At a Glance
- Tasks: Lead compliance strategies and ensure GDPR alignment across a global organisation.
- Company: Join a dynamic team focused on regulatory excellence and data protection.
- Benefits: Competitive salary, professional development, and opportunities for career advancement.
- Other info: Ideal for those passionate about data protection and regulatory challenges.
- Why this job: Make a significant impact in shaping compliance frameworks and protecting privacy.
- Qualifications: J.D. or equivalent, with extensive experience in EU and UK regulatory compliance.
The predicted salary is between 80000 - 100000 £ per year.
The Principal Regulatory Compliance Attorney must have functional knowledge and demonstrated experience across regulatory, compliance, and privacy matters within a global or multijurisdictional organization, with particular emphasis on EU regulations and GDPR requirements. This is a critical senior position responsible for designing and implementing a comprehensive risk-based compliance framework; managing regulatory strategy and examinations; protecting data and privacy; and mitigating regulatory and compliance risk across our global organization.
This is an individual contributor position within CB. Responsibilities include:
- Provide oversight and collaboration on compliance matters intersecting with export controls, trade compliance, cross-border regulatory requirements, and third-party due diligence.
- Conduct risk assessments, identify root causes, develop mitigation strategies, implement and manage correction actions, and track compliance and remediation efforts.
- Support and conduct confidential internal investigations, draft investigation reports, and help manage the employee whistleblower hotline and metric reporting.
- Serve as a primary contact for regulator, inspector, or supervisory communications.
- Help coordinate or lead productions, submissions, and responses to regulatory exams, audits, inquiries, remediation plans, incidents, or breaches.
- Take responsibility for statutory updates and submissions (e.g., registration and payment of annual data protection fees to the ICO and quarterly returns to the Scottish Lobbying Register).
- Ensure alignment between regulatory requirements and internal policies and programs.
- Provide guidance on aligning operational controls and initiatives with regulatory requirements.
Data Privacy responsibilities include:
- Serve as the GDPR subject-matter expert and help design, implement, and improve the company’s GDPR compliance framework and privacy and data protection program, ensuring alignment with GDPR principles, accountability requirements, and supervisory authority expectations.
- Draft and maintain GDPR-compliant privacy notices, policies, and procedures and conduct or assist with conducting periodic privacy monitoring and audits.
- Oversee and advise on data protection impact assessments, privacy risk assessments, and privacy-related incident response, including breach assessments, notification obligations, and coordination with regulators and external counsel, as needed.
Qualifications
- Education: J.D., LL.M., or LL.B.
- License: Licensed attorney in good standing in the U.K. or equivalent.
- Experience: 10 years building and overseeing compliance programs and frameworks (preferably multi-jurisdictional experience) with 6 years in the EU and UK; 6 years of EU and UK regulatory compliance experience, including GDPR and EU data governance, data protection, and privacy; 6 years defending against EU and UK regulatory inquiries, investigations, and enforcement and interacting with EU and UK regulators and supervisory authorities.
Preferred Experience (not required, but a plus)
- Certifications: Certified Information Privacy Professional (CIPP), Certified Compliance and Ethics Professional (CCEP), or Certified Regulatory Compliance Manager (CRCM).
- Demonstrated experience supporting global companies with EU and GDPR compliance needs and handling complex regulatory compliance matters across multiple jurisdictions.
- Familiarity with ISO 27001, 27701, and NIST Privacy Framework.
Principal Regulatory Compliance Attorney employer: CB&I
As a Principal Regulatory Compliance Attorney at our esteemed organisation, you will thrive in a dynamic work culture that prioritises integrity, collaboration, and professional growth. We offer competitive benefits, including ongoing training and development opportunities, ensuring you stay at the forefront of regulatory compliance in a global context. Located in the heart of the UK, our office provides a stimulating environment where your expertise in EU regulations and GDPR will be valued and impactful.
StudySmarter Expert Advice🤫
We think this is how you could land Principal Regulatory Compliance Attorney
✨Network Like a Pro
Get out there and connect with folks in the regulatory compliance field. Attend industry events, webinars, or even local meetups. The more people you know, the better your chances of landing that Principal Regulatory Compliance Attorney role!
✨Show Off Your Expertise
When you get the chance to chat with potential employers, don’t hold back! Share your insights on GDPR and EU regulations, and how you've tackled compliance challenges in the past. We want to see your passion and knowledge shine through!
✨Ace the Interview
Prepare for those tricky interview questions by practising your responses. Think about scenarios where you've successfully managed compliance risks or led investigations. We want to hear your stories and how you can bring that experience to our team!
✨Apply Through Our Website
Don’t forget to apply directly through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who take the initiative to connect with us directly.
We think you need these skills to ace Principal Regulatory Compliance Attorney
Some tips for your application 🫡
Know Your Stuff:Make sure you really understand the ins and outs of regulatory compliance, especially around GDPR and EU regulations. We want to see that you've got the experience to back up your knowledge, so don’t hold back on showcasing your expertise!
Tailor Your Application:When you're writing your application, make it personal! Highlight how your skills and experiences align with the specific requirements of the Principal Regulatory Compliance Attorney role. We love seeing candidates who take the time to connect their background to what we do.
Be Clear and Concise:Keep your application straightforward and to the point. We appreciate clarity, so avoid jargon and fluff. Use bullet points where possible to make it easy for us to see your key achievements and qualifications at a glance.
Apply Through Our Website:Don’t forget to submit your application through our website! It’s the best way for us to keep track of your application and ensure it gets the attention it deserves. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at CB&I
✨Know Your Regulations Inside Out
Make sure you have a solid grasp of EU regulations and GDPR requirements. Brush up on the latest updates and be ready to discuss how they impact compliance frameworks. This will show that you're not just familiar with the rules, but that you can apply them in real-world scenarios.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to solve hypothetical compliance issues or manage regulatory inquiries. Think through your past experiences and prepare specific examples where you've successfully navigated similar challenges. This will demonstrate your problem-solving skills and practical knowledge.
✨Showcase Your Communication Skills
As a Principal Regulatory Compliance Attorney, you'll need to communicate effectively with regulators and internal teams. Practice articulating complex compliance concepts clearly and concisely. You might even want to prepare a brief presentation on a relevant topic to showcase your expertise.
✨Highlight Your Leadership Experience
Even though this is an individual contributor role, your ability to lead initiatives and collaborate with others is crucial. Be ready to discuss how you've previously managed compliance projects or led teams in risk assessments. This will illustrate your capability to drive compliance efforts across the organisation.