it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Career Advice
  • Contact us
  • Employers
    • Register as Employer
    • Pricing Plans
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

54 jobs found

Email me jobs like this
Refine Search
Current Search
privacy risk compliance officer
Data Quality & Governance Specialist
Irish Life Group Services Limited
Select how often (in days) to receive an alert: Data Quality & Governance Specialist Location: London, GB; Douglas, IM; Bristol, GB Company: CLFIS Limited Description: Canada Life UK looks after the retirement, investment and protection needs of individuals, families and companies. We help to build better futures for our customers, our intermediaries and our employees by operating as a modern, agile and welcoming organisation. Part of our parent company Great-West Lifeco, Canada Life UK has operated in the United Kingdom since 1903. We have hundreds of respected and supported employees committed to doing the right thing for our customers and colleagues. Canada Life UK is transforming to create a more customer-focused business by providing our customers with expertise on financial and tax planning, offering home finance and annuities propositions, and providing collective fund solutions to third party customers. Job Purpose To own and administer the enterprise data governance tool - Informatica, acting as the central point of contact for configuration, maintenance, and optimisation, ensuring it effectively supports data catalogue, metadata, lineage and data quality capabilities. The role will monitor, analyse and report on data quality and GDPR/E21-related compliance metrics across critical data sets, working with data owners, stewards and control functions to remediate issues and strengthen controls. It will support the wider data governance framework by providing insight, MI and training that improves data literacy and embeds consistent data management practices. Duties/Responsibilities Ownership and administration of Informatica - the data governance tool (e.g. catalogue, lineage, DQ modules) As system owner delegate and subject matter expert for the data governance tool, including configuration, role-based access, workflows and integrations. Ensure the tool is stable, secure, fit for purpose and aligned to the organisation's data governance framework and policies. Manage release cycles, testing and adoption of new capabilities in partnership with IT. Data quality monitoring, analysis and reporting Define and maintain data quality rules, thresholds and dashboards for critical data elements in collaboration with data stewards and business owners. Monitor data quality metrics, identify trends, perform root cause analysis and coordinate remediation activities. Produce regular MI and insight on data quality for senior stakeholders, highlighting key risks, improvements and recommendations. GDPR and data protection-related data reporting and controls Configure and support Informatica capabilities that help identify and manage personal and sensitive data (e.g. tagging, classifications, critical data flags). Produce and maintain reports that evidence GDPR-related controls (e.g. lawful basis, retention, data subject categories) where supported by the data governance tool. Work closely with Privacy, Risk, Legal and Security teams to ensure that data governance MI supports compliance monitoring and regulatory reporting. Metadata, data dictionary, lineage and catalogue management Partner with data stewards and SMEs to capture and maintain business and technical metadata, including data definitions, owners, stewards and criticality. Ensure end to end data lineage for critical data elements is captured in the tool, including systems, interfaces and key transformations. Promote consistent use of the data catalogue and metadata repository as the "single source of truth" for data knowledge. Training, guidance and stakeholder support Maintain training materials and deliver training and guidance for data stewards, data owners and other users of Informatica. Provide day to day support, coaching and troubleshooting for business and technical users. Contribute content for data governance communications, newsletters and awareness campaigns to embed good data practices. Governance forums, KPIs/KRIs and continuous improvement Support the preparation of materials and dashboards for data governance and risk forums, including status on data quality and GDPR-related indicators. Contribute to the definition and measurement of KPIs and KRIs for the data governance programme, using tooling outputs wherever possible. Identify opportunities to enhance data governance processes, controls and Informatica usage; support delivery of agreed improvements. Skills, Knowledge and Experience Experience working in a data governance, data quality, data management or related analytical role in a complex environment. Hands on experience with a data governance or data catalogue tool like Informatica (e.g. for metadata, lineage, data quality and policy management). Strong understanding of data governance principles, data lifecycle management, data quality dimensions and data stewardship operating models. Good understanding of GDPR and data protection requirements and how they relate to data controls, lineage, retention and evidencing compliance. Experience creating and interpreting data quality and compliance dashboards and translating insight into practical actions for stakeholders. Strong analytical and problem solving skills; able to interrogate data, identify root causes and propose pragmatic remediation. High level of attention to detail and data accuracy. Excellent communication skills, able to explain technical and governance concepts to non technical audiences and influence stakeholders. Ability to work collaboratively across IT, business functions, Risk, Legal and Privacy teams. Strong organisational skills, able to prioritise and manage multiple concurrent activities and deadlines Qualifications (For the job and not the person) Professional qualifications relating to data management, data protection, financial services, risk or operations are desirable but not mandatory. GDPR / data protection certifications (e.g. practitioner-level) desirable. Benefits of working at Canada Life We believe in recognising and rewarding our people, so we offer a competitive salary and benefits package that's regularly reviewed. As a Canada Life UK colleague, you'll receive a competitive salary and comprehensive reward package including a generous pension and bonus scheme, along with income protection, private medical insurance and life assurance. We have a fantastic number of other benefits and support services as well as regular personal and professional development. How we work at Canada Life Our culture is unique and incredibly important to us. We care about doing the right thing for our people, customers and community and helping others to build better futures. Our blueprint behaviours shape and influence how we work, and are central to the relationships we have with others. Every day we are encouraged to be more curious, own the outcome, face into things together and find a way forward. We want colleagues to have rewarding careers with us so we invest in the development of our people, technology and workplaces. That's why we offer a range of training, flexible working and opportunities to grow and develop. Diversity and inclusion Building an inclusive workplace with a diverse workforce where everyone can feel they belong and achieve their potential regardless of gender, ethnicity or any other characteristic is a key commitment for us. We are proud of the progress we're making in DEI, and we continue for it to be a significant focus. "At Canada Life we believe in the power of great people from different backgrounds, experiences and perspectives coming together to build better futures. Emerging talent is crucial to our growth and creating an environment that continues to inspire us all." Nick Harding, Chief People Officer, Canada Life UK We appreciate that everyone has different work and life responsibilities. We're happy to discuss flexible working arrangements, including part time, for any of our roles should this be a requirement for you.
07/06/2026
Full time
Select how often (in days) to receive an alert: Data Quality & Governance Specialist Location: London, GB; Douglas, IM; Bristol, GB Company: CLFIS Limited Description: Canada Life UK looks after the retirement, investment and protection needs of individuals, families and companies. We help to build better futures for our customers, our intermediaries and our employees by operating as a modern, agile and welcoming organisation. Part of our parent company Great-West Lifeco, Canada Life UK has operated in the United Kingdom since 1903. We have hundreds of respected and supported employees committed to doing the right thing for our customers and colleagues. Canada Life UK is transforming to create a more customer-focused business by providing our customers with expertise on financial and tax planning, offering home finance and annuities propositions, and providing collective fund solutions to third party customers. Job Purpose To own and administer the enterprise data governance tool - Informatica, acting as the central point of contact for configuration, maintenance, and optimisation, ensuring it effectively supports data catalogue, metadata, lineage and data quality capabilities. The role will monitor, analyse and report on data quality and GDPR/E21-related compliance metrics across critical data sets, working with data owners, stewards and control functions to remediate issues and strengthen controls. It will support the wider data governance framework by providing insight, MI and training that improves data literacy and embeds consistent data management practices. Duties/Responsibilities Ownership and administration of Informatica - the data governance tool (e.g. catalogue, lineage, DQ modules) As system owner delegate and subject matter expert for the data governance tool, including configuration, role-based access, workflows and integrations. Ensure the tool is stable, secure, fit for purpose and aligned to the organisation's data governance framework and policies. Manage release cycles, testing and adoption of new capabilities in partnership with IT. Data quality monitoring, analysis and reporting Define and maintain data quality rules, thresholds and dashboards for critical data elements in collaboration with data stewards and business owners. Monitor data quality metrics, identify trends, perform root cause analysis and coordinate remediation activities. Produce regular MI and insight on data quality for senior stakeholders, highlighting key risks, improvements and recommendations. GDPR and data protection-related data reporting and controls Configure and support Informatica capabilities that help identify and manage personal and sensitive data (e.g. tagging, classifications, critical data flags). Produce and maintain reports that evidence GDPR-related controls (e.g. lawful basis, retention, data subject categories) where supported by the data governance tool. Work closely with Privacy, Risk, Legal and Security teams to ensure that data governance MI supports compliance monitoring and regulatory reporting. Metadata, data dictionary, lineage and catalogue management Partner with data stewards and SMEs to capture and maintain business and technical metadata, including data definitions, owners, stewards and criticality. Ensure end to end data lineage for critical data elements is captured in the tool, including systems, interfaces and key transformations. Promote consistent use of the data catalogue and metadata repository as the "single source of truth" for data knowledge. Training, guidance and stakeholder support Maintain training materials and deliver training and guidance for data stewards, data owners and other users of Informatica. Provide day to day support, coaching and troubleshooting for business and technical users. Contribute content for data governance communications, newsletters and awareness campaigns to embed good data practices. Governance forums, KPIs/KRIs and continuous improvement Support the preparation of materials and dashboards for data governance and risk forums, including status on data quality and GDPR-related indicators. Contribute to the definition and measurement of KPIs and KRIs for the data governance programme, using tooling outputs wherever possible. Identify opportunities to enhance data governance processes, controls and Informatica usage; support delivery of agreed improvements. Skills, Knowledge and Experience Experience working in a data governance, data quality, data management or related analytical role in a complex environment. Hands on experience with a data governance or data catalogue tool like Informatica (e.g. for metadata, lineage, data quality and policy management). Strong understanding of data governance principles, data lifecycle management, data quality dimensions and data stewardship operating models. Good understanding of GDPR and data protection requirements and how they relate to data controls, lineage, retention and evidencing compliance. Experience creating and interpreting data quality and compliance dashboards and translating insight into practical actions for stakeholders. Strong analytical and problem solving skills; able to interrogate data, identify root causes and propose pragmatic remediation. High level of attention to detail and data accuracy. Excellent communication skills, able to explain technical and governance concepts to non technical audiences and influence stakeholders. Ability to work collaboratively across IT, business functions, Risk, Legal and Privacy teams. Strong organisational skills, able to prioritise and manage multiple concurrent activities and deadlines Qualifications (For the job and not the person) Professional qualifications relating to data management, data protection, financial services, risk or operations are desirable but not mandatory. GDPR / data protection certifications (e.g. practitioner-level) desirable. Benefits of working at Canada Life We believe in recognising and rewarding our people, so we offer a competitive salary and benefits package that's regularly reviewed. As a Canada Life UK colleague, you'll receive a competitive salary and comprehensive reward package including a generous pension and bonus scheme, along with income protection, private medical insurance and life assurance. We have a fantastic number of other benefits and support services as well as regular personal and professional development. How we work at Canada Life Our culture is unique and incredibly important to us. We care about doing the right thing for our people, customers and community and helping others to build better futures. Our blueprint behaviours shape and influence how we work, and are central to the relationships we have with others. Every day we are encouraged to be more curious, own the outcome, face into things together and find a way forward. We want colleagues to have rewarding careers with us so we invest in the development of our people, technology and workplaces. That's why we offer a range of training, flexible working and opportunities to grow and develop. Diversity and inclusion Building an inclusive workplace with a diverse workforce where everyone can feel they belong and achieve their potential regardless of gender, ethnicity or any other characteristic is a key commitment for us. We are proud of the progress we're making in DEI, and we continue for it to be a significant focus. "At Canada Life we believe in the power of great people from different backgrounds, experiences and perspectives coming together to build better futures. Emerging talent is crucial to our growth and creating an environment that continues to inspire us all." Nick Harding, Chief People Officer, Canada Life UK We appreciate that everyone has different work and life responsibilities. We're happy to discuss flexible working arrangements, including part time, for any of our roles should this be a requirement for you.
Deputy Data Protection Officer
Information and Records Management Society Bath, Somerset
Join the Department of Risk, Resilience & Compliance as our Deputy Data Protection Officer! About the role Within the Information Governance team, you will work alongside colleagues across Information Security, Research Policy, Governance & Integrity, and Records Management to help embed a strong culture of privacy and compliance. Under the guidance of the Data Protection Officer, you'll act as the University's operational point of contact on matters related to data protection. For example, you'll help respond to Subject Access Requests, review Data Protection Impact Assessments, conduct breach analyses and respond to queries. You will also support the Data Protection Officer in responding to data protection incidents and ensure that our practices protect our community and uphold the University's reputation. Your communication skills will enable you to engage and advise colleagues on sensitive or high risk issues relating to the Data Protection Act and UK GDPR. You will work well independently but also as part of the wider Information Governance team. About you You will: have experience working as a data protection professional in a large or complex organisation have a knowledge of Data Protection, GDPR and Data Use and Access Act legislation, with the confidence to interpret regulations and translate them into practical, proportionate actions for stakeholders thrive in a collaborative environment and be able to build strong working relationships across academic departments and professional services The ideal candidate will also be an advocate for continuous improvement, committed to helping build a culture of privacy, transparency and compliance through training and awareness. Further information This is a full time role, working 36.5 hours per week. We operate a hybrid working arrangement which can be negotiated with the successful candidate. For an informal discussion about the role please contact Steph Calley, Head of Information Governance (), or Tom Rottinghuis, Data Protection Officer (). We consider ourselves to be a university where difference is celebrated, respected and encouraged. We have an excellent international reputation with staff from over 60 different nations and have made a positive commitment towards gender equity and intersectionality receiving a Silver Athena SWAN award. We truly believe that diversity of experience, perspectives, and backgrounds will lead to a better environment for our employees and students and encourage applications from all genders, backgrounds, and communities, particularly from under represented groups, and value the positive impact that will have on the university. We are committed to maintaining a safe and secure environment for our students, staff, and community by reinforcing our Safer Recruitment commitment. We're very proud to be a signatory of the Armed Forces Covenant. an accredited Disability Confident Leader; autism friendly university, committed to building disability confidence and supporting disabled staff. What we can offer you We're continually expanding our benefits package to better support you and enhance your experience with us and the below is just an example of some of the many great benefits we offer: Free counselling services through Health Assured Cycle to work scheme Electric vehicle salary sacrifice scheme Staff discount at Team Bath gym Staff discounts on postgraduate tuition fees Staff discount on language courses Generous employer contributory pension schemes Generous annual leave allowance with an additional 5 discretionary days so that you can enjoy a positive work life balance A wide range of personal and professional development opportunities including Apprenticeships, LinkedIn Learning and more Free entry to the Holburne Museum in Bath Local discounts and more Relocation allowance Visa reimbursement and Interest Free Loan to help with the cost of some immigration expenses Find out more about our benefits and watch the video to hear from our staff about what makes the University of Bath a great place to work as well as following us X and LinkedIn.
06/06/2026
Full time
Join the Department of Risk, Resilience & Compliance as our Deputy Data Protection Officer! About the role Within the Information Governance team, you will work alongside colleagues across Information Security, Research Policy, Governance & Integrity, and Records Management to help embed a strong culture of privacy and compliance. Under the guidance of the Data Protection Officer, you'll act as the University's operational point of contact on matters related to data protection. For example, you'll help respond to Subject Access Requests, review Data Protection Impact Assessments, conduct breach analyses and respond to queries. You will also support the Data Protection Officer in responding to data protection incidents and ensure that our practices protect our community and uphold the University's reputation. Your communication skills will enable you to engage and advise colleagues on sensitive or high risk issues relating to the Data Protection Act and UK GDPR. You will work well independently but also as part of the wider Information Governance team. About you You will: have experience working as a data protection professional in a large or complex organisation have a knowledge of Data Protection, GDPR and Data Use and Access Act legislation, with the confidence to interpret regulations and translate them into practical, proportionate actions for stakeholders thrive in a collaborative environment and be able to build strong working relationships across academic departments and professional services The ideal candidate will also be an advocate for continuous improvement, committed to helping build a culture of privacy, transparency and compliance through training and awareness. Further information This is a full time role, working 36.5 hours per week. We operate a hybrid working arrangement which can be negotiated with the successful candidate. For an informal discussion about the role please contact Steph Calley, Head of Information Governance (), or Tom Rottinghuis, Data Protection Officer (). We consider ourselves to be a university where difference is celebrated, respected and encouraged. We have an excellent international reputation with staff from over 60 different nations and have made a positive commitment towards gender equity and intersectionality receiving a Silver Athena SWAN award. We truly believe that diversity of experience, perspectives, and backgrounds will lead to a better environment for our employees and students and encourage applications from all genders, backgrounds, and communities, particularly from under represented groups, and value the positive impact that will have on the university. We are committed to maintaining a safe and secure environment for our students, staff, and community by reinforcing our Safer Recruitment commitment. We're very proud to be a signatory of the Armed Forces Covenant. an accredited Disability Confident Leader; autism friendly university, committed to building disability confidence and supporting disabled staff. What we can offer you We're continually expanding our benefits package to better support you and enhance your experience with us and the below is just an example of some of the many great benefits we offer: Free counselling services through Health Assured Cycle to work scheme Electric vehicle salary sacrifice scheme Staff discount at Team Bath gym Staff discounts on postgraduate tuition fees Staff discount on language courses Generous employer contributory pension schemes Generous annual leave allowance with an additional 5 discretionary days so that you can enjoy a positive work life balance A wide range of personal and professional development opportunities including Apprenticeships, LinkedIn Learning and more Free entry to the Holburne Museum in Bath Local discounts and more Relocation allowance Visa reimbursement and Interest Free Loan to help with the cost of some immigration expenses Find out more about our benefits and watch the video to hear from our staff about what makes the University of Bath a great place to work as well as following us X and LinkedIn.
Compliance Officer 12 Month FTC
Exceptional Dental City, Belfast
A LITTLE INFORMATION ABOUT US! FoodsConnected is an award winning cloud based software platform that helps retailers and food companies across the world manage their supply chain, quality control and trading and planning management. Our software solutions are currently utilised by 10 of the largest food retailers in the world. As a team, we provide tools that help our customers manage their processes in a fast and efficient way and provide real time visibility and reporting on what is happening in their business. At Foods Connected, we recognise that our employees are our most important asset and we value creating a great working environment to ensure our team enjoy coming into the office every day working together and solving problems for our customers. Whether we are in the middle of a fast and intense development sprint, on a Teams call discussing our project statuses or enjoying a game of ping pong or pool in the office, it is important to us that our employees are happy and delivering the best possible result for our customers. We're always keen to welcome talented individuals to join our expanding team. So if you're driven, with a passion for developing simple software solutions, creating great user experiences, designing scalable solutions for real business challenges and ensuring customer happiness then we're looking for you! IS THIS SOMETHING THAT INTERESTS YOU? This is a 12 month Fixed Term Contract and the role has been designed as an evolution of our existing Compliance Officer position, reflecting Foods Connected's current compliance maturity and near term transition needs. In the first phase of the role, the Compliance Officer will work closely alongside our current Lead Compliance Officer in a structured shadowing and collaboration model, gaining deep familiarity with Foods Connected's Information Security Management System (ISMS), ongoing ISO 27001 certification obligations, and the active programme of work toward SOC 2 Type II certification. Upon the Lead Compliance Officer commencing maternity leave, the Compliance Officer will transition to working independently, taking full ownership of compliance operations and reporting directly to the Head of IT Security & Compliance. Throughout both phases, the role requires a strong understanding of technical controls, policy governance, and the realities of operating in a modern SaaS environment. During the initial collaborative period, the focus will be on knowledge transfer, relationship building, and active contribution to ongoing compliance workstreams. In the independent phase, the postholder will take full responsibility for maintaining ISO 27001 certification and driving SOC 2 Type II readiness to successful completion - ensuring continuity, momentum, and rigour across all compliance activity. The ideal candidate will be based in Derry or Belfast to support closer collaboration with the team. While remote work is possible, a preference will be given to individuals who can work closely with colleagues in person, particularly during key delivery phases or audit cycles. RESPONSIBILITIES Compliance & Framework Governance (75%) Operate and evolve the ISO 27001 compliant ISMS, including risk management, internal audit scheduling, and control mapping. Lead evidence collection and process development in support of SOC 2 Type II readiness and eventual certification. Drive Foods Connected's efforts toward successful achievement of SOC 2 Type II certification in 2026, ensuring all preparatory and operational milestones are met. Maintain and improve internal information security policies, standards, and procedures aligned with ISO, SOC 2, and internal risk posture. Support internal and external audits, manage remediation actions, and track closure of findings across departments. Coordinate regular reviews of policies and documentation with business stakeholders. Conduct risk and supplier assessments to support procurement, onboarding, and ongoing vendor due diligence. Own and maintain Foods Connected's AI governance framework, ensuring emerging regulatory obligations are understood and acted on. Maintain the risk register and issue tracking, ensuring risks are assessed, owned, and remediated in line with FC's risk management framework. Own and facilitate the ISMS quarterly meeting and quarterly risk review cycle, including ELT compliance reporting. Maintain detailed audit trails of compliance evidence using structured systems. Engage and support engineering, DevOps, and security teams in the implementation of compliant controls and practices (e.g., access control, change management, incident response). Develop, monitor, and maintain key performance indicators (KPIs) to measure and optimise the effectiveness and maturity of the ISMS over time. Monitor regulatory trends and translate them into practical guidance for the business. Cross-functional Collaboration & Enablement (20%) Provide compliance advisory support to engineering, product, HR, operations, and finance teams as needed. Support the delivery of security awareness and compliance training across the business. Assist in customer security assessments, due diligence questionnaires, and RFP responses as required. Collaborate with internal stakeholders to ensure data protection and privacy practices are consistently applied. Manage customer security commitments and contractual obligations Continuous Improvement (5%) Recommend and implement improvements to compliance tools, workflows, and documentation processes. Identify automation or streamlining opportunities for recurring audit and evidence tasks. EXPERIENCE AND QUALIFICATIONS To perform this job successfully, the Compliance Officer should have experience with: Minimum Qualifications Bachelor's degree (or equivalent practical experience) in a relevant field such as Information Security, Computer Science, Business Governance, or Risk Management. Proven, hands on experience operating within an ISO 27001 certified environment is essential, including practical involvement in ISMS maintenance, audits, and continuous improvement. Significant experience with SOC 2 compliance is highly desirable, with a strong preference for candidates who have actively contributed to or led the implementation of SOC 2 Type II certification in a growing organisation. Experience working in a SaaS or cloud native environment is strongly preferred, particularly where compliance must be aligned with technical controls, DevOps practices, and platform security. ISO 27001 Lead Implementer or Auditor CISA, CRISC, CISSP, or equivalent governance/audit credentials Technical & Compliance Skills Strong knowledge of ISO 27001, SOC 2 Trust Services Criteria, and information security best practices. Experience with GRC tooling (e.g., Vanta, Drata, or equivalent) for evidence collection, control tracking, and audit/risk management. Knowledge of data protection and privacy legislation (GDPR / UK GDPR) and its application in a SaaS environment. (preferred) Familiarity with cloud native environments (Microsoft Azure preferred) and associated security controls. Understanding of key control areas including access management, secure development, backup and DR, and incident response. Experience with policy development, risk registers, and audit trail documentation. BENEFITS Competitive Base Salary Generous Holiday Package - 25 Days + 10 Public Holidays Private Medical, Dental & Vision Employee Wellness Program and Classes Flexible model of hybrid working
06/06/2026
Full time
A LITTLE INFORMATION ABOUT US! FoodsConnected is an award winning cloud based software platform that helps retailers and food companies across the world manage their supply chain, quality control and trading and planning management. Our software solutions are currently utilised by 10 of the largest food retailers in the world. As a team, we provide tools that help our customers manage their processes in a fast and efficient way and provide real time visibility and reporting on what is happening in their business. At Foods Connected, we recognise that our employees are our most important asset and we value creating a great working environment to ensure our team enjoy coming into the office every day working together and solving problems for our customers. Whether we are in the middle of a fast and intense development sprint, on a Teams call discussing our project statuses or enjoying a game of ping pong or pool in the office, it is important to us that our employees are happy and delivering the best possible result for our customers. We're always keen to welcome talented individuals to join our expanding team. So if you're driven, with a passion for developing simple software solutions, creating great user experiences, designing scalable solutions for real business challenges and ensuring customer happiness then we're looking for you! IS THIS SOMETHING THAT INTERESTS YOU? This is a 12 month Fixed Term Contract and the role has been designed as an evolution of our existing Compliance Officer position, reflecting Foods Connected's current compliance maturity and near term transition needs. In the first phase of the role, the Compliance Officer will work closely alongside our current Lead Compliance Officer in a structured shadowing and collaboration model, gaining deep familiarity with Foods Connected's Information Security Management System (ISMS), ongoing ISO 27001 certification obligations, and the active programme of work toward SOC 2 Type II certification. Upon the Lead Compliance Officer commencing maternity leave, the Compliance Officer will transition to working independently, taking full ownership of compliance operations and reporting directly to the Head of IT Security & Compliance. Throughout both phases, the role requires a strong understanding of technical controls, policy governance, and the realities of operating in a modern SaaS environment. During the initial collaborative period, the focus will be on knowledge transfer, relationship building, and active contribution to ongoing compliance workstreams. In the independent phase, the postholder will take full responsibility for maintaining ISO 27001 certification and driving SOC 2 Type II readiness to successful completion - ensuring continuity, momentum, and rigour across all compliance activity. The ideal candidate will be based in Derry or Belfast to support closer collaboration with the team. While remote work is possible, a preference will be given to individuals who can work closely with colleagues in person, particularly during key delivery phases or audit cycles. RESPONSIBILITIES Compliance & Framework Governance (75%) Operate and evolve the ISO 27001 compliant ISMS, including risk management, internal audit scheduling, and control mapping. Lead evidence collection and process development in support of SOC 2 Type II readiness and eventual certification. Drive Foods Connected's efforts toward successful achievement of SOC 2 Type II certification in 2026, ensuring all preparatory and operational milestones are met. Maintain and improve internal information security policies, standards, and procedures aligned with ISO, SOC 2, and internal risk posture. Support internal and external audits, manage remediation actions, and track closure of findings across departments. Coordinate regular reviews of policies and documentation with business stakeholders. Conduct risk and supplier assessments to support procurement, onboarding, and ongoing vendor due diligence. Own and maintain Foods Connected's AI governance framework, ensuring emerging regulatory obligations are understood and acted on. Maintain the risk register and issue tracking, ensuring risks are assessed, owned, and remediated in line with FC's risk management framework. Own and facilitate the ISMS quarterly meeting and quarterly risk review cycle, including ELT compliance reporting. Maintain detailed audit trails of compliance evidence using structured systems. Engage and support engineering, DevOps, and security teams in the implementation of compliant controls and practices (e.g., access control, change management, incident response). Develop, monitor, and maintain key performance indicators (KPIs) to measure and optimise the effectiveness and maturity of the ISMS over time. Monitor regulatory trends and translate them into practical guidance for the business. Cross-functional Collaboration & Enablement (20%) Provide compliance advisory support to engineering, product, HR, operations, and finance teams as needed. Support the delivery of security awareness and compliance training across the business. Assist in customer security assessments, due diligence questionnaires, and RFP responses as required. Collaborate with internal stakeholders to ensure data protection and privacy practices are consistently applied. Manage customer security commitments and contractual obligations Continuous Improvement (5%) Recommend and implement improvements to compliance tools, workflows, and documentation processes. Identify automation or streamlining opportunities for recurring audit and evidence tasks. EXPERIENCE AND QUALIFICATIONS To perform this job successfully, the Compliance Officer should have experience with: Minimum Qualifications Bachelor's degree (or equivalent practical experience) in a relevant field such as Information Security, Computer Science, Business Governance, or Risk Management. Proven, hands on experience operating within an ISO 27001 certified environment is essential, including practical involvement in ISMS maintenance, audits, and continuous improvement. Significant experience with SOC 2 compliance is highly desirable, with a strong preference for candidates who have actively contributed to or led the implementation of SOC 2 Type II certification in a growing organisation. Experience working in a SaaS or cloud native environment is strongly preferred, particularly where compliance must be aligned with technical controls, DevOps practices, and platform security. ISO 27001 Lead Implementer or Auditor CISA, CRISC, CISSP, or equivalent governance/audit credentials Technical & Compliance Skills Strong knowledge of ISO 27001, SOC 2 Trust Services Criteria, and information security best practices. Experience with GRC tooling (e.g., Vanta, Drata, or equivalent) for evidence collection, control tracking, and audit/risk management. Knowledge of data protection and privacy legislation (GDPR / UK GDPR) and its application in a SaaS environment. (preferred) Familiarity with cloud native environments (Microsoft Azure preferred) and associated security controls. Understanding of key control areas including access management, secure development, backup and DR, and incident response. Experience with policy development, risk registers, and audit trail documentation. BENEFITS Competitive Base Salary Generous Holiday Package - 25 Days + 10 Public Holidays Private Medical, Dental & Vision Employee Wellness Program and Classes Flexible model of hybrid working
Deputy DPO - Privacy & Compliance Lead
Information and Records Management Society Bath, Somerset
The Information and Records Management Society is seeking a Deputy Data Protection Officer to join the University of Bath's Department of Risk, Resilience & Compliance. In this role, you will ensure adherence to data protection regulations while collaborating with colleagues in Information Governance. This is a full-time position offering a hybrid working arrangement and a comprehensive benefits package, including free counselling services, generous leave, and professional development opportunities.
06/06/2026
Full time
The Information and Records Management Society is seeking a Deputy Data Protection Officer to join the University of Bath's Department of Risk, Resilience & Compliance. In this role, you will ensure adherence to data protection regulations while collaborating with colleagues in Information Governance. This is a full-time position offering a hybrid working arrangement and a comprehensive benefits package, including free counselling services, generous leave, and professional development opportunities.
IT Systems Analyst
EastNets
Job Title: IT Systems Analyst Job Family: Technology Operations Reports To: IT Systems Team Leader Subordinates: None Company Overview Eastnets is a leading player in the B2B fintech industry. We are a global provider of compliance and payments solutions for the financial services sector. Our experience and expertise help ensure trust at over 800 financial institutions across the world, including 11 of the top global banks. We secure institutions from financial crime by helping our partners manage risk through sanction screening, transaction monitoring, analytics, and reporting, along with market-leading consultancy and customer support. The IT Systems Analyst is responsible for providing technical support to resolve user hardware and software issues and assisting in installing, configuring, and maintaining computer systems and networks. Assist in troubleshooting network problems and ensuring connectivity. And help with system upgrades and maintenance tasks. Learn and adapt to new technologies and tools. This position reports to the IT Systems Team Leader. Key Responsibilities Provide ongoing technical support for staff. Maintain and develop manuals and documentation. Provide computer and applications training for staff as needed. Provide troubleshooting and problem-solving services for staff concerning hardware and software. Network administration experience with an emphasis on Microsoft Windows 10, Microsoft Exchange Online and Microsoft Office suite. Ensure that the LAN is running smoothly and efficiently. Proactively advise management on software and hardware needs. Maintain servers, workstations and peripheral hardware. Purchase, install and maintain software on all computers. Maintain Exchange Server e-mail system, including directory, file permissions and user accounts. Administer the data backup system and restore as required. Design and administer virus protection procedures. Vendor interaction is highly required in evaluating different products to match the needs of the company. Communicate all product procurement requirements to the Procurement officer Work with selected vendors to test/develop new solutions for EN Obtain technical support from vendors as required in a coordinated effort with the procurement office. Maintain Eastnets security of information, devices and systems, and its personnel, customers and partners use. Protect Eastnets business information and any customer, supplier, or partner information within its custody by safeguarding its confidentiality, integrity and availability. Adhere to and comply with Eastnets internal security policies, Code of Ethics, Non-Disclosure Policy, Non-Compete Policy, Email Policy, Proprietary Rights Acknowledgement, Background Check Policy, and all other internal policies and employee handbook. Participate in the company's wide initiatives. Requirements 2-4 years of systems administration experience. A degree in Information Technology or a similar degree. Exchange Server Online. Microsoft Server 2016/2019. Windows 10 Administration. Basic Knowledge of the following protocols and technologies: DNS, DHCP, Backups, VPN, Firewalls, RAID Systems, and FTP Server. Excellent troubleshooting skills and hands-on experience with various Operating Systems. Familiarity with AI technologies and their application is a strong plus. Working knowledge of virtualization, Hyper-V, VMWare or equivalent. Professional certification, Microsoft Certified Systems Administrator (MCSE). Familiarity with Active Directory, Azure AD and Office 365 administration. Apply for this role and join the Eastnets family Fill out the form, send your CV to and our recruitment team will be in touch if your skill set matches our needs. Application First name Last name Email Country Phone number Job title Is there anything you would like us to know? Upload Your CV Please upload your most recent CV in PDF or DOC format. By using this form you agree with the handling of your data in accordance with our Privacy Policy.
06/06/2026
Full time
Job Title: IT Systems Analyst Job Family: Technology Operations Reports To: IT Systems Team Leader Subordinates: None Company Overview Eastnets is a leading player in the B2B fintech industry. We are a global provider of compliance and payments solutions for the financial services sector. Our experience and expertise help ensure trust at over 800 financial institutions across the world, including 11 of the top global banks. We secure institutions from financial crime by helping our partners manage risk through sanction screening, transaction monitoring, analytics, and reporting, along with market-leading consultancy and customer support. The IT Systems Analyst is responsible for providing technical support to resolve user hardware and software issues and assisting in installing, configuring, and maintaining computer systems and networks. Assist in troubleshooting network problems and ensuring connectivity. And help with system upgrades and maintenance tasks. Learn and adapt to new technologies and tools. This position reports to the IT Systems Team Leader. Key Responsibilities Provide ongoing technical support for staff. Maintain and develop manuals and documentation. Provide computer and applications training for staff as needed. Provide troubleshooting and problem-solving services for staff concerning hardware and software. Network administration experience with an emphasis on Microsoft Windows 10, Microsoft Exchange Online and Microsoft Office suite. Ensure that the LAN is running smoothly and efficiently. Proactively advise management on software and hardware needs. Maintain servers, workstations and peripheral hardware. Purchase, install and maintain software on all computers. Maintain Exchange Server e-mail system, including directory, file permissions and user accounts. Administer the data backup system and restore as required. Design and administer virus protection procedures. Vendor interaction is highly required in evaluating different products to match the needs of the company. Communicate all product procurement requirements to the Procurement officer Work with selected vendors to test/develop new solutions for EN Obtain technical support from vendors as required in a coordinated effort with the procurement office. Maintain Eastnets security of information, devices and systems, and its personnel, customers and partners use. Protect Eastnets business information and any customer, supplier, or partner information within its custody by safeguarding its confidentiality, integrity and availability. Adhere to and comply with Eastnets internal security policies, Code of Ethics, Non-Disclosure Policy, Non-Compete Policy, Email Policy, Proprietary Rights Acknowledgement, Background Check Policy, and all other internal policies and employee handbook. Participate in the company's wide initiatives. Requirements 2-4 years of systems administration experience. A degree in Information Technology or a similar degree. Exchange Server Online. Microsoft Server 2016/2019. Windows 10 Administration. Basic Knowledge of the following protocols and technologies: DNS, DHCP, Backups, VPN, Firewalls, RAID Systems, and FTP Server. Excellent troubleshooting skills and hands-on experience with various Operating Systems. Familiarity with AI technologies and their application is a strong plus. Working knowledge of virtualization, Hyper-V, VMWare or equivalent. Professional certification, Microsoft Certified Systems Administrator (MCSE). Familiarity with Active Directory, Azure AD and Office 365 administration. Apply for this role and join the Eastnets family Fill out the form, send your CV to and our recruitment team will be in touch if your skill set matches our needs. Application First name Last name Email Country Phone number Job title Is there anything you would like us to know? Upload Your CV Please upload your most recent CV in PDF or DOC format. By using this form you agree with the handling of your data in accordance with our Privacy Policy.
Data Privacy & Protection Specialist
Island of Jersey Jersey Marine, West Glamorgan
Island of Jersey is seeking a Data Protection professional based in Jersey Marine, United Kingdom. The role involves assisting the Data Protection Officer in implementing data privacy strategies and conducting assessments on local legislation and requirements. Candidates should have 3-5 years of experience in Data Analytics and extensive knowledge of data privacy, preferably in financial institutions. This position provides an opportunity to contribute to essential compliance efforts and risk mitigation planning.
05/06/2026
Full time
Island of Jersey is seeking a Data Protection professional based in Jersey Marine, United Kingdom. The role involves assisting the Data Protection Officer in implementing data privacy strategies and conducting assessments on local legislation and requirements. Candidates should have 3-5 years of experience in Data Analytics and extensive knowledge of data privacy, preferably in financial institutions. This position provides an opportunity to contribute to essential compliance efforts and risk mitigation planning.
Data Governance Lead
nxzen Global
Data Governance Lead Introduction The Data Governance Lead will lead the growth and execution of nxzen's Data Governance, and Data Operating Models offerings in the UK market. Reporting to the UK Head of Data and AI, and working alongside the AI and Analytics Lead, you will support business development, shape client propositions, and deliver complex data governance engagements for major energy and utilities clients. You will act as the recognised authority on data governance within nxzen, bringing deep DAMA DMBOK expertise and hands on platform experience to every engagement. This is a hybrid role: delivery led with a strong business development component. You will personally lead complex engagements, work directly with client data teams, and build governance solutions alongside your team rather than delegating from a distance. The role spans the full lifecycle of data governance and data management: from executive level data vision and strategy advisory, through operating model design and organisational change, to hands on implementation and configuration of governance tooling such as Microsoft Purview and Collibra, and driving data adoption through use case discovery and implementation. You will be expected to roll up your sleeves and deliver, not just advise. You will build and coach a data governance practice line spanning the UK and India, develop strategic relationships with technology partners and industry bodies, alignment with the AI and Analytics practice line, and work closely with nxzen's client partners and cross practices to embed data governance into the broader service portfolio. Success in this role requires genuine subject matter depth, strong consulting acumen, an entrepreneurial mindset, and a sharp commercial focus. The role We are looking for a senior data governance leader with genuine subject matter expertise, not a project manager who has supervised governance programmes from a distance. We need someone who has personally designed governance frameworks, configured governance platforms, and run data quality remediation workstreams with their own hands. You will bring deep, hands on knowledge of DAMA DMBOK principles and their practical application, combined with real implementation experience on Microsoft Purview, Collibra, or Informatica (Cloud Data Governance and Catalog). CDMP certification (or equivalent DAMA credential) is strongly preferred. You will be highly client facing, commercially sharp, and comfortable working with onshore/offshore teams. An entrepreneurial mindset is essential, with the energy and vision to build and scale a new data governance practice. You must be equally credible advising a Chief Data Officer on data strategy as you are defining sensitivity labels in Purview or defining business glossary workflows in Collibra. Deep, hands on expertise in DAMA DMBOK key knowledge areas: Data Governance, Data Quality, Metadata Management, and Master and Reference Data. Supplementary knowledge in Data Architecture, Data Security, Data Integration and Interoperability, Document and Content Management, Data Warehousing and Business Intelligence. Proven hands on implementation experience with Microsoft Purview (data catalogue, sensitivity labelling, data classification, compliance policies, data lineage) and Collibra (business glossary, data dictionary, data quality rules, workflow configuration, stewardship assignments). Alation and Informatica (Cloud Data Governance and Catalog) are desirable, not essential. Track record of designing and delivering Data Operating Models, including organisational design, RACI definitions, stewardship networks, and governance council structures. Trusted advisor status with senior stakeholders in regulated industries, from Data Owners and CDOs to C suite. CDMP certification or equivalent DAMA credential strongly preferred; Practitioner or Master level ideal. Comfortable building and coaching onshore/offshore delivery teams, with experience developing capability in offshore centres (ideally India). Experience with UK energy and utilities clients, including familiarity with Ofgem, Ofwat, regulatory data and reporting requirements (highly desirable, not essential). Experience partnering with Client Partners on solution design, planning, and commercials for data governance engagements. Knowledge of Azure and/or AWS cloud data platforms (data lakes, data lakehouse, data mesh, data Fabric) as enabling infrastructure for governance solutions (desirable). Front of house presence with clients, able to run board level strategy workshops and configure governance tooling on site. Awareness of AI Governance and Guardrails frameworks, inclusive of responsible AI principles, model risk management, and the interaction between data governance and AI governance. Strong commercial judgment in shaping, pricing, and negotiating data governance engagements, including fixed price, time and materials, and managed service models. Credible voice in the data governance and data management community, aligned to nxzen's purpose and brand. Responsibilities Lead data governance consulting, pre sales, and senior stakeholder engagement across nxzen's energy and utilities client portfolio. Define and deliver Data Operating Model engagements for UK energy and utilities clients (covering electricity networks, gas distribution, water, renewables, and oil & gas). Shape proposals, solution options, and commercials with Client Partners, pricing and packaging data governance offerings as repeatable, scalable services. Represent nxzen as a credible data governance authority in the market, building visibility through thought leadership, industry events, and client workshops. Design and deliver end to end data governance frameworks aligned to DAMA DMBOK, covering data quality, metadata management, data cataloguing, data lineage, master and reference data management, data privacy, and regulatory compliance. Personally lead and execute implementation and configuration of Microsoft Purview and Collibra on client engagements, including data classification, sensitivity labelling, policy enforcement, data cataloguing, business glossary definition, and stewardship workflow design. Define and implement Data Operating Models covering organisational design, roles and responsibilities, decision rights, escalation paths, and performance metrics (data quality scorecards, compliance dashboards). Build and coach a data governance practice line with team members in the UK and India, developing capability across Data Stewardship, metadata management, data quality engineering, and governance tooling. Develop strategic partnerships with data governance platform vendors (Microsoft, Collibra) and advisory bodies (DAMA UK, industry regulators). Strengthen collaboration with nxzen's Global Capability Centre in India to scale delivery capacity and build a sustainable onshore/offshore governance delivery model. Advise clients on data governance maturity assessments, target state definition, and transformation roadmaps, with specific focus on Ofgem and Ofwat regulatory data requirements. Work alongside Client Partners to integrate data governance into broader nxzen engagements spanning data management, analytics, AI, asset intelligence, enterprise optimisation, and IT/OT transformation. Support the development of nxzen's AI Governance and Guardrails offering, ensuring responsible AI practices are grounded in robust data governance foundations. Contribute to nxzen's thought leadership on data governance in energy and utilities, including whitepapers, conference presentations, and client facing collateral. Support business development across nxzen's priority accounts.
04/06/2026
Full time
Data Governance Lead Introduction The Data Governance Lead will lead the growth and execution of nxzen's Data Governance, and Data Operating Models offerings in the UK market. Reporting to the UK Head of Data and AI, and working alongside the AI and Analytics Lead, you will support business development, shape client propositions, and deliver complex data governance engagements for major energy and utilities clients. You will act as the recognised authority on data governance within nxzen, bringing deep DAMA DMBOK expertise and hands on platform experience to every engagement. This is a hybrid role: delivery led with a strong business development component. You will personally lead complex engagements, work directly with client data teams, and build governance solutions alongside your team rather than delegating from a distance. The role spans the full lifecycle of data governance and data management: from executive level data vision and strategy advisory, through operating model design and organisational change, to hands on implementation and configuration of governance tooling such as Microsoft Purview and Collibra, and driving data adoption through use case discovery and implementation. You will be expected to roll up your sleeves and deliver, not just advise. You will build and coach a data governance practice line spanning the UK and India, develop strategic relationships with technology partners and industry bodies, alignment with the AI and Analytics practice line, and work closely with nxzen's client partners and cross practices to embed data governance into the broader service portfolio. Success in this role requires genuine subject matter depth, strong consulting acumen, an entrepreneurial mindset, and a sharp commercial focus. The role We are looking for a senior data governance leader with genuine subject matter expertise, not a project manager who has supervised governance programmes from a distance. We need someone who has personally designed governance frameworks, configured governance platforms, and run data quality remediation workstreams with their own hands. You will bring deep, hands on knowledge of DAMA DMBOK principles and their practical application, combined with real implementation experience on Microsoft Purview, Collibra, or Informatica (Cloud Data Governance and Catalog). CDMP certification (or equivalent DAMA credential) is strongly preferred. You will be highly client facing, commercially sharp, and comfortable working with onshore/offshore teams. An entrepreneurial mindset is essential, with the energy and vision to build and scale a new data governance practice. You must be equally credible advising a Chief Data Officer on data strategy as you are defining sensitivity labels in Purview or defining business glossary workflows in Collibra. Deep, hands on expertise in DAMA DMBOK key knowledge areas: Data Governance, Data Quality, Metadata Management, and Master and Reference Data. Supplementary knowledge in Data Architecture, Data Security, Data Integration and Interoperability, Document and Content Management, Data Warehousing and Business Intelligence. Proven hands on implementation experience with Microsoft Purview (data catalogue, sensitivity labelling, data classification, compliance policies, data lineage) and Collibra (business glossary, data dictionary, data quality rules, workflow configuration, stewardship assignments). Alation and Informatica (Cloud Data Governance and Catalog) are desirable, not essential. Track record of designing and delivering Data Operating Models, including organisational design, RACI definitions, stewardship networks, and governance council structures. Trusted advisor status with senior stakeholders in regulated industries, from Data Owners and CDOs to C suite. CDMP certification or equivalent DAMA credential strongly preferred; Practitioner or Master level ideal. Comfortable building and coaching onshore/offshore delivery teams, with experience developing capability in offshore centres (ideally India). Experience with UK energy and utilities clients, including familiarity with Ofgem, Ofwat, regulatory data and reporting requirements (highly desirable, not essential). Experience partnering with Client Partners on solution design, planning, and commercials for data governance engagements. Knowledge of Azure and/or AWS cloud data platforms (data lakes, data lakehouse, data mesh, data Fabric) as enabling infrastructure for governance solutions (desirable). Front of house presence with clients, able to run board level strategy workshops and configure governance tooling on site. Awareness of AI Governance and Guardrails frameworks, inclusive of responsible AI principles, model risk management, and the interaction between data governance and AI governance. Strong commercial judgment in shaping, pricing, and negotiating data governance engagements, including fixed price, time and materials, and managed service models. Credible voice in the data governance and data management community, aligned to nxzen's purpose and brand. Responsibilities Lead data governance consulting, pre sales, and senior stakeholder engagement across nxzen's energy and utilities client portfolio. Define and deliver Data Operating Model engagements for UK energy and utilities clients (covering electricity networks, gas distribution, water, renewables, and oil & gas). Shape proposals, solution options, and commercials with Client Partners, pricing and packaging data governance offerings as repeatable, scalable services. Represent nxzen as a credible data governance authority in the market, building visibility through thought leadership, industry events, and client workshops. Design and deliver end to end data governance frameworks aligned to DAMA DMBOK, covering data quality, metadata management, data cataloguing, data lineage, master and reference data management, data privacy, and regulatory compliance. Personally lead and execute implementation and configuration of Microsoft Purview and Collibra on client engagements, including data classification, sensitivity labelling, policy enforcement, data cataloguing, business glossary definition, and stewardship workflow design. Define and implement Data Operating Models covering organisational design, roles and responsibilities, decision rights, escalation paths, and performance metrics (data quality scorecards, compliance dashboards). Build and coach a data governance practice line with team members in the UK and India, developing capability across Data Stewardship, metadata management, data quality engineering, and governance tooling. Develop strategic partnerships with data governance platform vendors (Microsoft, Collibra) and advisory bodies (DAMA UK, industry regulators). Strengthen collaboration with nxzen's Global Capability Centre in India to scale delivery capacity and build a sustainable onshore/offshore governance delivery model. Advise clients on data governance maturity assessments, target state definition, and transformation roadmaps, with specific focus on Ofgem and Ofwat regulatory data requirements. Work alongside Client Partners to integrate data governance into broader nxzen engagements spanning data management, analytics, AI, asset intelligence, enterprise optimisation, and IT/OT transformation. Support the development of nxzen's AI Governance and Guardrails offering, ensuring responsible AI practices are grounded in robust data governance foundations. Contribute to nxzen's thought leadership on data governance in energy and utilities, including whitepapers, conference presentations, and client facing collateral. Support business development across nxzen's priority accounts.
