Data Protection Officer

Location: Peterborough - Lynch Wood, Bristol, Edinburgh
Job Reference: 1305420
Role Grade: C2 - MSS

Banner Image Jobs

About This Role

Summary of the role

As a Data Protection Officer you will be accountable under the UK General Data Protection Regulation (UK GDPR) and Data Protection Act (2018) for monitoring compliance with data protection laws, advising Diligenta of its obligations, including the lawful use and safeguarding of employee and customer personal data and acting as a point of contact for data subjects and the Information Commissioner’s Office.
Your role will be to provide leadership for Diligenta in advising senior management and the business overall about the compliance with Data Protection regulations, to lead the data protection team and ensure it keeps up to date with regulatory changes and to ensure the DP team and Diligenta is appropriately trained on matters concerning personal data processing.
Data Protection Officers independently report to the Chairperson of the Risk Management and Compliance Committee (RMCC) on the robustness of the data protection environment and escalate to the Committee any issues impinging on the role and responsibilities of the Data Protection Officer as prescribed by the UK GDPR and the Data Protection Act (2018):

Please note, as this is a people leadership role the successful applicant will be supported to succeed in their new role through enrolment in the appropriate level of our Diligenta Leadership 'Step' Pathway (subject to eligibility criteria), designed to drive quality and consistency across the organisation. 

  
What you’ll be doing
  • Responsible for specialist data protection support and advice to business areas, projects, and as part of ‘services back’ to Diligenta’s clients and customers. Oversee the DP processes in the business in support of the policies
  • Responsible for advice on the carrying out of a Data Protection Impact Assessment (DPIA) legislated for by the UK GDPR and DPA, monitor compliance and sign-off on individual DPIA’s across the Diligenta business
  • Responsible for the due diligence of new 3rd party suppliers in relation to data protection provisions and ongoing monitoring of systems and controls in place to protect employee and customer data
  • Sign-off to data transfer agreements between TCS, clients, and other third parties
  • Owner of the corporate privacy risk maps. Oversight of Line 1 Risk Maps
  • Head the Data Protection team; oversee the development and maintenance of levels of competency; ensure delivery of a complaint service to internal and external stakeholders at all levels of the organisation
  • Deputise for the SMF16 on contact with the Financial Conduct Authority regarding matters of data protection, including escalations of any such breach notifications where required
  • Manage and report on data breaches, report high risk breaches to the ICO and be the point of contact with the ICO for all incident communications and high risk DPIAs or queries
  • Lead the Data Protection Team’s assessments of technologies including AI and advice the AI committee on the lawful adoption of AI and other high-risk technologies
  • Establish suitable compliance with international data transfer requirements as per the applicable UK data protection legislation and advise the legal team on data protection matters
  • The Data Protection Officer shall act without instruction regarding the performance of his role as stipulated by the GDPR
  • The Data Controller must not dismiss or penalise the data protection officer for performing his tasks
  • Develop and maintain Diligenta’s data protection strategy and framework to ensure compliance with the UK GDPR and the DPA 2018
What we’re looking for
  • A credible influencer of senior management, able to propose and implement compliance solutions with the required level of personal impact
  • Able to chair committees and represent their function at project meetings, forums, other committees and in other general meetings with both clients and internally
  • Ability to recognise compliance implications of business initiatives, but has commercial awareness and can add value to a proposed solution
  • Able to build and maintain strong relationships with clients
  • Strong focus on problem solving and providing solutions to align Diligenta with data protection regulations
  • Strong questioning attitude to regulatory requirements
  • Strong focus on action and results - understands shared ownership of compliance outcomes with business areas
  • Ability to review and analyse management information
  • Report Writing
  • Monitoring skills
  • Able to work independently and without supervision
  • Proactive, communicative, pragmatic and methodical approach
  • Able to hit the ground running and understand complex environments and how to remedy potential nonalignment with data protection regulations
  • Sound technical generic knowledge of the ICO and FCA requirements
  • Expert knowledge of the Data Protection Act (2018), the UK GDPR and other applicable data protection regulations, such as the Privacy and Electronic Communications Regulations (PECR)
  • Previous experience in implementing high risk technology and AI tools in line with the UK GDPR
  • Sound knowledge of business processes, financial products and requirements for relevant business units(s)
  • Experience of working in a project environment or project management
  • Experience as Data Protection Officer and leading a DP team
  • Significant Experience in complex B2B FCA regulated entities
  • Experience in fast paced environments
  • Experience in managing and reporting data incidents

he hiring manager to contact is: Jane McTigue Email: \r\njane.mctigue@diligenta.co.uk

Apply for this role: