Data Protection Officer (Part-time) in Sheffield
Data Protection Officer (Part-time)

Data Protection Officer (Part-time) in Sheffield

Sheffield Part-Time 30000 - 40000 ÂŁ / year (est.) No home office possible
Go Premium
Preventx

At a Glance

  • Tasks: Oversee data protection compliance and provide expert guidance on privacy matters.
  • Company: Join Preventx, a leading tech company in online sexual health services.
  • Benefits: Flexible remote work, competitive pay, and opportunities for professional growth.
  • Other info: Be part of a diverse team committed to innovation and continuous improvement.
  • Why this job: Make a real impact on public health while ensuring data privacy and security.
  • Qualifications: Bachelor’s degree or equivalent experience in data protection.

The predicted salary is between 30000 - 40000 ÂŁ per year.

Responsible to: Director of Governance

Key Relationships: Technology, Operations and Commercial teams

Purpose of Role: The purpose of the role is to provide oversight and expert guidance on all matters relating to data protection and privacy compliance across the organisation. The postholder will ensure adherence to UK GDPR, the Data Protection Act 2018, and internal governance standards by monitoring compliance, advising on risks, and supporting the organisation’s accountability framework. The role exists to safeguard personal data, promote best practice, and ensure the organisation meets its statutory and regulatory obligations.

Location: Remote, 22 hours per week with flexibility to agree specific working patterns.

About Preventx: Preventx is a fast‑growing technology company with more than 13 years’ experience as the market leader in online sexual health and STI sampling services. We work with over 60 local authority regions and NHS providers across the UK and are a trusted partner of the NHS. Our services have enabled around 1.7m people to test for STIs, improving public health whilst saving money. With recent investment, the company is committed to growth and continuous improvement. You will join a supportive team where you’ll be encouraged to do your best work and define the way we use data in the business.

Key Responsibilities:

  • Serve as the organisation’s senior authority on data protection, privacy, and AI governance, offering expert leadership across all business areas.
  • Provide clear, pragmatic and commercially informed advice on privacy risks, compliance obligations, and risk mitigation approaches.
  • Oversee and maintain core privacy governance documentation, including Records of Processing Activities (RoPA), DPIAs, risk registers, and policy frameworks.
  • Ensure sustained compliance with applicable data protection laws, standards, and regulatory frameworks.
  • Lead internal and external audits related to privacy, information governance, and relevant assurance schemes.
  • Strengthen and refine privacy governance structures, reporting mechanisms, and internal controls to support continuous improvement.
  • Manage data transfer requirements, in line with legal and regulatory expectations.
  • Embed Privacy by Design and Security by Design principles across the organisation.
  • Identify opportunities to enhance, automate, and streamline privacy and security processes across the organisation’s platforms and operations.
  • Lead the organisational response to data protection and information security incidents, including assessment, investigation, containment, remediation, and regulatory liaison where necessary.
  • Manage and oversee the timely handling of Data Subject Access Requests (DSARs) and other data subject rights requests, ensuring compliance with statutory requirements and maintaining robust audit trails.
  • Oversee third‑party due diligence and review supplier contracts to ensure appropriate data protection and information security standards are met.
  • Support internal teams in responding to complex assurance requests, audits, and client security questionnaires.
  • Develop and deliver engaging training programmes and communications to strengthen organisational understanding of data protection and information security.
  • Promote and champion a strong culture of accountability, transparency, and continuous improvement across the business.

Person Specification:

Essential Qualification: Bachelor’s degree or equivalent experience.

Knowledge and Experience:

  • In depth understanding of UK GDPR, the Data Protection Act 2018, PECR, and relevant ICO guidance.
  • Strong working knowledge of data protection principles relating to digital health technologies and the processing of special category (health) data.
  • Significant experience in a data protection, information governance, or privacy‑focussed role within a regulated or technology‑driven environment.
  • Proven experience conducting and reviewing DPIAs, RoPA, and data protection risk assessments.
  • Demonstrable experience managing Data Subject Access Requests (DSARs) and other data subject rights requests.
  • Experience overseeing data protection incidents, including investigation, documentation, and remediation.
  • Demonstrable experience with the NHS Data Security and Protection Toolkit (DSPT), including completion, assessment, or oversight of compliance activities.
  • Proven experience working with ISO 27001 frameworks, including implementation, maintenance, or auditing of information security controls.
  • Experience advising and influencing senior stakeholders, product teams, and technical colleagues.