Vice President, Business Information Security Officer
MUFG Bank, Ltd
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.
04/06/2026
Full time
Vice President, Business Information Security OfficerApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: -WD Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.Corporate Technology is accountable for the operation, development and support of all applications across all areas of the business. Corporate Technology ensures IT strategy, architecture and solutions are aligned to business requirements. The BISO role is part of the IT Security team. IT Security are collectively responsible for the following areas: Cyber Support and Engineering, Security Operations Centre covering pen tests, red and blue teams, Cyber and Risk Change portfolio, Threat Intelligence and Vulnerability Management for the Group and Identity and Access Management. NUMBER OF DIRECT REPORTS 2 MAIN PURPOSE OF THE ROLE Responsible for providing strategic information security leadership and oversight across all business units in the region. This role bridges global security strategy and regional business execution, ensuring that security, risk, and compliance objectives are effectively implemented, measured, and governed.The position partners closely with regional executives, technology leadership, and global security functions to embed a culture of security, drive control adoption, and maintain regulatory confidence.This role will work alongside the EMEA regional CISO on supporting the strategy, initiatives and roadmap for information security in MUFG EMEA. Working with key stakeholders internally to help embed security into the culture, whilst embedding technical controls into the mission critical business systems:Risk Advisory & Control Adoption Serve as the trusted advisor to business and technology units on security risks and control implementation. Support adoption of global security controls and standards within regional operations. Provide security input on new business initiatives, digital transformation, and third-party relationships.2. Security Training & Awareness Develop, tailor, and oversee delivery of security awareness programs by business line. Drive execution of phishing simulations and targeted learning interventions. Measure awareness effectiveness and report to management.3. Security Champion Network Establish and maintain a regional security champion community within business and operations teams. Promote local ownership of security best practices and risk reduction initiatives. Provide ongoing engagement, training, and recognition programs for champions.4. Security Strategy, Planning & Reporting Translate global and regional security objectives into actionable EMEA programs. Develop strategic plans, key risk metrics (KRIs/KPIs), and executive dashboards. Contribute to quarterly and annual reporting cycles for CISO and business leadership.5. Finance, Budgeting & Resourcing Support regional security budgeting, forecasting, and resource allocation. Track spend against plan and provide variance analysis. Assist in developing business cases for new initiatives or investments.6. Security Program Governance Oversee the implementation and governance of global security programs in EMEA. Ensure adherence to enterprise security policies and frameworks. Coordinate across multiple stakeholders to maintain governance and accountability.7. Risk, Compliance & Audit Coordination Act as the single point of contact for IT Security related audits and compliance engagements. Manage audit readiness, evidence coordination, and remediation tracking. Maintain strong relationships with internal audit, compliance, and regulatory teams.8. Reporting & Global/Regional Coordination Coordinate EMEA security reporting and represent the region in global BISO forums. Ensure consistency of risk posture and alignment with global metrics and governance. Provide regional input into global policy updates and program design. KEY RESPONSIBILITIES Communication & Training Manage the Cyber & Risk training program. Ensuring Cyber integration with the business and technology. Communicating Risk & Cyber information across Bank EMEA and Securities. Be an escalation point for concerns about IT Security. Be a positive collaborator. People Management Ensure that the function is appropriately organised and adequately resourced by staff with appropriate skillsets to achieve its strategic objectives. Lead, direct and manage staff within the function to ensure that they: + Understand the responsibilities applicable to their roles + Comply with the firm's policies and procedures + Conduct themselves in a manner commensurate with the firm's values Actively manage performance, develop talent, identify key positions and persons and create sustainable success plans. Oversee appropriate training is in place to fulfil current and future skill requirements. Culture and Leadership Actively lead the integration of Bank and Securities technology functions. Promote the MUFG values-led culture which is inclusive and diverse. Promote a dynamic, delivery driven culture that works alongside business units to provide responsive resolutions and value driven solutions. Collective leadership by example on staff cyber education and awareness to embed a proactive cyber culture. Find ways to strengthen working relationships with stakeholders, including business teams. Lead by example in building relationships across the bank, establishing a stronger peer network and helping to strengthen collaboration. Build strong relationships with internal and external stakeholders to understand industry best practice, influence change and promote technical credibility. WORK EXPERIENCE Experienced in information security, technology risk, or related disciplines within financial services sector. Experienced in IT security and control policy with specific experience of FFEIC, SOX, COBIT, NIST, CRI Profile and ISO standards. Conversant in the security & risk trends across banking and other industries. Experienced with the Defence in Depth approach Strong track record of managing teams and building effective partnerships with peers. Strong experience in delivering training Professional information security certifications (i.e. CISSP, CISM, CRISC or similar experience). Cloud Security experience and a good understanding of privacy legislation (Data Protection Act 2018 / GDPR). SKILLS AND EXPERIENCE Functional / Technical Competencies: Strong strategic and analytical thinking. Excellent communication and stakeholder management. Proven ability to balance technical, business, and regulatory priorities. Collaborative, pragmatic, and outcomes-driven leadership style. A deep understanding of IT and Cyber Security: + Defence in Depth model. + Network defence, IDS and DMZ + Network protocols and firewall standards + Detective monitoring - SIEM + Vulnerability Management + Access and Privileged Access Management Experienced in writing and maintaining IT documents, such as standards and procedures. Demonstrates an understanding of strategic business and IT issues impacting the financial services market. Strong understanding of risk and its application across technology and the business. Good understanding of project lifecycles. Education / Qualifications: Degree educated and / or equivalent experience. PERSONAL REQUIREMENTS Excellent Leadership skills Excellent communication skills Ability to manage constructive conflict effectively Strong facilitation skills Ability to build strong and lasting relationships across the bank Results driven, with a strong sense of accountability, focused on business outcomes A proactive, motivated approach. The ability to operate with urgency and prioritise work accordingly Strong decision-making skills, the ability to demonstrate sound judgement A structured and logical approach to work Strong problem-solving skills A creative and innovative approach to work Excellent interpersonal skills Excellent attention to detail and accuracy Strong numerical skills A confident approach, with the ability to provide clear direction to your team Excellent managerial/leadership experience The ability to articulate and implement the vision/strategy for the planning departmentWe are open to considering flexible working requests in line with organisational requirements.
Data Analyst
Laatedu
LONDON ACADEMY FOR APPLIED TECHNOLOGY Full time Data Analyst London, United Kingdom Posted on 04/09/2026 Job Description Job Title: Data Analyst Role Profile: Data Protection Officer Location: London Academy for Applied Technology Department: Governance / Compliance Reports To: Operation Lead Employment Type: Full-time Purpose of the Role: To provide data-driven insights that support decision making, reporting, and continuous improvement across the institution. The Data Analyst ensures the accuracy, integrity, and actionable use of institutional data. Key Accountabilities Collect, clean, and analyse institutional data, including student records, attendance, academic performance, and operational metrics. Produce regular dashboards, reports, and data visualisations for senior leadership and governance committees. Identify trends, risks, and opportunities using statistical analysis and predictive modelling. Collaborate with academic and administrative teams to ensure data accuracy and alignment with institutional objectives. Support compliance and audit requirements by validating data integrity and providing evidence for regulatory submissions. Recommend data driven strategies for improving student outcomes, operational efficiency, and institutional performance. Maintain documentation, coding standards, and data governance best practices. Impact The Data Analyst role ensures that the Academy can make informed, evidence based decisions, improve operational efficiency, and maintain high standards of reporting, compliance, and student outcomes. Role Profile: Data Protection Officer Role Summary: The Data Protection Officer (DPO) ensures that all personal data relating to students, staff, applicants, and partners is processed lawfully, securely, and transparently in accordance with UK GDPR, Data Protection Act 2018, and OfS regulatory requirements. Key Responsibilities: Oversee compliance with UK GDPR, Data Protection Act 2018, PECR, and OfS regulatory requirements. Develop and maintain data protection policies, retention schedules, privacy notices, and internal control procedures. Maintain the Record of Processing Activities (RoPA) and oversee retention and deletion schedules. Provide guidance to departments on lawful bases for processing, data minimisation, and safeguarding sensitive data. Lead Data Protection Impact Assessments (DPIAs) and risk assessments. Manage data breaches, ensuring assessment, reporting, containment, and lessons learned. Deliver training and awareness programs for staff and stakeholders. Serve as primary contact for the ICO and support OfS inspections or audits. Report compliance, risks, and incidents to Senior Leadership and Governing Body. Requirements Person Specification: Deep knowledge of UK GDPR, Data Protection Act 2018, PECR, and higher education data governance. Experience in DPO, Data Governance, Compliance, or senior information management roles. Proven ability to conduct DPIAs, compliance audits, and risk assessments. Strong analytical, documentation, and problem solving skills. Excellent communication skills with the ability to influence senior leadership. High integrity, independence, and impartiality. Skills and Competencies: Proficiency in data analysis tools (Excel, SQL, Python, R, or equivalent) and visualisation software (Power BI, Tableau, etc.). Strong numerical and statistical skills, with attention to detail. Ability to interpret complex data and communicate insights clearly to non-technical stakeholders. Experience with data governance, privacy compliance, and secure handling of sensitive information. Collaborative approach with strong problem solving and analytical thinking.
04/06/2026
Full time
LONDON ACADEMY FOR APPLIED TECHNOLOGY Full time Data Analyst London, United Kingdom Posted on 04/09/2026 Job Description Job Title: Data Analyst Role Profile: Data Protection Officer Location: London Academy for Applied Technology Department: Governance / Compliance Reports To: Operation Lead Employment Type: Full-time Purpose of the Role: To provide data-driven insights that support decision making, reporting, and continuous improvement across the institution. The Data Analyst ensures the accuracy, integrity, and actionable use of institutional data. Key Accountabilities Collect, clean, and analyse institutional data, including student records, attendance, academic performance, and operational metrics. Produce regular dashboards, reports, and data visualisations for senior leadership and governance committees. Identify trends, risks, and opportunities using statistical analysis and predictive modelling. Collaborate with academic and administrative teams to ensure data accuracy and alignment with institutional objectives. Support compliance and audit requirements by validating data integrity and providing evidence for regulatory submissions. Recommend data driven strategies for improving student outcomes, operational efficiency, and institutional performance. Maintain documentation, coding standards, and data governance best practices. Impact The Data Analyst role ensures that the Academy can make informed, evidence based decisions, improve operational efficiency, and maintain high standards of reporting, compliance, and student outcomes. Role Profile: Data Protection Officer Role Summary: The Data Protection Officer (DPO) ensures that all personal data relating to students, staff, applicants, and partners is processed lawfully, securely, and transparently in accordance with UK GDPR, Data Protection Act 2018, and OfS regulatory requirements. Key Responsibilities: Oversee compliance with UK GDPR, Data Protection Act 2018, PECR, and OfS regulatory requirements. Develop and maintain data protection policies, retention schedules, privacy notices, and internal control procedures. Maintain the Record of Processing Activities (RoPA) and oversee retention and deletion schedules. Provide guidance to departments on lawful bases for processing, data minimisation, and safeguarding sensitive data. Lead Data Protection Impact Assessments (DPIAs) and risk assessments. Manage data breaches, ensuring assessment, reporting, containment, and lessons learned. Deliver training and awareness programs for staff and stakeholders. Serve as primary contact for the ICO and support OfS inspections or audits. Report compliance, risks, and incidents to Senior Leadership and Governing Body. Requirements Person Specification: Deep knowledge of UK GDPR, Data Protection Act 2018, PECR, and higher education data governance. Experience in DPO, Data Governance, Compliance, or senior information management roles. Proven ability to conduct DPIAs, compliance audits, and risk assessments. Strong analytical, documentation, and problem solving skills. Excellent communication skills with the ability to influence senior leadership. High integrity, independence, and impartiality. Skills and Competencies: Proficiency in data analysis tools (Excel, SQL, Python, R, or equivalent) and visualisation software (Power BI, Tableau, etc.). Strong numerical and statistical skills, with attention to detail. Ability to interpret complex data and communicate insights clearly to non-technical stakeholders. Experience with data governance, privacy compliance, and secure handling of sensitive information. Collaborative approach with strong problem solving and analytical thinking.
Data Insights & Privacy Compliance Analyst
Laatedu
LONDON ACADEMY FOR APPLIED TECHNOLOGY Full time Data Analyst London, United Kingdom Posted on 04/09/2026 Job Description Job Title: Data Analyst Role Profile: Data Protection Officer Location: London Academy for Applied Technology Department: Governance / Compliance Reports To: Operation Lead Employment Type: Full-time Purpose of the Role: To provide data-driven insights that support decision making, reporting, and continuous improvement across the institution. The Data Analyst ensures the accuracy, integrity, and actionable use of institutional data. Key Accountabilities Collect, clean, and analyse institutional data, including student records, attendance, academic performance, and operational metrics. Produce regular dashboards, reports, and data visualisations for senior leadership and governance committees. Identify trends, risks, and opportunities using statistical analysis and predictive modelling. Collaborate with academic and administrative teams to ensure data accuracy and alignment with institutional objectives. Support compliance and audit requirements by validating data integrity and providing evidence for regulatory submissions. Recommend data driven strategies for improving student outcomes, operational efficiency, and institutional performance. Maintain documentation, coding standards, and data governance best practices. Impact The Data Analyst role ensures that the Academy can make informed, evidence based decisions, improve operational efficiency, and maintain high standards of reporting, compliance, and student outcomes. Role Profile: Data Protection Officer Role Summary: The Data Protection Officer (DPO) ensures that all personal data relating to students, staff, applicants, and partners is processed lawfully, securely, and transparently in accordance with UK GDPR, Data Protection Act 2018, and OfS regulatory requirements. Key Responsibilities: Oversee compliance with UK GDPR, Data Protection Act 2018, PECR, and OfS regulatory requirements. Develop and maintain data protection policies, retention schedules, privacy notices, and internal control procedures. Maintain the Record of Processing Activities (RoPA) and oversee retention and deletion schedules. Provide guidance to departments on lawful bases for processing, data minimisation, and safeguarding sensitive data. Lead Data Protection Impact Assessments (DPIAs) and risk assessments. Manage data breaches, ensuring assessment, reporting, containment, and lessons learned. Deliver training and awareness programs for staff and stakeholders. Serve as primary contact for the ICO and support OfS inspections or audits. Report compliance, risks, and incidents to Senior Leadership and Governing Body. Requirements Person Specification: Deep knowledge of UK GDPR, Data Protection Act 2018, PECR, and higher education data governance. Experience in DPO, Data Governance, Compliance, or senior information management roles. Proven ability to conduct DPIAs, compliance audits, and risk assessments. Strong analytical, documentation, and problem solving skills. Excellent communication skills with the ability to influence senior leadership. High integrity, independence, and impartiality. Skills and Competencies: Proficiency in data analysis tools (Excel, SQL, Python, R, or equivalent) and visualisation software (Power BI, Tableau, etc.). Strong numerical and statistical skills, with attention to detail. Ability to interpret complex data and communicate insights clearly to non-technical stakeholders. Experience with data governance, privacy compliance, and secure handling of sensitive information. Collaborative approach with strong problem solving and analytical thinking.
