At a Glance
- Tasks: Manage global data incident responses and collaborate with international teams on compliance.
- Company: Join EY, a leader in global data protection and legal compliance.
- Benefits: Flexible work environment, professional development, and diverse culture.
- Why this job: Shape the future of data protection while making a real impact globally.
- Qualifications: Must be a qualified lawyer with 8+ years in data protection and incident response.
- Other info: Opportunity to work with a dynamic team across multiple countries.
The predicted salary is between 48000 - 72000 £ per year.
Our Global Data Protection (Global DP) team is seeking a qualified data protection lawyer to support the maintenance and coordination of the Global Incident Response (IR) Program in collaboration with key global stakeholders and EY Member Firm legal and data protection teams around the world. This lawyer will also play a key role in managing multijurisdictional incident responses and assisting EY Member Firms with local responses as relevant. The role is Associate Director ranked. Global DP sits within our Global General Counsel’s Office (Global GCO) and is responsible for EY’s privacy and related legal and regulatory compliance program in alignment with EY policies, guidance and EY’s Binding Corporate Rules. The team partners heavily with the EY Global Information Security function and works closely with all parts of the network on data protection matters, including the protection of personal data, client confidential data, and other types of EY confidential information.
The opportunity As the Global Legal Counsel – Data Incidents, you will work closely with the Global Lead Counsel – Data Incident Response (a Director in Global DP responsible for the Global IR process) and the Chief Privacy Officer. You will work closely with business and Information Security stakeholders, the other leaders and members of Global DP, and EY Regional/Local Privacy Leaders, Global DP team members in India, Argentina, Philippines and Poland and the Global GCO.
Your Key Responsibilities
- Manage EY´s Global IR program, coordinate response and management of sensitive and significant incidents across Global functions and EY Member Firms according to EY policies and guidance.
- Support the Chief Privacy Officer in the management of select cases of strategic importance.
- Establish regular reporting on incidents across the EY organization to stakeholders and leadership.
- Guide and help to maintain / mature technology to support the overall response and management process.
- Collaborate with key stakeholders to update, implement, and maintain IR methodology as part of the global DP program.
- Communicate the Global IR plan to Member Firms, provide training, and support overall preparedness e.g. through planning and conducting tabletop exercises.
- Manage the overall IR policy improvement and process alignments in the Global IR process.
- Manage a variety of internally and externally triggered global incidents in coordination with Member Firms, Information Security and other key stakeholders.
- Communicate effectively and consistently with key stakeholders.
- Work with a team of data protection resources globally throughout EY.
- Collaborate with Global DP’s overall efforts to raise awareness among EY personnel globally regarding the importance of compliance with data protection regulations and EY’s own privacy compliance program, including the prevention of / response to data incidents.
- Identify / flag legal and regulatory issues surrounding IR and related data protection issues and provide appropriate legal advice / work to implement related solutions.
- Escalate to the Chief Privacy Officer, Global Lead Counsel – Data Incident Response and Global DPO any significant incidents, related issues, and plans for their resolution, including as applicable implications of local data protection regulations as aligned with local counsel.
- Provide general support to the Global DP team.
Knowledge, competency and skill requirements
- Must be legally qualified and hold a current practicing certificate/legal license.
- 8+ years of overall experience either in private or government legal practice or an in-house role with a significant focus on data protection in cross border situations, advising on complex / sensitive matters, and Incident Response and related legal parameters.
- Solid knowledge in EU and international data protection legislation (specifically the GDPR) and ideally familiarity with the legislation of one or more other jurisdictions.
- Ideally, internationally recognized privacy certification, such as CIPP/E and CIPM.
- Experience in conducting internal investigations, litigation, and in particular data breach response investigations or litigation.
- Strong leadership and project management skills.
- Excellent command of the English language.
- Sensitivity to intercultural contacts and communication.
What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world‑class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more. Are you ready to shape your future with confidence? Apply today.
To help create the best experience during the recruitment process, please describe any disability‑related adjustments or accommodations you may need.
EY | Building a better working world
Global Legal Counsel - Data Incidents, Associate Director employer: Ernst & Young Advisory Services Sdn Bhd
Contact Detail:
Ernst & Young Advisory Services Sdn Bhd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Global Legal Counsel - Data Incidents, Associate Director
✨Tip Number 1
Network like a pro! Reach out to connections in the legal field, especially those who work in data protection. A friendly chat can lead to insider info about job openings or even a referral.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of GDPR and international data protection laws. Be ready to discuss real-life scenarios where you've handled sensitive incidents—show us what you've got!
✨Tip Number 3
Don’t underestimate the power of follow-ups! After an interview, drop a quick thank-you email to express your appreciation and reiterate your interest in the role. It keeps you fresh in their minds.
✨Tip Number 4
Apply through our website for the best chance at landing that Global Legal Counsel role. We want to see your application directly, so make sure you showcase your skills and experience there!
We think you need these skills to ace Global Legal Counsel - Data Incidents, Associate Director
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in data protection and incident response. We want to see how your skills align with the role, so don’t hold back on showcasing your relevant achievements!
Showcase Your Legal Expertise: Since this role requires a solid understanding of data protection laws, be sure to emphasise your legal qualifications and any relevant certifications. We’re looking for someone who knows their stuff, especially when it comes to GDPR and international legislation.
Be Clear and Concise: When writing your application, keep it straightforward and to the point. We appreciate clarity, so avoid jargon and make sure your key points stand out. This will help us quickly see why you’re a great fit for the team!
Apply Through Our Website: Don’t forget to submit your application through our official website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy to do!
How to prepare for a job interview at Ernst & Young Advisory Services Sdn Bhd
✨Know Your Data Protection Legislation
Make sure you brush up on your knowledge of EU and international data protection laws, especially the GDPR. Be prepared to discuss how these regulations impact incident response and how you've navigated complex legal scenarios in the past.
✨Showcase Your Incident Response Experience
Highlight your experience with managing data incidents, particularly in cross-border situations. Prepare specific examples of how you've handled sensitive matters and what strategies you employed to ensure compliance and effective communication with stakeholders.
✨Demonstrate Leadership and Collaboration Skills
This role requires strong leadership and project management abilities. Think of instances where you've led a team or collaborated with various stakeholders to achieve a common goal, especially in high-pressure situations related to data protection.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that test your problem-solving skills in real-world data incident situations. Practice articulating your thought process and decision-making steps clearly, as this will showcase your analytical skills and ability to handle pressure.