At a Glance
- Tasks: Maintain and enhance quality management systems while ensuring data protection compliance.
- Company: Join ALTEN Ltd, a leader in quality and data protection.
- Benefits: Permanent contract with opportunities for professional growth and development.
- Other info: Dynamic role with a focus on continuous improvement and compliance.
- Why this job: Make a real difference in data protection and quality assurance.
- Qualifications: Bachelor's degree and experience in ISO9001/EN9100 and GDPR preferred.
The predicted salary is between 45000 - 55000 £ per year.
Job Purpose: Maintain and improve ALTEN Ltd Quality Management System to ensure it conforms to customers, regulatory standards, and ALTEN Group requirements. Responsible for the internal application of the provisions of the UK GDPR, Data Protection Act 2018, and compliance with ALTEN Group, methods, and customers’ requirements.
Main Duties and Responsibilities:
- Data Protection: You will work closely with The UK Group Head of Compliance and Security, the Group Privacy Manager at ALTEN Group level, and other DPCs in the Group. Your main responsibilities are:
- Developing, reviewing, and updating the company’s data protection framework, policies, and guidelines bringing together and harmonising a UK approach to data protection and GDPR.
- Acting as the contact point for data subjects in connection with the processing of their personal data and handling of Subject Access Requests (SARs) for the group in the UK.
- Managing and responding to data breaches and incidents, ensuring timely notification, management of actions, and mitigation measures based on root cause analysis.
- Supporting Risk Assessments, including Data Protection Impact Assessments (DPIAs) and Legitimate Interest Assessments (LIAs).
- Maintaining all required registers of personal data processing and retention.
- Ensuring privacy by design and by default is embedded into new projects, processes, systems, and services.
- Acting as the primary contact for and cooperating with the supervisory authorities.
- Informing and advising your entity and its employees who carry out processing of their legal data protection obligations.
- Monitoring data processing agreements with third parties and ensuring compliance with contractual and regulatory requirements working closely with in-house legal counsel.
- Coordinating employees training and awareness programs on data protection and privacy.
- Advising senior management on strategic data protection risks and opportunities.
- Providing guidance and actively supporting the departments regarding replies to tenders, integration of data protection policies in their processes, inspections, audits, and data protection incidents.
- Monitoring the implementation of and compliance with data protection regulation, the policies, and strategies of the organisation in relation to the protection of personal data.
- In cooperation with the Legal department and the Group Privacy Manager, proactively considering upcoming changes in laws and regulations of data protection impacting the business and communicating with the heads of departments regarding trends and risk mitigation strategies.
- Conducting regular data protection audits.
- Cooperating with the Information Security compliance officers to ensure best practice and compliance is aligned.
Quality Management System: Support the maintenance and continual improvement of the ISO9001/EN9100-certified QMS. Conduct internal audits and support external audits (e.g., by customers or certification bodies). Monitor and report on quality performance metrics and non-conformances. Assist in root cause analysis and the implementation of corrective and preventive actions (CAPA). Support Process Owners in updating policies, processes, procedures, guides, and forms. Monitor progress of action plans, and support IMS process owners in Risks and opportunities reviews, and monitoring of the IMS tracker. Conduct Quality Awareness sessions and monitor E-learning completion for new joiners. Promote a culture of quality and compliance across the organisation.
Minimum/Essential Skills/Qualifications:
- Bachelor’s degree required (Mandatory).
- Beneficial to have experience and/or qualifications in ISO9001/EN9100.
- GDPR Practitioner qualification.
- Curious and inquisitive personalities.
Job Location: Europe, United Kingdom, London
Candidate Criteria:
- Minimum level of education required: Bachelor.
- Minimum level of experience required: Confirmed (3-5 years).
Quality and Data Protection Officer M/F in London employer: ALTEN
ALTEN is an exceptional employer that fosters a dynamic and inclusive work culture, where passionate engineers collaborate on innovative projects that shape the future of technology and sustainability. Located in Broughton, employees benefit from a personalised career path, ongoing learning opportunities, and a supportive environment that values diversity and encourages growth. With a range of benefits including private medical insurance, flexible working arrangements, and a strong commitment to the Armed Forces community, ALTEN is dedicated to creating a rewarding and meaningful workplace for all its team members.