04/06/2026
Full time
LONDON ACADEMY FOR APPLIED TECHNOLOGY Full time Data Analyst London, United Kingdom Posted on 04/09/2026 Job Description Job Title: Data Analyst Role Profile: Data Protection Officer Location: London Academy for Applied Technology Department: Governance / Compliance Reports To: Operation Lead Employment Type: Full-time Purpose of the Role: To provide data-driven insights that support decision making, reporting, and continuous improvement across the institution. The Data Analyst ensures the accuracy, integrity, and actionable use of institutional data. Key Accountabilities Collect, clean, and analyse institutional data, including student records, attendance, academic performance, and operational metrics. Produce regular dashboards, reports, and data visualisations for senior leadership and governance committees. Identify trends, risks, and opportunities using statistical analysis and predictive modelling. Collaborate with academic and administrative teams to ensure data accuracy and alignment with institutional objectives. Support compliance and audit requirements by validating data integrity and providing evidence for regulatory submissions. Recommend data driven strategies for improving student outcomes, operational efficiency, and institutional performance. Maintain documentation, coding standards, and data governance best practices. Impact The Data Analyst role ensures that the Academy can make informed, evidence based decisions, improve operational efficiency, and maintain high standards of reporting, compliance, and student outcomes. Role Profile: Data Protection Officer Role Summary: The Data Protection Officer (DPO) ensures that all personal data relating to students, staff, applicants, and partners is processed lawfully, securely, and transparently in accordance with UK GDPR, Data Protection Act 2018, and OfS regulatory requirements. Key Responsibilities: Oversee compliance with UK GDPR, Data Protection Act 2018, PECR, and OfS regulatory requirements. Develop and maintain data protection policies, retention schedules, privacy notices, and internal control procedures. Maintain the Record of Processing Activities (RoPA) and oversee retention and deletion schedules. Provide guidance to departments on lawful bases for processing, data minimisation, and safeguarding sensitive data. Lead Data Protection Impact Assessments (DPIAs) and risk assessments. Manage data breaches, ensuring assessment, reporting, containment, and lessons learned. Deliver training and awareness programs for staff and stakeholders. Serve as primary contact for the ICO and support OfS inspections or audits. Report compliance, risks, and incidents to Senior Leadership and Governing Body. Requirements Person Specification: Deep knowledge of UK GDPR, Data Protection Act 2018, PECR, and higher education data governance. Experience in DPO, Data Governance, Compliance, or senior information management roles. Proven ability to conduct DPIAs, compliance audits, and risk assessments. Strong analytical, documentation, and problem solving skills. Excellent communication skills with the ability to influence senior leadership. High integrity, independence, and impartiality. Skills and Competencies: Proficiency in data analysis tools (Excel, SQL, Python, R, or equivalent) and visualisation software (Power BI, Tableau, etc.). Strong numerical and statistical skills, with attention to detail. Ability to interpret complex data and communicate insights clearly to non-technical stakeholders. Experience with data governance, privacy compliance, and secure handling of sensitive information. Collaborative approach with strong problem solving and analytical thinking.
Data Protection Advisor
Lumesse
Data Protection Advisor (Transformation) Location: Hybrid working You will support the Data Protection Officer in providing data protection compliance advice to Connells Group Companies, assisting with the identification and management of data protection risks arising from business operations and transformation programmes. The transformation aspect to the role offers the opportunity to gain experience working with cross-functional teams throughout the group such as Group Technology, Security, Legal, Enterprise Risk, People Team, Group Companies and external third-party providers. Your responsibilities will include: Assist the Data Protection Officer in conducting Data Protection Impact Assessments for change programmes and new initiatives Help maintain and update Records of Processing Activities (ROPA) across Group Companies Assist in the review of Data Protection operational processes and identify areas for improvement Support risk owners in identifying and applying controls to manage data protection risks. Contribute to the development and maturity of the Data Protection programme and Project workstream alongside team colleagues Support data protection training initiatives and awareness programmes Support supplier and third-party due diligence reviews We are looking for someone who has: Minimum 2-3 years' experience in a data protection, compliance or privacy related role Experience working in a commercial environment (B2C or B2B) Understanding of data protection principles and regulatory requirements Competently complete Data Protection Impact Assessments and Record of Processing Activities. Good understanding of technology and data flows in business contexts Strong analytical and problem solving skills Good written and verbal communication skills Ability to explain complex privacy concepts in simple terms Strong organisational and time management skills Good understanding of UK GDPR and Data Protection Act 2018 Knowledge of PECR requirements Understanding of privacy by design principles Awareness of individual rights under data protection law Connells Group UK is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, transgender status, religion or belief, marital status or pregnancy and maternity.
02/06/2026
Full time
Data Protection Advisor (Transformation) Location: Hybrid working You will support the Data Protection Officer in providing data protection compliance advice to Connells Group Companies, assisting with the identification and management of data protection risks arising from business operations and transformation programmes. The transformation aspect to the role offers the opportunity to gain experience working with cross-functional teams throughout the group such as Group Technology, Security, Legal, Enterprise Risk, People Team, Group Companies and external third-party providers. Your responsibilities will include: Assist the Data Protection Officer in conducting Data Protection Impact Assessments for change programmes and new initiatives Help maintain and update Records of Processing Activities (ROPA) across Group Companies Assist in the review of Data Protection operational processes and identify areas for improvement Support risk owners in identifying and applying controls to manage data protection risks. Contribute to the development and maturity of the Data Protection programme and Project workstream alongside team colleagues Support data protection training initiatives and awareness programmes Support supplier and third-party due diligence reviews We are looking for someone who has: Minimum 2-3 years' experience in a data protection, compliance or privacy related role Experience working in a commercial environment (B2C or B2B) Understanding of data protection principles and regulatory requirements Competently complete Data Protection Impact Assessments and Record of Processing Activities. Good understanding of technology and data flows in business contexts Strong analytical and problem solving skills Good written and verbal communication skills Ability to explain complex privacy concepts in simple terms Strong organisational and time management skills Good understanding of UK GDPR and Data Protection Act 2018 Knowledge of PECR requirements Understanding of privacy by design principles Awareness of individual rights under data protection law Connells Group UK is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, transgender status, religion or belief, marital status or pregnancy and maternity.
Data Protection Officer - Fractional (1-2 days per week)
Intent HQ
About Intent HQ Recognised by the Financial Times as one of the FT1000 Fast growing companies in Europe in 2022 and 2023, Intent HQ is a leader and innovator in Customer AI Analytics and Data Science with a blue chip international enterprise customer base and solid financial backing from our investors. Our mission is to become the world's preeminent Customer Intent platform by bringing together privacy first signals intelligence, proprietary behavioural AI/ML analytics & uniquely accessible enterprise insights into a single platform that organisations will use to build more genuine, sustainable and profitable relationships with their customers. Our initial focus solved problems for clients in the telecommunications sector, including Verizon & Orange. We have since expanded into the Financial Services, Retail and Social Media sectors including HB Reavis and Zurich Group as clients to name a few. Our clients typically have tens of millions of customers and billions of interaction events each day. We have developed our platform to handle data at this enormous scale efficiently. Intent HQ is unique because we've focused on understanding customer interaction data. We do the hard specialised work leaving our clients free to focus on integrating the insight into their business, with one Client seeing an additional £26m annual revenue as a result of using our products and services. Intent HQ is an exciting place to work, we are very proud to have made our debut on the FT1000 Fastest Growing Companies in Europe for 2022! We have a talented team of circa 100 people (and growing!) based in & around London, Barcelona, Lisbon and New York & Tel Aviv, collectively speaking over 15 languages! Why Join Us: Exciting Work Environment: Work on cutting edge technology at the intersection of AI and data analytics. Impactful Role: Directly influence the company's legal and risk management strategies. Growth Opportunities: Advance your career in a fast paced, innovative industry. Job Title: Data Protection Officer (DPO) Location: Remote, with occasional travel to Intent HQ offices or client sites as required. Engagement Type: Fractional Dial Up/Dial down - Expectation is 1 2 days per week on average. What we are looking for: We are seeking a Fractional Data Protection Officer (DPO) to act as the independent data protection lead for Intent HQ. This role ensures that our data handling activities comply with applicable data protection laws (including GDPR, UK DPA 2018, and other relevant regulations), while also fostering a culture of privacy by design across the company. What you will do: Regulatory Compliance & Oversight Serve as the primary contact point for data protection authorities (e.g., ICO, CNIL) and handle regulatory communications. Monitor compliance with GDPR, UK DPA, and other applicable data protection laws in all jurisdictions where Intent HQ operates. Maintain and oversee the company's Data Protection Impact Assessments (DPIAs) and Legitimate Interest Assessments (LIAs). Policy & Governance Review, update, and implement data protection policies, standards, and procedures across the organisation. Ensure Records of Processing Activities (RoPA) are accurate, up to date, and aligned with regulatory requirements. Advise on and review data processing agreements with clients, partners, and suppliers. Privacy by Design & Risk Management Provide input into product development and data initiatives to ensure privacy by design principles are embedded from the outset. Identify and assess privacy risks in business processes, products, and services, and recommend mitigation strategies. Oversee personal data breach management, including investigation, reporting, and remediation. Training & Awareness Develop and deliver privacy and data protection training to employees and contractors. Promote a culture of privacy awareness and accountability throughout the company. What you need: Essential: Proven experience as a Data Protection Officer or equivalent role, ideally in a technology or data driven business. Deep understanding of GDPR, UK DPA 2018, and other relevant global privacy regulations. Strong experience with data protection governance, DPIAs, and vendor risk management. Excellent communication skills with the ability to engage with senior leadership, technical teams, and regulators. Ability to work independently in a fractional capacity, with flexibility to support business needs on-demand. Desirable: CIPP/E, CIPM, or other recognised privacy certification. Experience in AI, big data, or telecoms data environments. Familiarity with ISO 27701, ISO 27001, and other information security frameworks. Engagement Details Time Commitment: Estimated 2-4 days per month, with flexibility for additional hours during audits, product launches, or incidents. Contract Length: Initial 12 month engagement, with option to renew. Reporting Line: Reports to the COO. Why Join Intent HQ? Shape privacy governance in a cutting edge AI driven company. Work with a global team passionate about ethical and compliant data use. Flexible fractional arrangement that values expertise over hours. Longer term opportunity potential for ongoing collaboration. Intent HQ is an equal opportunities employer with an ethos of commitment to promoting and practicing diversity, equality and inclusion at work. At IHQ, different perspectives, ideas and experiences are valued and respected, with fair and equal opportunities provided for all. Our diversity and inclusion efforts have been recognised with us winning two consecutive Women in Tech UK Awards, under the Best Tech Employer ( Employees') category & being shortlisted for the Best Employer for Parental Support award - an achievement we are very proud of. This year in 2024 we have been nominated again for the Best Tech Employer and our in house recruiter has been shortlisted for the Best In house Recruiter award! Working for Intent HQ, you have the opportunity to work with cutting edge technology in an environment where you are encouraged to think and act outside traditional methods. We are a growing business with a flat structure meaning everyone is visible and able to make an impact, not just in their own role, but across the business on a daily basis. We promote a collaborative, innovative and sociable culture, oriented towards performance and competitive advantage. Our DNA is made up of flexibility to all staff with a family friendly approach and focus on personal development. We have high expectations and pride ourselves on our cultural standards. Benefits (Depending on employment Status) Flexible working Free breakfast daily (when in the office) 26 days holiday (increasing with service) Pension scheme Income Protection with Employee Assistance Programme Life Assurance Oliva Mental Health platform and counselling Higher than statutory maternity/paternity benefits Work socials Wellbeing programme Cycle to work scheme Training opportunities
02/06/2026
Full time
About Intent HQ Recognised by the Financial Times as one of the FT1000 Fast growing companies in Europe in 2022 and 2023, Intent HQ is a leader and innovator in Customer AI Analytics and Data Science with a blue chip international enterprise customer base and solid financial backing from our investors. Our mission is to become the world's preeminent Customer Intent platform by bringing together privacy first signals intelligence, proprietary behavioural AI/ML analytics & uniquely accessible enterprise insights into a single platform that organisations will use to build more genuine, sustainable and profitable relationships with their customers. Our initial focus solved problems for clients in the telecommunications sector, including Verizon & Orange. We have since expanded into the Financial Services, Retail and Social Media sectors including HB Reavis and Zurich Group as clients to name a few. Our clients typically have tens of millions of customers and billions of interaction events each day. We have developed our platform to handle data at this enormous scale efficiently. Intent HQ is unique because we've focused on understanding customer interaction data. We do the hard specialised work leaving our clients free to focus on integrating the insight into their business, with one Client seeing an additional £26m annual revenue as a result of using our products and services. Intent HQ is an exciting place to work, we are very proud to have made our debut on the FT1000 Fastest Growing Companies in Europe for 2022! We have a talented team of circa 100 people (and growing!) based in & around London, Barcelona, Lisbon and New York & Tel Aviv, collectively speaking over 15 languages! Why Join Us: Exciting Work Environment: Work on cutting edge technology at the intersection of AI and data analytics. Impactful Role: Directly influence the company's legal and risk management strategies. Growth Opportunities: Advance your career in a fast paced, innovative industry. Job Title: Data Protection Officer (DPO) Location: Remote, with occasional travel to Intent HQ offices or client sites as required. Engagement Type: Fractional Dial Up/Dial down - Expectation is 1 2 days per week on average. What we are looking for: We are seeking a Fractional Data Protection Officer (DPO) to act as the independent data protection lead for Intent HQ. This role ensures that our data handling activities comply with applicable data protection laws (including GDPR, UK DPA 2018, and other relevant regulations), while also fostering a culture of privacy by design across the company. What you will do: Regulatory Compliance & Oversight Serve as the primary contact point for data protection authorities (e.g., ICO, CNIL) and handle regulatory communications. Monitor compliance with GDPR, UK DPA, and other applicable data protection laws in all jurisdictions where Intent HQ operates. Maintain and oversee the company's Data Protection Impact Assessments (DPIAs) and Legitimate Interest Assessments (LIAs). Policy & Governance Review, update, and implement data protection policies, standards, and procedures across the organisation. Ensure Records of Processing Activities (RoPA) are accurate, up to date, and aligned with regulatory requirements. Advise on and review data processing agreements with clients, partners, and suppliers. Privacy by Design & Risk Management Provide input into product development and data initiatives to ensure privacy by design principles are embedded from the outset. Identify and assess privacy risks in business processes, products, and services, and recommend mitigation strategies. Oversee personal data breach management, including investigation, reporting, and remediation. Training & Awareness Develop and deliver privacy and data protection training to employees and contractors. Promote a culture of privacy awareness and accountability throughout the company. What you need: Essential: Proven experience as a Data Protection Officer or equivalent role, ideally in a technology or data driven business. Deep understanding of GDPR, UK DPA 2018, and other relevant global privacy regulations. Strong experience with data protection governance, DPIAs, and vendor risk management. Excellent communication skills with the ability to engage with senior leadership, technical teams, and regulators. Ability to work independently in a fractional capacity, with flexibility to support business needs on-demand. Desirable: CIPP/E, CIPM, or other recognised privacy certification. Experience in AI, big data, or telecoms data environments. Familiarity with ISO 27701, ISO 27001, and other information security frameworks. Engagement Details Time Commitment: Estimated 2-4 days per month, with flexibility for additional hours during audits, product launches, or incidents. Contract Length: Initial 12 month engagement, with option to renew. Reporting Line: Reports to the COO. Why Join Intent HQ? Shape privacy governance in a cutting edge AI driven company. Work with a global team passionate about ethical and compliant data use. Flexible fractional arrangement that values expertise over hours. Longer term opportunity potential for ongoing collaboration. Intent HQ is an equal opportunities employer with an ethos of commitment to promoting and practicing diversity, equality and inclusion at work. At IHQ, different perspectives, ideas and experiences are valued and respected, with fair and equal opportunities provided for all. Our diversity and inclusion efforts have been recognised with us winning two consecutive Women in Tech UK Awards, under the Best Tech Employer ( Employees') category & being shortlisted for the Best Employer for Parental Support award - an achievement we are very proud of. This year in 2024 we have been nominated again for the Best Tech Employer and our in house recruiter has been shortlisted for the Best In house Recruiter award! Working for Intent HQ, you have the opportunity to work with cutting edge technology in an environment where you are encouraged to think and act outside traditional methods. We are a growing business with a flat structure meaning everyone is visible and able to make an impact, not just in their own role, but across the business on a daily basis. We promote a collaborative, innovative and sociable culture, oriented towards performance and competitive advantage. Our DNA is made up of flexibility to all staff with a family friendly approach and focus on personal development. We have high expectations and pride ourselves on our cultural standards. Benefits (Depending on employment Status) Flexible working Free breakfast daily (when in the office) 26 days holiday (increasing with service) Pension scheme Income Protection with Employee Assistance Programme Life Assurance Oliva Mental Health platform and counselling Higher than statutory maternity/paternity benefits Work socials Wellbeing programme Cycle to work scheme Training opportunities
Group Head of Data Protection
First Central Services UK Ltd Haywards Heath, Sussex
We're 1st Central, a market leading insurance company utilising smart data and technology at pace. Rapid growth has been based on giving our 1.4 million customers exactly what they want: great value insurance with an excellent service. And that's the same for our colleagues too; we won Insurance Employer of the Year at the British Insurance Awards 2024 and our Glassdoor score is pretty mega too! At 1st Central, data sits at the heart of everything we do, so protecting it is both a legal obligation and a core responsibility. Role Overview Group Head of Data Protection (DPO) - senior voice on all things data protection, advising the Executive, Boards and senior leaders, setting the strategic direction for privacy across the Group and leading a high performing Privacy team. Key Responsibilities Build and lead a high performing Privacy team, creating a clear vision and building strong relationships across the Group. Advising the Executive, Boards and senior stakeholders on privacy strategy and governance. Define, scope, gain Audit Committee approval for, and deliver the Group's data privacy programme. Implement the Group's Data Protection Strategy and oversee compliance across all Group entities. Report to the Group's Risk Committees on compliance position, key risks, incidents and matters requiring Board decisions. Act as Data Protection Officer for all Group entities where required, and be owner of the Group Data Protection Policy. Supervise the Privacy Team's completion of data protection impact assessments and develop and execute relevant project plans. Manage an awareness raising and training programme to foster a data privacy culture. Review Data Protection clauses in client and supplier contracts and lead incident response and breach notification procedures. Serve as contact point with Data Protection Authorities and data subjects, advising on requests and response. Promote a culture of awareness of data security throughout the company. Maintain department risk registers, control matrices and attestations, and ensure compliance with Company policies, values and relevant regulations. Required Experience & Qualifications Significant experience as a DPO or in a similar compliance role. Expert knowledge of data privacy legislation (GDPR, Data Protection Act 2018, PECR, etc.) and information security standards (ISO27001). Proven track record in leading data protection issues at a senior level. Strong project management experience and ability to interface with data protection regulators. Experience designing and implementing a data protection strategy. Degree level education; IAPP CIPP/E, CIPM or equivalent data privacy qualification preferred. Qualified lawyer and familiarity with UK, Gibraltarian, Guernsey and European data protection laws and practices. Key Skills & Competencies Knowledge and application of FCA requirements, including Consumer Duty. Excellent analytical, communication, influencing and stakeholder management skills. Strong analytical and organisational skills; ability to prioritise and manage multiple tasks and projects. Ability to work independently with integrity and discretion. Team leadership and management capabilities. Positive, enthusiastic, proactive, resilient and self motivated attitude. EEO Statement: 1st Central is an equal opportunity employer and welcomes applications from all backgrounds.
