information security standards and data protection laws, including GDPR.
  • The role requires a minimum of 5 years of experience in privacy law, compliance, or data security, along with strong expertise in information security compliance and risk management.
  • Responsibilities include overseeing GDPR compliance, developing privacy policies, managing data subject access requests, and conducting internal audits.
  • The position offers a competitive salary of 拢70,000 per year, reflecting the expertise and experience required for the role.
  • The successful candidate will collaborate with various internal departments and external partners to align data protection strategies and ensure secure data processing.

Information Security Compliance Manager and Data Protection Officer (DPO)

Role Summary

Our client is seeking an Information Security Compliance Manager and Data Protection Officer (DPO) to ensure compliance with applicable Information Security Standards (e.g. ISO27001 / Cyber Essentials Plus, NIS2) as well as the General Data Protection Regulation (GDPR) and other applicable data protection laws. This role reports into the Director of Governance, Risk & Compliance and will coordinate with the Compliance department. You will oversee data protection strategies, implement policies, and ensure the secure processing of data within the organisation. The role requires strong expertise in information security compliance, data privacy, legal compliance, and risk management.

Job Responsibilities

Data Privacy Compliance & Advisory

路聽聽聽聽聽聽 GDPR Compliance: Monitor and ensure compliance with GDPR, national data protection laws, and internal privacy policies; provide internal expert advice on data protection matters and privacy risks; act as the primary point of contact with supervisory authorities (e.g. ICO, CNIL, AEPD); conduct regular privacy impact assessments (DPIAs) for high-risk data processing activities; maintain Record of Processing Activities (ROPA)

路聽聽聽聽聽聽 Policies & Training: Develop and implement privacy policies, guidelines, and best practices; develop and deliver training for employees on data protection obligations

路聽聽聽聽聽聽 DSAR: Oversee and respond to Data Subject Access Requests (DSARs), including rights to access, erasure, and rectification

路聽聽聽聽聽聽 Breach Management: Ensure breaches are identified, investigated, and reported according to applicable laws and standards

路聽聽聽聽聽聽 Audit: Conduct internal audits and ensure continuous improvement in data protection practices; support external audits and regulatory assessments

路聽聽聽聽聽聽 Assessments: Provide guidance on data privacy and information security in contracts, vendor agreements, and responsible for addressing third-party risk assessment requirements

Information Security Compliance

路聽聽聽聽聽聽 Certifications: Manage certification compliance programs (ISO27001 / Cyber Essentials Plus); lead and coordinate annual certification efforts

路聽聽聽聽聽聽 Other Cybersecurity Laws and Regulations: Support compliance efforts regarding EU鈥檚 emerging data and cyber laws (e.g. NIS2, Data Act)

路聽聽聽聽聽聽 Governance: Support ongoing information security compliance and governance activities

Collaboration & Stakeholder Engagement

路聽聽聽聽聽聽 Work closely with Legal, IT, Compliance, HR, Internal Audit, and external partners to align data protection strategies

Job Skills Requirements

Essential

路聽聽聽聽聽聽 Strong knowledge of GDPR, ePrivacy Directive, ISO27001 and national data protection laws

路聽聽聽聽聽聽 Experience in privacy law, compliance or data security

路聽聽聽聽聽聽 Familiarity with data governance, cybersecurity and IT security frameworks

路聽聽聽聽聽聽 Strong communication skills to engage with internal teams and external regulators

路聽聽聽聽聽聽 Ability to handle sensitive and confidential information with integrity

Preferred

路聽聽聽聽聽聽 Legal, IT security or compliance background

路聽聽聽聽聽聽 Certification in CIPP/E, CIPM, CIPT, CISSP or equivalent privacy or cybersecurity qualification

路聽聽聽聽聽聽 ISO 27001 Lead Auditor certifications and experience

路聽聽聽聽聽聽 Experience conducting privacy impact assessments (DPIAs) and managing data breaches

Key Competencies</b

Apply now in a few quick clicks

In order to submit this application, a Reed account will be created for you. As such, in addition to applying for this job, you will be signed up to all Reed鈥檚 services as part of the process. By submitting this application, you agree to Reed鈥檚 Terms and Conditions and acknowledge that your personal data will be transferred to Reed and processed by them in accordance with their Privacy Policy.