Skills:

  • Strong analytical and problem‑solving skills, with the ability to interpret complex legislation and apply it in a practical, proportionate way.
  • Excellent written and verbal communication skills, capable of providing clear guidance to technical and non‑technical audiences.
  • Ability to work independently and act impartially, exercising sound judgement in high‑stakes or time‑sensitive situations.
  • High attention to detail with strong organisational and record‑keeping skills.

Personal Attributes:

  • High level of integrity, professionalism and discretion when handling sensitive or confidential information.
  • Confidence to challenge decisions constructively and promote a culture of accountability.
  • Commitment to continuous improvement and staying up to date with regulatory changes and best practice.

This job description is not exhaustive and serves only to highlight the main requirements of the post holder. The line manager may stipulate other reasonable requirements. The job description will be reviewed regularly and may be subject to change.

Equity, Diversity & Inclusion at Preventx: At Preventx, we believe diversity drives innovation and inclusion strengthens our impact. We’re committed to creating a workplace that values individual differences and fosters a culture of respect, belonging, and growth. We welcome applications from people of all backgrounds, identities, and experiences—including those from underrepresented communities. If you need any support with your application or adjustments during the recruitment process, we’re here to help.

Data Protection Officer (Part-time) in Sheffield employer: Preventx

Preventx is an exceptional employer that prioritises employee growth and well-being, offering a flexible remote working environment for the part-time Data Protection Officer role. With a strong commitment to diversity and inclusion, the company fosters a supportive culture where innovation thrives, and employees are encouraged to excel in their roles while contributing to meaningful public health initiatives. Joining Preventx means being part of a forward-thinking team dedicated to safeguarding personal data and enhancing privacy practices across the organisation.
Preventx

Contact Detail:

Preventx Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Data Protection Officer (Part-time) in Sheffield

✨Tip Number 1

Network like a pro! Reach out to your connections in the data protection field, attend relevant webinars, and join online forums. The more people you know, the better your chances of landing that DPO role.

✨Tip Number 2

Prepare for interviews by brushing up on your knowledge of UK GDPR and the Data Protection Act 2018. Be ready to discuss real-life scenarios where you've applied these regulations—show them you’re the expert they need!

✨Tip Number 3

Don’t just apply anywhere; focus on companies that align with your values. Check out our website for openings at Preventx and tailor your approach to highlight how you can contribute to their mission in data protection.

✨Tip Number 4

Follow up after interviews! A quick thank-you email can go a long way in keeping you top of mind. Mention something specific from your conversation to show you were engaged and interested.

We think you need these skills to ace Data Protection Officer (Part-time) in Sheffield

UK GDPR
Data Protection Act 2018
PECR
Information Commissioner’s Office (ICO) guidance
Data Protection Impact Assessments (DPIAs)
Records of Processing Activities (RoPA)
Data Subject Access Requests (DSARs)
ISO 27001
Data Governance
Risk Management
Privacy by Design
Security by Design
Analytical Skills
Communication Skills
Problem-Solving Skills

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with UK GDPR and data protection. We want to see how your skills align with the role, so don’t hold back on showcasing your relevant expertise!

Showcase Your Knowledge: Demonstrate your understanding of data protection principles and legislation in your application. We’re looking for someone who can provide clear, pragmatic advice, so give us examples of how you've done this in the past.

Be Clear and Concise: When writing your application, keep it straightforward and to the point. Use clear language to explain your experiences and achievements, as we appreciate a well-structured application that’s easy to read.

Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy to do!

How to prepare for a job interview at Preventx

✨Know Your GDPR Inside Out

Make sure you have a solid understanding of UK GDPR and the Data Protection Act 2018. Brush up on key principles, especially those related to digital health technologies and special category data. Being able to discuss these confidently will show that you're the right fit for the role.

✨Prepare Real-World Examples

Think of specific instances where you've managed Data Subject Access Requests or conducted DPIAs. Be ready to share how you approached these tasks, what challenges you faced, and how you overcame them. This will demonstrate your practical experience and problem-solving skills.

✨Showcase Your Communication Skills

As a Data Protection Officer, you'll need to communicate complex information clearly. Practice explaining data protection concepts in simple terms, as you might need to advise both technical and non-technical colleagues. This will highlight your ability to bridge the gap between different teams.

✨Emphasise Continuous Improvement

Discuss your commitment to staying updated with regulatory changes and best practices in data protection. Share any relevant training or professional development you've pursued. This shows that you're proactive and dedicated to enhancing your knowledge and skills in the field.

Data Protection Officer (Part-time) in Sheffield
Preventx
Location: Sheffield
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>