01/06/2026
Full time
We're 1st Central, a market leading insurance company utilising smart data and technology at pace. Rapid growth has been based on giving our 1.4 million customers exactly what they want: great value insurance with an excellent service. And that's the same for our colleagues too; we won Insurance Employer of the Year at the British Insurance Awards 2024 and our Glassdoor score is pretty mega too! At 1st Central, data sits at the heart of everything we do, so protecting it is both a legal obligation and a core responsibility. Role Overview Group Head of Data Protection (DPO) - senior voice on all things data protection, advising the Executive, Boards and senior leaders, setting the strategic direction for privacy across the Group and leading a high performing Privacy team. Key Responsibilities Build and lead a high performing Privacy team, creating a clear vision and building strong relationships across the Group. Advising the Executive, Boards and senior stakeholders on privacy strategy and governance. Define, scope, gain Audit Committee approval for, and deliver the Group's data privacy programme. Implement the Group's Data Protection Strategy and oversee compliance across all Group entities. Report to the Group's Risk Committees on compliance position, key risks, incidents and matters requiring Board decisions. Act as Data Protection Officer for all Group entities where required, and be owner of the Group Data Protection Policy. Supervise the Privacy Team's completion of data protection impact assessments and develop and execute relevant project plans. Manage an awareness raising and training programme to foster a data privacy culture. Review Data Protection clauses in client and supplier contracts and lead incident response and breach notification procedures. Serve as contact point with Data Protection Authorities and data subjects, advising on requests and response. Promote a culture of awareness of data security throughout the company. Maintain department risk registers, control matrices and attestations, and ensure compliance with Company policies, values and relevant regulations. Required Experience & Qualifications Significant experience as a DPO or in a similar compliance role. Expert knowledge of data privacy legislation (GDPR, Data Protection Act 2018, PECR, etc.) and information security standards (ISO27001). Proven track record in leading data protection issues at a senior level. Strong project management experience and ability to interface with data protection regulators. Experience designing and implementing a data protection strategy. Degree level education; IAPP CIPP/E, CIPM or equivalent data privacy qualification preferred. Qualified lawyer and familiarity with UK, Gibraltarian, Guernsey and European data protection laws and practices. Key Skills & Competencies Knowledge and application of FCA requirements, including Consumer Duty. Excellent analytical, communication, influencing and stakeholder management skills. Strong analytical and organisational skills; ability to prioritise and manage multiple tasks and projects. Ability to work independently with integrity and discretion. Team leadership and management capabilities. Positive, enthusiastic, proactive, resilient and self motivated attitude. EEO Statement: 1st Central is an equal opportunity employer and welcomes applications from all backgrounds.
AI Engineer
JCDecaux UK Ltd City Of Westminster, London
The AI Engineer designs, builds and operates scalable, secure AI solutions for JCDecaux UK, with a focus on Copilot implementations and agentic AI that augment users and automate complex workflows. The role converts business and data requirements into production grade AI assistants, copilots and intelligent agents embedded into products, processes and decision making. Working closely with technology and business teams, the AI Engineer oversees solutions from experimentation through to deployment, optimisation and support, ensuring they integrate with JCDecaux UK's digital, data and technology landscape. The role supports JCDecaux UK's vision and mission by using advanced AI to pioneer real world communications and enhance client and consumer understanding. Reports to: Chief Innovation and Technology Officer What you'll be doing Design and implement AI copilots and agentic AI solutions that assist users, automate multi step tasks and orchestrate calls to internal tools and systems. Translate business use cases into Copilot scenarios, prompt flows, connectors and agent behaviours, defining secure, scalable solution architectures. Build and maintain AI components (e.g. RAG, classification, recommendation, summarisation) using Python and modern ML/LLM frameworks. Implement end to end MLOps pipelines for development, testing, deployment and monitoring of Copilot and AI solutions, and deploy them into production environments (e.g. Microsoft 365 Copilot, Azure, internal apps). Integrate AI agents with enterprise systems (e.g. CRM, ERP, scheduling, inventory, data platforms) via APIs and microservices. Collaborate with data engineers to design data pipelines, retrieval layers (vector stores, search indices) and large scale processing using big data frameworks. Implement monitoring, logging and analytics to track usage, performance, quality and user satisfaction, and lead optimisation to address issues such as drift, hallucinations and latency. Contribute to AI engineering standards, guardrails and best practices, and support incident investigation and resolution with Service Delivery. Ensure solutions comply with security, privacy, compliance and ethical AI requirements, including access controls, data protection and risk assessments. Share knowledge and mentor colleagues to build AI literacy and capability across IT and the wider business. A little bit about you Degree in Computer Science, Data Science, Software Engineering, Mathematics, Engineering or a closely related field. Previous experience in AI, data science, ML engineering or advanced analytics. Hands on experience designing, building and deploying Copilot and/or agentic AI solutions (e.g. Microsoft 365 Copilot extensions, Azure OpenAI based copilots, custom AI assistants/agents). Strong proficiency in Python for AI/ML development, including use of common ML and data libraries (e.g. TensorFlow/PyTorch, scikit learn, pandas, NumPy). Proven experience integrating AI services with enterprise systems via APIs and event driven architectures. Practical experience with LLMs, prompt engineering, RAG and tools/plugins for agents and copilots. Familiarity with cloud platforms (ideally Azure) and AI services (e.g. Azure OpenAI, Azure Machine Learning, or equivalents). Experience working in agile, cross functional delivery teams. Postgraduate study or certifications in AI, machine learning or data science. Cloud certifications (e.g. Azure, GCP, AWS) and relevant AI/ML credentials. Experience with big data and distributed computing (e.g. Spark, Databricks, Hadoop or cloud native alternatives). Experience with containerisation and DevOps/MLOps tools (e.g. Docker, Kubernetes, Git, CI/CD, MLflow, Airflow). Strong experience with data engineering concepts (ETL/ELT, data integration, warehousing, vector databases/search). We are committed to equal employment opportunities regardless of race, colour, ancestry, religion, national origin, sexual orientation, age, citizenship, marital status, disability or gender identity.
01/06/2026
Full time
The AI Engineer designs, builds and operates scalable, secure AI solutions for JCDecaux UK, with a focus on Copilot implementations and agentic AI that augment users and automate complex workflows. The role converts business and data requirements into production grade AI assistants, copilots and intelligent agents embedded into products, processes and decision making. Working closely with technology and business teams, the AI Engineer oversees solutions from experimentation through to deployment, optimisation and support, ensuring they integrate with JCDecaux UK's digital, data and technology landscape. The role supports JCDecaux UK's vision and mission by using advanced AI to pioneer real world communications and enhance client and consumer understanding. Reports to: Chief Innovation and Technology Officer What you'll be doing Design and implement AI copilots and agentic AI solutions that assist users, automate multi step tasks and orchestrate calls to internal tools and systems. Translate business use cases into Copilot scenarios, prompt flows, connectors and agent behaviours, defining secure, scalable solution architectures. Build and maintain AI components (e.g. RAG, classification, recommendation, summarisation) using Python and modern ML/LLM frameworks. Implement end to end MLOps pipelines for development, testing, deployment and monitoring of Copilot and AI solutions, and deploy them into production environments (e.g. Microsoft 365 Copilot, Azure, internal apps). Integrate AI agents with enterprise systems (e.g. CRM, ERP, scheduling, inventory, data platforms) via APIs and microservices. Collaborate with data engineers to design data pipelines, retrieval layers (vector stores, search indices) and large scale processing using big data frameworks. Implement monitoring, logging and analytics to track usage, performance, quality and user satisfaction, and lead optimisation to address issues such as drift, hallucinations and latency. Contribute to AI engineering standards, guardrails and best practices, and support incident investigation and resolution with Service Delivery. Ensure solutions comply with security, privacy, compliance and ethical AI requirements, including access controls, data protection and risk assessments. Share knowledge and mentor colleagues to build AI literacy and capability across IT and the wider business. A little bit about you Degree in Computer Science, Data Science, Software Engineering, Mathematics, Engineering or a closely related field. Previous experience in AI, data science, ML engineering or advanced analytics. Hands on experience designing, building and deploying Copilot and/or agentic AI solutions (e.g. Microsoft 365 Copilot extensions, Azure OpenAI based copilots, custom AI assistants/agents). Strong proficiency in Python for AI/ML development, including use of common ML and data libraries (e.g. TensorFlow/PyTorch, scikit learn, pandas, NumPy). Proven experience integrating AI services with enterprise systems via APIs and event driven architectures. Practical experience with LLMs, prompt engineering, RAG and tools/plugins for agents and copilots. Familiarity with cloud platforms (ideally Azure) and AI services (e.g. Azure OpenAI, Azure Machine Learning, or equivalents). Experience working in agile, cross functional delivery teams. Postgraduate study or certifications in AI, machine learning or data science. Cloud certifications (e.g. Azure, GCP, AWS) and relevant AI/ML credentials. Experience with big data and distributed computing (e.g. Spark, Databricks, Hadoop or cloud native alternatives). Experience with containerisation and DevOps/MLOps tools (e.g. Docker, Kubernetes, Git, CI/CD, MLflow, Airflow). Strong experience with data engineering concepts (ETL/ELT, data integration, warehousing, vector databases/search). We are committed to equal employment opportunities regardless of race, colour, ancestry, religion, national origin, sexual orientation, age, citizenship, marital status, disability or gender identity.
Benchmark Capital Limited
Data Protection Officer
Benchmark Capital Limited Horsham, Sussex
Data Protection Officer Department: Legal Employment Type: Part Time Location: Horsham Reporting To: Alexandra Gladwin Description Benchmark is appointing a Data Protection Officer (DPO) to oversee and maintain the effectiveness of its data protection framework across its investment platform, financial planning businesses, and network. This is a senior, independent role reporting to the Head of Legal, providing challenge and advice to senior stakeholders. You will ensure personal data is handled in line with UK GDPR and associated regulation, while supporting the business to manage data risk in a practical, commercial way. This is a part-time position (3 days per week) with flexibility on working pattern. What you'll do Act as Benchmark's appointed DPO, maintaining independence and providing oversight of data protection compliance Monitor and assess compliance with UK GDPR, DPA 2018, and PECR across the group Provide clear, risk-based advice on new initiatives, data use, and data sharing arrangements Oversee and approve DPIAs and LIAs, ensuring risks are identified and mitigated Maintain oversight of Records of Processing Activities (ROPA) Oversee data protection requirements across third-party and outsourcing arrangements, including international transfers Act as escalation point for personal data breaches, including assessment, reporting, and remediation Oversee processes for handling data subject rights requests Lead training and promote a strong, risk-aware data protection culture Act as the primary contact with the ICO and manage regulatory engagement The knowledge, experience and qualifications you need Essential Significant experience in data protection or privacy within a regulated environment Experience operating at senior level, DPO, Head of, or equivalent Strong working knowledge of UK GDPR, DPA 2018, and PECR Ability to provide independent challenge to senior stakeholders Clear, concise communication skills with strong written reporting capability Analytical and risk-focused approach with sound judgement Desirable Experience within wealth management, financial advice, platforms, or AR models Understanding of data flows within regulated financial services distribution Knowledge of FCA Handbook requirements, including Consumer Duty, SYSC, and PROD Experience with outsourcing and operational resilience frameworks Qualifications Relevant privacy qualification preferred (e.g. CIPP/E, CIPM or equivalent) Legal or compliance background beneficial but not essential The base You'll be based at the Benchmark Head Office, within our Broadlands Business Campus near Horsham in West Sussex but will need to be present across our other offices, including the main Schroders headquarters in London. It has high standards and international reputation, without being in the city: a big, countryside campus means life will feel a little different. We support our offices by using cutting edge software and hardware and our spacious campus facilities mean there's a great working environment for the team. With an on-site restaurant, coffee shop and gym, our campus has much to offer. And commuters can relax on our dedicated regular shuttle bus to and from Horsham's main line train station.
