Data Protection Officer London

Data Protection Officer London

London Full-Time 60000 - 80000 € / year (est.) No home office possible
Capital on Tap

At a Glance

  • Tasks: Lead data protection initiatives and ensure compliance while enabling business growth.
  • Company: Join Capital on Tap, a dynamic FinTech revolutionising small business finance.
  • Benefits: Enjoy private healthcare, generous holiday, and a supportive work environment.
  • Other info: Be part of a diverse team that values inclusivity and personal growth.
  • Why this job: Make a real impact in a fast-paced, innovative company focused on empowering small businesses.
  • Qualifications: Deep knowledge of UK data protection laws and experience in tech or financial services.

The predicted salary is between 60000 - 80000 € per year.

We’re Capital on Tap. Capital on Tap started because small businesses were underserved. Big banks were slow, their products weren’t fit for purpose, and small business owners often couldn’t access what they needed. We set out to fix that. Today we’re a financial platform – not just a credit card company. We offer a best‑in‑class business credit card, SME‑focused spend management platform, a savings product that reached £1 billion in funds within its first year, and a growing suite of tools and financial products that make running a small business easier. 1,000+ employees, £20 bn in annual card spend, 200,000+ customers, 17,000+ Trustpilot reviews averaging 4.7 stars. We’re profitable and just getting started!

Why Join Us?

We empower you to be innovative and solve complex problems. Take ownership, make an impact, and thrive in our scaling and agile environment.

The Data Protection Team at Capital on Tap

The Data Protection team plays a crucial role in enabling Capital on Tap’s commercial objectives while ensuring full compliance with global data protection regulations. As our Data Protection Officer, you’ll lead a team that includes Data Protection Analysts and Administrators, working at the intersection of technology, compliance, and business enablement.

The Role

We’re looking for an exceptional Data Protection Officer to join our FinTech in London. This is a strategic leadership role for someone who thrives on using cutting‑edge technology and AI to transform data protection from a compliance function into a business enabler. You’ll protect the company by finding innovative ways to achieve commercial goals while maintaining the highest standards of data protection compliance.

What you’ll be doing

  • Strategic Leadership: Serve as the primary data protection authority (act as the designated DPO under Article 37 of the UK GDPR and UK data protection law), providing strategic guidance to senior leadership on privacy risks and opportunities across all business functions.
  • Business Enablement: Work closely with Product, Engineering, Marketing, and Commercial teams to find compliant pathways for new initiatives, ensuring data protection accelerates rather than hinders business goals.
  • Technology & Automation: Lead the implementation of state‑of‑the‑art AI technologies and automation tools to streamline data protection activities, from DPIA automation to intelligent data discovery and rights fulfillment.
  • Regulatory Compliance: Ensure full compliance with UK GDPR, DPA 2018, PECR, DUAA, CCPA/CPRA and emerging regulations, while staying ahead of regulatory developments and their business implications.
  • Risk Management: Conduct and oversee Data Protection Impact Assessments (DPIAs), manage data breach responses, and implement privacy‑by‑design principles across all technology platforms.
  • Monitoring: Monitor and assess data processing activities to ensure ongoing compliance. Assess the lawful basis for processing activities and ensure appropriate documentation is in place. Maintain and regularly review the organisation’s Record of Processing Activities (ROPA) to ensure completeness and accuracy.
  • Stakeholder Management: Act as the primary contact point for regulators (ICO), work closely with internal and external legal counsel, and represent the company in privacy‑related matters.
  • Team Development: Build and lead a high‑performing data protection team, fostering a culture of innovation, urgency, and business partnership.
  • International Expansion: Support the company’s US operations and international growth by navigating complex cross‑border data transfer requirements and multi‑jurisdictional compliance.
  • Vendor Management: Lead privacy due diligence for third‑party vendors and partnerships, ensuring contractual protections align with business risk appetite.
  • Training & Culture: Drive privacy awareness across the organisation through targeted training programmes and embed privacy considerations into business‑as‑usual processes.

