At a Glance
- Tasks: Lead and implement data privacy strategies across Europe, ensuring compliance with laws.
- Company: Join Greystar, a leader in property management with a focus on innovation.
- Benefits: Competitive salary, career growth opportunities, and a dynamic work environment.
- Other info: Based in London, with potential travel and collaboration with international teams.
- Why this job: Make a real impact on data protection while working with diverse teams.
- Qualifications: Degree in law or IT, with experience in data privacy leadership.
The predicted salary is between 80000 - 100000 £ per year.
As a data privacy director, you will lead Greystar’s European privacy and data protection strategy while also taking an active, hands‑on role in its day‑to‑day implementation. You will develop, implement, and operationalise policies, procedures, and controls to ensure ongoing compliance with applicable European and national data protection laws.
Working closely with senior leadership, business teams, and external counsel, you will embed privacy requirements into business operations, support regulatory and commercial decision‑making, and ensure the EU privacy programme remains aligned with both business objectives and regulatory expectations.
Key Role Responsibilities
- Define and oversee the organization’s data protection strategy, ensuring compliance with the principles of lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, and integrity and confidentiality.
- Establish, maintain, and govern records of personal data processing activities, including data mapping of data flows, categories of personal data and data subjects, purposes of processing, lawful bases, recipients, international transfers, retention periods, and applied technical and organisational measures.
- Monitor and ensure compliance with GDPR and related EU data and information protection laws across all processing activities, including the implementation and effectiveness of appropriate technical and organisational measures.
- Advise and report to senior management and business functions on data protection obligations, including privacy by design and by default, lawful bases for processing, and the use of personal data in new products, services, and technologies.
- Oversee data protection impact assessments for processing operations likely to result in high risk to the rights and freedoms of data subjects, ensuring risks are identified, assessed, mitigated, and documented.
- Lead on the advice on and response to any European data protection breach (working with the current DPO and external lawyers as necessary) and take responsibility for reporting to the business.
- Have an active role in the review of contracts/agreements to ensure appropriate data processing terms are embedded in contracts/agreements and other legal acts involving the processing of personal data, in line with GDPR requirements.
- Take responsibility for horizon scanning data protection and privacy legislative and regulatory developments and lead data protection awareness, training, and internal communication programs, promoting a culture of data protection and ensuring employees and relevant stakeholders understand their responsibilities regarding the processing of personal data and the handling of personal data breaches.
- Update and develop new policies, procedures, and guidance documents as needed across markets, divisions, and functional areas.
- Provide input on vendor strategy, working with legal on review of contract terms related to privacy.
- Oversee data protection registrations and regulatory engagement, including maintaining required registrations and managing communication with European supervisory authorities such as the UK Information Commissioner’s Office.
- Support Information Technology and Information Security to ensure that a robust data security programme is maintained and the privacy implications of information management and oversight are addressed.
- Share a pro‑active view on data changes driven by legislation and the impact to the team through a commercial lens.
- Educate and provide guidance on consent management (e.g., cookie management and marketing preferences).
- Participate in projects, acquisitions and transactions and the EU risk committee and represent the data privacy function.
- Manage outside counsel and third‑party consulting firms on discreet projects.
- Own the European data protection budget, ensure costs are budgeted appropriately and measured on a routine basis to manage budget.
- Keep abreast of current changes in technology, processes, and standards within the industry and area(s) of responsibility by attending internal and external training classes.
Role Scope
The role will report to the Senior Director, Risk & Compliance Europe (based in the Netherlands) with a dotted line to the US‑based DPO. The role will work closely with the US‑based privacy team and current DPO, European senior management team members and have significant frequent interaction with a range of internal Greystar teams such as Investment, Development, Operations, Legal, HR, Procurement, ICT, Cyber and InfoSec teams. The role is a liaison for European privacy regulators. The role’s remit is European, based in our London office, but some travelling may be required. After a successful probation period you may become DPO for Greystar’s European business, including Student Roost.
Knowledge & Qualifications
- Degree‑level qualification in law, information technology, or a related field.
- A relevant postgraduate qualification or recognised data protection or privacy certification (such as CIPP/E, CIPP/EU, or equivalent) is desirable.
- A knowledge of related information technology and regulations (such as DORA, NIS2, the ePrivacy Directive or the EU AI Act) as it relates to privacy and data protection risks.
Experience & Skills
- Proven experience in a similar data privacy leadership or DPO role with an international business across multiple jurisdictions.
- Strong understanding of EU data protection laws (such as GDPR).
- An awareness and understanding of upcoming regulatory changes relevant to data protection in Europe.
- Strong technical expertise in manipulation and management of data with ability to quickly learn and operate new tools as required.
- Excellent oral and written communication skills, including strong oral presentation and project management skills.
- Strong interpersonal skills.
- A high degree of credibility, independence, integrity and trust and ability to work effectively and sensitively across multiple geographies and cultures often with senior leaders while managing a high volume of varied projects.
- Sound and practical business judgment and decision making.
- Additional European languages are desirable.
Location
London office, United Kingdom (Europe). Some travelling may be required.
Data Privacy Director, Europe employer: Greystar
Greystar is an exceptional employer that prioritises employee growth and development, offering a dynamic work culture that fosters collaboration and innovation. Based in London, the role of Data Privacy Director provides unique opportunities to engage with senior leadership and influence data protection strategies across Europe, all while enjoying a supportive environment that values compliance and ethical practices. With a commitment to ongoing training and a proactive approach to privacy legislation, Greystar empowers its employees to thrive in their careers while making a meaningful impact in the industry.
StudySmarter Expert Advice🤫
We think this is how you could land Data Privacy Director, Europe
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Greystar looking for candidates who are engaged and informed.
We think you need these skills to ace Data Privacy Director, Europe
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Greystar. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at Greystar
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Greystar’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!