01/06/2026
Full time
Data Protection Officer Department: Legal Employment Type: Part Time Location: Horsham Reporting To: Alexandra Gladwin Description Benchmark is appointing a Data Protection Officer (DPO) to oversee and maintain the effectiveness of its data protection framework across its investment platform, financial planning businesses, and network. This is a senior, independent role reporting to the Head of Legal, providing challenge and advice to senior stakeholders. You will ensure personal data is handled in line with UK GDPR and associated regulation, while supporting the business to manage data risk in a practical, commercial way. This is a part-time position (3 days per week) with flexibility on working pattern. What you'll do Act as Benchmark's appointed DPO, maintaining independence and providing oversight of data protection compliance Monitor and assess compliance with UK GDPR, DPA 2018, and PECR across the group Provide clear, risk-based advice on new initiatives, data use, and data sharing arrangements Oversee and approve DPIAs and LIAs, ensuring risks are identified and mitigated Maintain oversight of Records of Processing Activities (ROPA) Oversee data protection requirements across third-party and outsourcing arrangements, including international transfers Act as escalation point for personal data breaches, including assessment, reporting, and remediation Oversee processes for handling data subject rights requests Lead training and promote a strong, risk-aware data protection culture Act as the primary contact with the ICO and manage regulatory engagement The knowledge, experience and qualifications you need Essential Significant experience in data protection or privacy within a regulated environment Experience operating at senior level, DPO, Head of, or equivalent Strong working knowledge of UK GDPR, DPA 2018, and PECR Ability to provide independent challenge to senior stakeholders Clear, concise communication skills with strong written reporting capability Analytical and risk-focused approach with sound judgement Desirable Experience within wealth management, financial advice, platforms, or AR models Understanding of data flows within regulated financial services distribution Knowledge of FCA Handbook requirements, including Consumer Duty, SYSC, and PROD Experience with outsourcing and operational resilience frameworks Qualifications Relevant privacy qualification preferred (e.g. CIPP/E, CIPM or equivalent) Legal or compliance background beneficial but not essential The base You'll be based at the Benchmark Head Office, within our Broadlands Business Campus near Horsham in West Sussex but will need to be present across our other offices, including the main Schroders headquarters in London. It has high standards and international reputation, without being in the city: a big, countryside campus means life will feel a little different. We support our offices by using cutting edge software and hardware and our spacious campus facilities mean there's a great working environment for the team. With an on-site restaurant, coffee shop and gym, our campus has much to offer. And commuters can relax on our dedicated regular shuttle bus to and from Horsham's main line train station.
Card Factory
Data Protection Officer
Card Factory Newton Hill, Yorkshire
Data Protection Officer - cardfactory Salary from £55,000 + benefits package. Join us as the UK & Ireland Data Protection Officer and play a pivotal role in shaping and safeguarding the privacy framework across cardfactory, and Garlanna. In this influential position, you'll act as a trusted, independent advisor-ensuring our organisation meets its obligations under UK GDPR, EU GDPR, PECR, ePrivacy and related legislation. You'll lead the way in embedding a strong culture of privacy by design, guiding stakeholders at all levels, and championing accountability across our UK and Ireland operations. As the primary contact for regulators, data subjects and internal teams, you'll oversee compliance, identify and mitigate privacy risks, and ensure robust policies and controls are in place. If you're ready to make a significant impact by driving a proactive, risk aware approach to data protection, we'd love to hear from you. At cardfactory, we believe in smart working. That means you'll spend around two days a week at our Wakefield support centre, with the flexibility to work from home the rest of the time. What you'll do: Data Protection Strategy: develop, implement and maintain a comprehensive Data Protection Strategy aligned to organisational goals and legislation; own and update the Record of Processing Activities (ROPA). Policies & Documentation: maintain all data protection policies, procedures and documentation, including DPIAs, privacy notices, breach logs and SAR logs; support development of the Information Security Management System. Compliance Management: lead audits and compliance activities to meet UK/EU GDPR, PECR and other regulatory requirements; run the GDPR and data privacy steering committee. Monitoring & Audit: conduct ongoing assessments and internal audits to ensure adherence to data protection standards; review contracts to ensure appropriate legal and technical safeguards. Regulatory Liaison: act as the primary contact for the ICO, DPC and other regulatory bodies, managing enquiries, investigations and reporting duties. Incident & Breach Management: lead breach assessments, investigations and reporting, ensuring effective mitigation, documentation and communication. Training & Awareness: design and deliver training initiatives, keeping colleagues informed on data protection requirements, risks and emerging trends. Leadership: advise senior leaders and business units on privacy risks and compliance; provide leadership and mentoring to the team. Supplier Risk Management: oversee governance and risk assessments for third party suppliers to ensure compliance and security standards are met. Collaboration & Consultancy: act as the first point of contact for data privacy queries; work cross functionally to ensure a consistent, business aligned approach to data protection. Risk Management: identify, assess and mitigate data privacy risks, ensuring clear reporting to the appropriate stakeholders. What you'll need: Strong risk management capability and ability to deliver practical, commercially aware solutions. Strong influencing skills (soft / hard / active listening etc.) - and the ability to blend and adapt them to the situation and intended audience. Ability to implement a holistic security program of strategy, policies, processes and technologies. Being able to balance legislative requirements taking into consideration a commercial viewpoint. People management skills to direct and manage a small team of data privacy specialists. Substantial experience in a DPO role, managing privacy operations complaints with the GDPR and PECR. Experience leading, developing and managing teams. Familiarity with Microsoft Purview, One Trust and other similar DSAR management and tooling. Experience working in fast paced and complex environments, working across multiple business units. Experience with ISO 27001, ISO 27701, ISAE 3000/3402 or other information security standards and frameworks.
01/06/2026
Full time
Data Protection Officer - cardfactory Salary from £55,000 + benefits package. Join us as the UK & Ireland Data Protection Officer and play a pivotal role in shaping and safeguarding the privacy framework across cardfactory, and Garlanna. In this influential position, you'll act as a trusted, independent advisor-ensuring our organisation meets its obligations under UK GDPR, EU GDPR, PECR, ePrivacy and related legislation. You'll lead the way in embedding a strong culture of privacy by design, guiding stakeholders at all levels, and championing accountability across our UK and Ireland operations. As the primary contact for regulators, data subjects and internal teams, you'll oversee compliance, identify and mitigate privacy risks, and ensure robust policies and controls are in place. If you're ready to make a significant impact by driving a proactive, risk aware approach to data protection, we'd love to hear from you. At cardfactory, we believe in smart working. That means you'll spend around two days a week at our Wakefield support centre, with the flexibility to work from home the rest of the time. What you'll do: Data Protection Strategy: develop, implement and maintain a comprehensive Data Protection Strategy aligned to organisational goals and legislation; own and update the Record of Processing Activities (ROPA). Policies & Documentation: maintain all data protection policies, procedures and documentation, including DPIAs, privacy notices, breach logs and SAR logs; support development of the Information Security Management System. Compliance Management: lead audits and compliance activities to meet UK/EU GDPR, PECR and other regulatory requirements; run the GDPR and data privacy steering committee. Monitoring & Audit: conduct ongoing assessments and internal audits to ensure adherence to data protection standards; review contracts to ensure appropriate legal and technical safeguards. Regulatory Liaison: act as the primary contact for the ICO, DPC and other regulatory bodies, managing enquiries, investigations and reporting duties. Incident & Breach Management: lead breach assessments, investigations and reporting, ensuring effective mitigation, documentation and communication. Training & Awareness: design and deliver training initiatives, keeping colleagues informed on data protection requirements, risks and emerging trends. Leadership: advise senior leaders and business units on privacy risks and compliance; provide leadership and mentoring to the team. Supplier Risk Management: oversee governance and risk assessments for third party suppliers to ensure compliance and security standards are met. Collaboration & Consultancy: act as the first point of contact for data privacy queries; work cross functionally to ensure a consistent, business aligned approach to data protection. Risk Management: identify, assess and mitigate data privacy risks, ensuring clear reporting to the appropriate stakeholders. What you'll need: Strong risk management capability and ability to deliver practical, commercially aware solutions. Strong influencing skills (soft / hard / active listening etc.) - and the ability to blend and adapt them to the situation and intended audience. Ability to implement a holistic security program of strategy, policies, processes and technologies. Being able to balance legislative requirements taking into consideration a commercial viewpoint. People management skills to direct and manage a small team of data privacy specialists. Substantial experience in a DPO role, managing privacy operations complaints with the GDPR and PECR. Experience leading, developing and managing teams. Familiarity with Microsoft Purview, One Trust and other similar DSAR management and tooling. Experience working in fast paced and complex environments, working across multiple business units. Experience with ISO 27001, ISO 27701, ISAE 3000/3402 or other information security standards and frameworks.
The Focusrite Group
Information Security & Data Protection Manager
The Focusrite Group High Wycombe, Buckinghamshire
Information Security & Data Protection Manager Based: Remote (UK)/High Wycombe/London (N7)/Hybrid Term: Permanent, Full time Reporting to: Chief Information Officer (CIO) Salary: £60k - £85k pa + excellent benefits The Role We're looking for an Information Security Compliance Specialist to take ownership of our Information Security, Data Protection, and AI Governance programmes across the Focusrite Group. You will be the operational owner of our Information Security and Data Protection (ISDP) framework informed by ISO 27001 (ISMS), ISO 27701 (PIMS), Cyber Essentials and NIST CSF keeping us aligned to those standards and ready for certification and audit. Working alongside development, IT, and business teams, you will advise on security and privacy requirements for new and changing systems, ensuring appropriate controls are designed in, evidenced, and verified after implementation. You will also own the Group's response to emerging risks in AI, translating evolving regulation (EU AI Act, UK AI principles, ICO guidance) into practical governance. About you Several years' experience in Information Security and Data Protection, with a good understanding of IT systems, web operations, cloud platforms, and secure coding practices (including OWASP). Comfortable engaging at all levels of the organisation and externally, with the gravitas to influence security and privacy outcomes and reduce the impact of change. The position requires providing support and advice to all parts of the Group on Information Security and Data Protection. You will be responsible for Information Security Systems Framework & advisory: own the Information Security and Data Protection Framework and its documentation, and advise IT, development, and business teams on security requirements Tools & supplier assurance: run the Business Approved Tools process (including assessment of AI tools, vendors, and use cases), own designated Information Security tools, and conduct supplier audit assessments Certification & standards: own certification readiness for Cyber Essentials and lead new certification efforts as the business requires Threats, incidents & testing: monitor cyber threats and translate them for the business, own the incident management process (including phishing response and simulation exercises), and manage vulnerability scans and penetration testing (including external Red/Purple/Blue Team engagements) Risk & resilience: conduct risk assessments across products, systems, and processes; own the Information Security and Data Protection risk register, contributing to the Group Risk Management process; and maintain and test the Business Continuity Plan (BCP) AI Governance: own the AI Governance framework, AI system inventory, and alignment with ISO 42001, NIST AI RMF, and the EU AI Act where appropriate Data Protection compliance primarily UK GDPR and Data Protection Act, EU GDPR, and US state privacy laws (including CCPA/CPRA) Data subject rights & assessments: handle Data Subject Rights requests (Subject Access, erasure, rectification, restriction, objection, portability, and rights relating to automated decision-making) and run Data Protection Impact Assessments (DPIAs) Records & registers: maintain the Records of Processing Activities (RoPA) under Article 30 for controller and processor activities, the lawful basis register, consent records, and Legitimate Interest Assessments (LIAs) Notices, cookies & marketing: operate Privacy Notices and Cookie Tools (OneTrust), and advise on PECR and e-privacy compliance including direct marketing and electronic communications Privacy by Design & training: help product managers and developers embed Privacy by Design, and design and deliver Data Protection training and awareness across the Group Retention & breach management: own the retention schedule and deletion/anonymisation processes, and own personal data breach handling (including detection triage, 72 hour ICO/EU supervisory authority notification, data subject notification where required, and the breach register) Third parties & international transfers: manage processor and sub processor governance (Article 28 due diligence, Data Processing Agreements, processor register) and international data transfers (SCCs, the UK IDTA/Addendum, and Transfer Risk Assessments) Change Management review and provide security and data protection sign off on changes to systems, products, and processes participate in the Change Advisory Board (CAB) and ensure security and privacy risks are assessed before changes are approved own change management procedures relating to Information Security and Data Protection, ensuring evidence is captured for audit ensure security and privacy requirements are embedded in the SDLC and release processes, working with development and operational teams track and report on the security impact of significant business, technology, and organisational change initiatives Compliance generate monthly compliance and activity reports and other reports as required by senior management Internal Audit reviewing Financial System compliance activities performing Internal Information Security Audits performing Internal Data Protection Audits External audit be the key contact for any IT / Data Protection related audits by external bodies, ensuring requested data is supplied, complete, and accurate take ownership of any related audit issues generate audit support documents You will be expected to keep up to date with developments in the security, privacy, and AI regulatory landscape, translating these into practical actions for the Group. We understand that not all candidates will have in depth experience of all these elements, so we welcome applications from candidates who meet most of the criteria and have a desire to learn the rest. Please provide details in your covering letter of additional training requirements / certifications in progress etc. Benefits Flexible/hybrid working, company pension, life insurance, private healthcare, Health Cash Plan, enhanced maternity and paternity pay, employee purchase scheme, group bonus scheme, company music events, offsite company parties and free lunch in the canteen. We arrange company training sessions and encourage personal development. The Focusrite Group is dedicated to building a great place to work and as an equal opportunity employer we are committed to Diversity and Inclusion.