We’re looking for

  • Deep Regulatory Expertise: Comprehensive knowledge and hands‑on experience with UK data protection regulations (GDPR, DPA 2018, PECR, DUAA), with the ability to interpret complex requirements and provide pragmatic business guidance.
  • FinTech / Tech Background: Proven experience in financial services or technology companies, understanding the unique privacy challenges of regulated financial products (including an understanding of consumer duty and vulnerability) and high‑growth tech environments.
  • Technical Fluency: Strong technical acumen with experience using data protection tools, privacy management platforms, and automation technologies to streamline compliance processes.
  • AI & Innovation: Experience with or strong willingness to adopt cutting‑edge AI technologies for privacy operations, from automated risk assessments to intelligent data processing.
  • Problem‑Solving Mindset: Pragmatic approach to complex privacy challenges, with a track record of finding creative solutions that balance compliance requirements with customer outcomes and business objectives.
  • Urgency & Business Focus: Demonstrated ability to work at pace in fast‑moving environments, with a philosophy that compliance should enable rather than block business progress.
  • Leadership Experience: Proven ability to lead cross‑functional initiatives, influence senior stakeholders, and build high‑performing teams.
  • Strategic Thinking: Experience translating regulatory requirements into business strategy, with the ability to anticipate future privacy challenges and opportunities.
  • Professional Qualifications: A recognised data protection qualification such as IAPP’s CIPP/E, CIPM, CIPT, C‑DPO, or a BCS Practitioners certificate in Data Protection.
  • US Privacy Expertise: Knowledge of CCPA/CPRA, state‑level US privacy laws, and experience managing multi‑jurisdictional compliance programmes.
  • Professional Qualifications: AIGP – a certified AI Governance Professional would be highly desirable.
  • Regulatory Relationships: Existing relationships with privacy regulators or experience managing regulatory inquiries.
  • International Experience: Experience with international data transfers, adequacy decisions, and global privacy frameworks.
  • Experience: Minimum of 2 years experience acting in a DPO capacity within a financial services or technology organisation.

Diversity & Inclusion

We welcome, consider and encourage applications from anyone who shares our commitment to inclusivity. Join us in creating a space where authenticity thrives, and everyone can do their best work.

Great Work Deserves Great Perks

  • Private Healthcare including dental and opticians services through Vitality.
  • Worldwide travel insurance through Vitality.
  • Anniversary Rewards (£250, £500, £750, 4‑week fully paid sabbatical).
  • Salary Sacrifice Pension Scheme up to 7% match.
  • 28 days holiday (plus bank holidays).
  • Annual Learning and Wellbeing Budget.
  • Enhanced Parental Leave.
  • Cycle to Work Scheme.
  • Season Ticket Loan.
  • 6 free therapy sessions per year.
  • Dog Friendly Offices.
  • Free drinks and snacks in our offices.

Data Protection Officer London employer: Capital on Tap

At Capital on Tap, we pride ourselves on being an innovative and agile employer that empowers our employees to take ownership and make a meaningful impact. Our London office offers a vibrant work culture with a strong focus on employee growth, providing access to cutting-edge technology and a supportive environment for professional development. With exceptional benefits like private healthcare, generous holiday allowances, and a commitment to inclusivity, we ensure that our team thrives both personally and professionally.

Capital on Tap

Contact Detail:

Capital on Tap Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Data Protection Officer London

Tip Number 1

Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, and don’t be shy about reaching out to current employees at Capital on Tap. A friendly chat can open doors you didn’t even know existed!

Tip Number 2

Prepare for interviews by researching the company inside out. Understand their products, values, and recent news. This will not only help you answer questions but also show that you’re genuinely interested in being part of the team at Capital on Tap.

Tip Number 3

Showcase your skills through real-life examples. When discussing your experience, relate it back to how you can help Capital on Tap achieve its goals. Use specific instances where you’ve successfully navigated data protection challenges or implemented innovative solutions.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining us at Capital on Tap and ready to make an impact in the data protection space.

We think you need these skills to ace Data Protection Officer London

UK Data Protection Regulation Expertise
Technical Fluency
AI Technologies Implementation
Risk Management
Data Protection Impact Assessments (DPIAs)
Stakeholder Management
Vendor Management

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Data Protection Officer role. Highlight your experience with UK data protection regulations and any relevant tech skills. We want to see how you can bring your unique expertise to our team!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about data protection and how you can help us achieve our business goals while ensuring compliance. Keep it engaging and personal!

Showcase Your Problem-Solving Skills:In your application, give examples of how you've tackled complex privacy challenges in the past. We love candidates who can think outside the box and find innovative solutions that balance compliance with business needs.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our awesome team!

How to prepare for a job interview at Capital on Tap

Know Your Regulations

Make sure you brush up on UK data protection regulations like GDPR and DPA 2018. Be ready to discuss how these laws impact business operations and how you can ensure compliance while enabling growth.

Showcase Your Tech Savvy

Since this role involves using cutting-edge technology, be prepared to talk about your experience with data protection tools and AI technologies. Highlight any specific projects where you've implemented tech solutions to streamline compliance.

Demonstrate Strategic Thinking

Think about how you can translate regulatory requirements into actionable business strategies. Prepare examples of how you've previously balanced compliance with business objectives, showing that you can think ahead and anticipate challenges.

Engage with Stakeholders

This role requires strong stakeholder management skills. Be ready to discuss how you've effectively communicated with regulators, legal teams, and other departments in the past. Show that you can build relationships and foster a culture of privacy awareness.