01/06/2026
Full time
Information Security & Data Protection Manager Based: Remote (UK)/High Wycombe/London (N7)/Hybrid Term: Permanent, Full time Reporting to: Chief Information Officer (CIO) Salary: £60k - £85k pa + excellent benefits The Role We're looking for an Information Security Compliance Specialist to take ownership of our Information Security, Data Protection, and AI Governance programmes across the Focusrite Group. You will be the operational owner of our Information Security and Data Protection (ISDP) framework informed by ISO 27001 (ISMS), ISO 27701 (PIMS), Cyber Essentials and NIST CSF keeping us aligned to those standards and ready for certification and audit. Working alongside development, IT, and business teams, you will advise on security and privacy requirements for new and changing systems, ensuring appropriate controls are designed in, evidenced, and verified after implementation. You will also own the Group's response to emerging risks in AI, translating evolving regulation (EU AI Act, UK AI principles, ICO guidance) into practical governance. About you Several years' experience in Information Security and Data Protection, with a good understanding of IT systems, web operations, cloud platforms, and secure coding practices (including OWASP). Comfortable engaging at all levels of the organisation and externally, with the gravitas to influence security and privacy outcomes and reduce the impact of change. The position requires providing support and advice to all parts of the Group on Information Security and Data Protection. You will be responsible for Information Security Systems Framework & advisory: own the Information Security and Data Protection Framework and its documentation, and advise IT, development, and business teams on security requirements Tools & supplier assurance: run the Business Approved Tools process (including assessment of AI tools, vendors, and use cases), own designated Information Security tools, and conduct supplier audit assessments Certification & standards: own certification readiness for Cyber Essentials and lead new certification efforts as the business requires Threats, incidents & testing: monitor cyber threats and translate them for the business, own the incident management process (including phishing response and simulation exercises), and manage vulnerability scans and penetration testing (including external Red/Purple/Blue Team engagements) Risk & resilience: conduct risk assessments across products, systems, and processes; own the Information Security and Data Protection risk register, contributing to the Group Risk Management process; and maintain and test the Business Continuity Plan (BCP) AI Governance: own the AI Governance framework, AI system inventory, and alignment with ISO 42001, NIST AI RMF, and the EU AI Act where appropriate Data Protection compliance primarily UK GDPR and Data Protection Act, EU GDPR, and US state privacy laws (including CCPA/CPRA) Data subject rights & assessments: handle Data Subject Rights requests (Subject Access, erasure, rectification, restriction, objection, portability, and rights relating to automated decision-making) and run Data Protection Impact Assessments (DPIAs) Records & registers: maintain the Records of Processing Activities (RoPA) under Article 30 for controller and processor activities, the lawful basis register, consent records, and Legitimate Interest Assessments (LIAs) Notices, cookies & marketing: operate Privacy Notices and Cookie Tools (OneTrust), and advise on PECR and e-privacy compliance including direct marketing and electronic communications Privacy by Design & training: help product managers and developers embed Privacy by Design, and design and deliver Data Protection training and awareness across the Group Retention & breach management: own the retention schedule and deletion/anonymisation processes, and own personal data breach handling (including detection triage, 72 hour ICO/EU supervisory authority notification, data subject notification where required, and the breach register) Third parties & international transfers: manage processor and sub processor governance (Article 28 due diligence, Data Processing Agreements, processor register) and international data transfers (SCCs, the UK IDTA/Addendum, and Transfer Risk Assessments) Change Management review and provide security and data protection sign off on changes to systems, products, and processes participate in the Change Advisory Board (CAB) and ensure security and privacy risks are assessed before changes are approved own change management procedures relating to Information Security and Data Protection, ensuring evidence is captured for audit ensure security and privacy requirements are embedded in the SDLC and release processes, working with development and operational teams track and report on the security impact of significant business, technology, and organisational change initiatives Compliance generate monthly compliance and activity reports and other reports as required by senior management Internal Audit reviewing Financial System compliance activities performing Internal Information Security Audits performing Internal Data Protection Audits External audit be the key contact for any IT / Data Protection related audits by external bodies, ensuring requested data is supplied, complete, and accurate take ownership of any related audit issues generate audit support documents You will be expected to keep up to date with developments in the security, privacy, and AI regulatory landscape, translating these into practical actions for the Group. We understand that not all candidates will have in depth experience of all these elements, so we welcome applications from candidates who meet most of the criteria and have a desire to learn the rest. Please provide details in your covering letter of additional training requirements / certifications in progress etc. Benefits Flexible/hybrid working, company pension, life insurance, private healthcare, Health Cash Plan, enhanced maternity and paternity pay, employee purchase scheme, group bonus scheme, company music events, offsite company parties and free lunch in the canteen. We arrange company training sessions and encourage personal development. The Focusrite Group is dedicated to building a great place to work and as an equal opportunity employer we are committed to Diversity and Inclusion.
Hays Specialist Recruitment Limited
Head of Cyber Security
Hays Specialist Recruitment Limited Glasgow, Lanarkshire
Head of Cyber SecurityUp to £89,000 + local government pension scheme + excellent annual leaveGlasgow - Relaxed Hybrid Permanent Hays are on the lookout for a Head of Cyber to provide both strategic and operational leadership across a multi-organisation shared service environment. This role supports a partnership of public sector organisations and reports directly to the Chief Information Officer (CIO). You will be accountable for shaping cyber strategy, overseeing governance and risk management, and leading incident response capabilities, while providing assurance on organisational cyber resilience at executive and board level. This role involves Develop and deliver a cyber security strategy and roadmap aligned to organisational priorities and relevant government resilience frameworks. Oversee cyber security operations, including incident response, threat monitoring, vulnerability management, and third-party security services. Act as the senior cyber authority, offering expert guidance and clear assurance on cyber risk, compliance, and resilience to senior leadership, audit committees, and boards. Lead, develop, and inspire specialist cyber security teams, promoting a strong security culture across the organisation. Embed security-by-design principles across enterprise architecture, digital initiatives, and service delivery. Maintain effective cyber governance, policies, and performance metrics, ensuring alignment with recognised standards such as ISO 27001, NIST, CAF, and Cyber Essentials Plus. What I'm looking for Demonstrable experience leading a cyber security function covering strategy, operations, and incident management. Mergers and acquisitions experience would be useful for the cyber due diligence involved in expanding the partnerships Strong knowledge of risk, governance, compliance, and security architecture within complex environments. A technical cyber security background Proven ability to engage, influence, and advise senior stakeholders, including executive teams and boards. Experience within public sector organisations or shared service/multi-entity environments is desirable What you'll get in return A salary between £80,000 - £89,000 Local Government pension scheme Excellent annual leave allowance Great flexibility and hybrid availability Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
01/06/2026
Full time
Head of Cyber SecurityUp to £89,000 + local government pension scheme + excellent annual leaveGlasgow - Relaxed Hybrid Permanent Hays are on the lookout for a Head of Cyber to provide both strategic and operational leadership across a multi-organisation shared service environment. This role supports a partnership of public sector organisations and reports directly to the Chief Information Officer (CIO). You will be accountable for shaping cyber strategy, overseeing governance and risk management, and leading incident response capabilities, while providing assurance on organisational cyber resilience at executive and board level. This role involves Develop and deliver a cyber security strategy and roadmap aligned to organisational priorities and relevant government resilience frameworks. Oversee cyber security operations, including incident response, threat monitoring, vulnerability management, and third-party security services. Act as the senior cyber authority, offering expert guidance and clear assurance on cyber risk, compliance, and resilience to senior leadership, audit committees, and boards. Lead, develop, and inspire specialist cyber security teams, promoting a strong security culture across the organisation. Embed security-by-design principles across enterprise architecture, digital initiatives, and service delivery. Maintain effective cyber governance, policies, and performance metrics, ensuring alignment with recognised standards such as ISO 27001, NIST, CAF, and Cyber Essentials Plus. What I'm looking for Demonstrable experience leading a cyber security function covering strategy, operations, and incident management. Mergers and acquisitions experience would be useful for the cyber due diligence involved in expanding the partnerships Strong knowledge of risk, governance, compliance, and security architecture within complex environments. A technical cyber security background Proven ability to engage, influence, and advise senior stakeholders, including executive teams and boards. Experience within public sector organisations or shared service/multi-entity environments is desirable What you'll get in return A salary between £80,000 - £89,000 Local Government pension scheme Excellent annual leave allowance Great flexibility and hybrid availability Hays Specialist Recruitment Limited acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk
Deputy Data Protection Officer
City IT
Join one of the UK's largest electrical wholesalers as we reimagine our technology for the digital age. We're modernising our legacy systems and building new platforms powered by AWS and AI - and we need creative minds to help us shape the future! Life as a Deputy Data Protection Officer at City Electrical Factors: We're looking for a Deputy Data Protection Officer to join our growing GDPR and compliance team at CEF. This is a great opportunity for someone with strong data protection knowledge who enjoys balancing compliance, problem solving, and stakeholder support in a fast-moving business environment. You'll help us manage and respond to data protection requests, support privacy compliance activities across the business, and work closely with teams including Legal, Information Security, and other Head Office teams. You'll play an important role in helping CEF maintain high standards of data privacy while supporting colleagues across the business with practical, people-focused guidance. This role supports our named Data Protection Officer in day-to-day GDPR and privacy operations but does not carry statutory DPO responsibilities. Job Responsibilities: Act as a key point of contact for Subject Access Requests, right to be forgotten requests, and other GDPR-related enquiries Help ensure requests are managed accurately, confidentially, and within legal timeframes Work closely with colleagues across Legal, Information Security, HR, and operational teams to support data protection activities Provide practical guidance to colleagues on GDPR and data privacy processes Support privacy audits, compliance monitoring, and DPIA activity where required Maintain accurate records, documentation, and request tracking within internal systems Assist with policy maintenance, GDPR training compliance, and awareness activities Escalate complex or high-risk matters to the Data Protection Officer when appropriate Stay up to date with changes in data protection legislation and emerging privacy risks Essential Experience: Have experience working in a GDPR, compliance, legal, or data protection focused role Understand UK GDPR, the Data Protection Act 2018, PECR, and broader privacy obligations Are confident handling sensitive or confidential information with discretion and professionalism Can manage competing priorities whilst maintaining strong attention to detail Enjoy working collaboratively across different teams and supporting stakeholders across the business Have strong written and verbal communication skills Are comfortable working independently whilst also being part of a supportive team environment Hold a relevant certification such as CIPP/E, CIPM, CIPT, or similar (preferred) Why this could be a great move Build your experience in a growing privacy and compliance function Work closely with Legal, Security, and operational teams across the organisation Be part of a collaborative, supportive culture that values curiosity and continuous improvement Take ownership of meaningful work that directly impacts colleagues, customers, and the wider business
31/05/2026
Full time
Join one of the UK's largest electrical wholesalers as we reimagine our technology for the digital age. We're modernising our legacy systems and building new platforms powered by AWS and AI - and we need creative minds to help us shape the future! Life as a Deputy Data Protection Officer at City Electrical Factors: We're looking for a Deputy Data Protection Officer to join our growing GDPR and compliance team at CEF. This is a great opportunity for someone with strong data protection knowledge who enjoys balancing compliance, problem solving, and stakeholder support in a fast-moving business environment. You'll help us manage and respond to data protection requests, support privacy compliance activities across the business, and work closely with teams including Legal, Information Security, and other Head Office teams. You'll play an important role in helping CEF maintain high standards of data privacy while supporting colleagues across the business with practical, people-focused guidance. This role supports our named Data Protection Officer in day-to-day GDPR and privacy operations but does not carry statutory DPO responsibilities. Job Responsibilities: Act as a key point of contact for Subject Access Requests, right to be forgotten requests, and other GDPR-related enquiries Help ensure requests are managed accurately, confidentially, and within legal timeframes Work closely with colleagues across Legal, Information Security, HR, and operational teams to support data protection activities Provide practical guidance to colleagues on GDPR and data privacy processes Support privacy audits, compliance monitoring, and DPIA activity where required Maintain accurate records, documentation, and request tracking within internal systems Assist with policy maintenance, GDPR training compliance, and awareness activities Escalate complex or high-risk matters to the Data Protection Officer when appropriate Stay up to date with changes in data protection legislation and emerging privacy risks Essential Experience: Have experience working in a GDPR, compliance, legal, or data protection focused role Understand UK GDPR, the Data Protection Act 2018, PECR, and broader privacy obligations Are confident handling sensitive or confidential information with discretion and professionalism Can manage competing priorities whilst maintaining strong attention to detail Enjoy working collaboratively across different teams and supporting stakeholders across the business Have strong written and verbal communication skills Are comfortable working independently whilst also being part of a supportive team environment Hold a relevant certification such as CIPP/E, CIPM, CIPT, or similar (preferred) Why this could be a great move Build your experience in a growing privacy and compliance function Work closely with Legal, Security, and operational teams across the organisation Be part of a collaborative, supportive culture that values curiosity and continuous improvement Take ownership of meaningful work that directly impacts colleagues, customers, and the wider business
Benchmark Capital Limited
Data Protection Officer
Benchmark Capital Limited Kingsfold, Surrey
Data Protection Officer Department: Legal Employment Type: Part Time Location: Horsham Reporting To: Alexandra Gladwin Description Benchmark is appointing a Data Protection Officer (DPO) to oversee and maintain the effectiveness of its data protection framework across its investment platform, financial planning businesses, and network. This is a senior, independent role reporting to the Head of Legal, providing challenge and advice to senior stakeholders. You will ensure personal data is handled in line with UK GDPR and associated regulation, while supporting the business to manage data risk in a practical, commercial way. This is a part-time position (3 days per week) with flexibility on working pattern. What you'll do Act as Benchmark's appointed DPO, maintaining independence and providing oversight of data protection compliance Monitor and assess compliance with UK GDPR, DPA 2018, and PECR across the group Provide clear, risk-based advice on new initiatives, data use, and data sharing arrangements Oversee and approve DPIAs and LIAs, ensuring risks are identified and mitigated Maintain oversight of Records of Processing Activities (ROPA) Oversee data protection requirements across third-party and outsourcing arrangements, including international transfers Act as escalation point for personal data breaches, including assessment, reporting, and remediation Oversee processes for handling data subject rights requests Lead training and promote a strong, risk-aware data protection culture Act as the primary contact with the ICO and manage regulatory engagement The knowledge, experience and qualifications you need Essential Significant experience in data protection or privacy within a regulated environment Experience operating at senior level, DPO, Head of, or equivalent Strong working knowledge of UK GDPR, DPA 2018, and PECR Ability to provide independent challenge to senior stakeholders Clear, concise communication skills with strong written reporting capability Analytical and risk-focused approach with sound judgement Desirable Experience within wealth management, financial advice, platforms, or AR models Understanding of data flows within regulated financial services distribution Knowledge of FCA Handbook requirements, including Consumer Duty, SYSC, and PROD Experience with outsourcing and operational resilience frameworks Qualifications Relevant privacy qualification preferred (e.g. CIPP/E, CIPM or equivalent) Legal or compliance background beneficial but not essential The base You'll be based at the Benchmark Head Office, within our Broadlands Business Campus near Horsham in West Sussex but will need to be present across our other offices, including the main Schroders headquarters in London. It has high standards and international reputation, without being in the city: a big, countryside campus means life will feel a little different. We support our offices by using cutting edge software and hardware and our spacious campus facilities mean there's a great working environment for the team. With an on-site restaurant, coffee shop and gym, our campus has much to offer. And commuters can relax on our dedicated regular shuttle bus to and from Horsham's main line train station.
31/05/2026
Full time
Data Protection Officer Department: Legal Employment Type: Part Time Location: Horsham Reporting To: Alexandra Gladwin Description Benchmark is appointing a Data Protection Officer (DPO) to oversee and maintain the effectiveness of its data protection framework across its investment platform, financial planning businesses, and network. This is a senior, independent role reporting to the Head of Legal, providing challenge and advice to senior stakeholders. You will ensure personal data is handled in line with UK GDPR and associated regulation, while supporting the business to manage data risk in a practical, commercial way. This is a part-time position (3 days per week) with flexibility on working pattern. What you'll do Act as Benchmark's appointed DPO, maintaining independence and providing oversight of data protection compliance Monitor and assess compliance with UK GDPR, DPA 2018, and PECR across the group Provide clear, risk-based advice on new initiatives, data use, and data sharing arrangements Oversee and approve DPIAs and LIAs, ensuring risks are identified and mitigated Maintain oversight of Records of Processing Activities (ROPA) Oversee data protection requirements across third-party and outsourcing arrangements, including international transfers Act as escalation point for personal data breaches, including assessment, reporting, and remediation Oversee processes for handling data subject rights requests Lead training and promote a strong, risk-aware data protection culture Act as the primary contact with the ICO and manage regulatory engagement The knowledge, experience and qualifications you need Essential Significant experience in data protection or privacy within a regulated environment Experience operating at senior level, DPO, Head of, or equivalent Strong working knowledge of UK GDPR, DPA 2018, and PECR Ability to provide independent challenge to senior stakeholders Clear, concise communication skills with strong written reporting capability Analytical and risk-focused approach with sound judgement Desirable Experience within wealth management, financial advice, platforms, or AR models Understanding of data flows within regulated financial services distribution Knowledge of FCA Handbook requirements, including Consumer Duty, SYSC, and PROD Experience with outsourcing and operational resilience frameworks Qualifications Relevant privacy qualification preferred (e.g. CIPP/E, CIPM or equivalent) Legal or compliance background beneficial but not essential The base You'll be based at the Benchmark Head Office, within our Broadlands Business Campus near Horsham in West Sussex but will need to be present across our other offices, including the main Schroders headquarters in London. It has high standards and international reputation, without being in the city: a big, countryside campus means life will feel a little different. We support our offices by using cutting edge software and hardware and our spacious campus facilities mean there's a great working environment for the team. With an on-site restaurant, coffee shop and gym, our campus has much to offer. And commuters can relax on our dedicated regular shuttle bus to and from Horsham's main line train station.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board