Remote Data Protection Officer in London

Remote Data Protection Officer in London

London Full-Time On-site
S

Role: Group Data Protection Officer Location: Berlin or London - Hybrid, PermanentClosing date: Sunday 25th of October 2026About Springer NatureSpringer Nature is one of the leading publishers of research in the world. Through our leading brands, trusted for more than 180 years, we provide technology-enabled products, platforms and services that help researchers to uncover new ideas and share their discoveries, health professionals to stay at the forefront of medical science, and educators to advance learning. We are proud to be part of progress, working together with the communities we serve to share knowledge and bring greater understanding to the world. At Springer Nature, we recognise that talent is developed through a range of career paths. Our hiring approach balances skills, experience, and potential to ensure each role is fulfilled with both short term effectiveness and long-term growth in mind. About the RoleThe Group Data Protection Officer (Group DPO) shall perform for Springer Nature the tasks of a Data Protection Officer as defined in Art. The Group DPO plays a pivotal role in supporting the business with achieving GDPR compliance and is responsible for coordinating and driving the execution of cross-functional initiatives that ensure compliance with other applicable law in data processing. The Group DPO acts as a central point of contact for data protection authorities and internal teams searching authority guidance. The Group DPO reports to the Chief Risk & Compliance Officer. This is a hybrid role based in Berlin or London. Role ResponsibilitiesLegal / AdvisoryInform and advise Springer and its employees regarding their obligations under the GDPR and other applicable European, EU-Member State or UK data protection provisions, applying strong Governance, Risk and Compliance ManagementCooperate with data protection supervisory authorities, Building Trust through effective and transparent engagementAct as the contact point for supervisory authorities on issues relating to personal data processing, including prior consultations referred to in Art. 36 GDPR/UK GDPR, demonstrating strong AccountabilityProvide advice as regards data protection impact assessments and monitor their performance pursuant to Art. 35 GDPR/UK GDPR, exercising sound Decision QualityMonitoring Legislative / Regulatory Developments: tracking legal changes, EDPB guidelines, and supervisory authority guidance, and informing management of their impact, leveraging strong Business InsightsWorking closely with members of the Governance, Risk & Compliance and Legal to ensure reliable, aligned advice towards the business about risk and compliance under both AI Act and GDPR/UK GDPR, demonstrating the ability to Manage ComplexitySupervisoryMonitor compliance with the GDPR, other applicable European, EU-Member State or UK data protection provisions and the policies of the Springer Group in relation to the protection of personal data, utilizing Data Security & Governance expertiseAwareness & Training Programmes: designing, coordinating and delivering staff training, in addition to the monitoring role already required under Art. 39 GDPR/UK GDPRIntegration with GRC / Risk Management: mapping data protection risks into the wider risk management framework, supporting internal audits, and ensuring consistency with other compliance domains through strong Governance, Risk and Compliance ManagementCoordinating external consultation on legal development, in law suits and supporting global business projects with a data protection focus, demonstrating Being ResilientOperationalContinued development and enhancement of the existing Springer Nature data protection frameworkReporting: preparing regular reports to senior management or the board on data protection compliance, risks, and KPIs, applying Data Analytics / Quantitative SkillsCoordinating maintenance of Records of Processing Activities (ROPA)Data Breach Management Support: coordinating the incident response process, collecting relevant information, and advising on notification duties, utilizing strong Conflict Management skillsLiaison Role: acting as a contact point for data subjects (e.g. handling access requests and complaints, supported by operational teams), Building Trust through responsive and professional stakeholder engagementPolicy and Procedure Development: drafting and updating data protection policies, retention schedules, privacy notices, and related internal standardsVendor Management Support: advising on or maintaining registers of data processors and sub-processors, supporting due diligence, and checking contractual complianceInternational Data Transfers: monitoring transfer mechanisms (e.g. SCCs, BCRs), supporting Transfer Impact Assessments, and advising on related compliance requirementsTeam LeadAssignment of responsibilities, distribution of advisory and operational duties within the team, demonstrating strong AccountabilityDefining, scoping and staffing data protection development projects, applying sound Decision QualityCoordinating cooperation with other teams inside the General Counsel’s Office and with business partners, leveraging Business InsightsManaging team performance and feedback workflows, utilizing Accounting Principles to support effective governance and control processesSkills, Experience & Qualifications:Essential In-depth knowledge of data protection law in the EU and UKExperience with implementation and maintenance of a concise data protection frameworkExperience with consent requirements and the development of consent management systemsDegree or certificate in a data protection-related discipline, at least IAPP certification, preferably a second proof of knowledge, legal degree or certificate welcome Experience with work processes in the legal department of a medium-to-large industrial company, preferably in the communications, publishing or IT sector Familiarity with cross-functional collaboration in matrix organizationsFluent English, business-confident skills in another European languageExperience of responding to change and growthStrong organizational and time management skillsStrong influencing and collaboration skills at all levels Analytical mindset with attention to detailTeam-oriented, proactive, and adaptableDesirable Knowledge of data protection law in other jurisdictions, preferably including Indian law and US state lawKnowledge of EU and UK Digital Law impacting data processing conditionsExperience with joint risk evaluation and compliance of processing subject to GDPR/UK GDPR and AI ActExperience using DP documentation and reporting tools (e.g. Onetrust)German language skillsAt Springer Nature, our mission is to be part of progress - and that begins with inclusion: of people, perspectives, and ideas. If you have any access needs related to disability, neurodivergence or a chronic condition, please contact us so we can make all necessary accommodation. Find out more about our DEI work here For more information about career opportunities in Springer Nature please visit #LI-EP1Job Posting End Date:25-10-2026SummaryLocation: Berlin; LondonType: Full time

Remote Data Protection Officer in London employer: Springer Nature

Springer Nature is an exceptional employer that fosters a collaborative and empowering work culture, particularly for the Senior Business Analyst role. With a strong commitment to employee growth, you will have access to professional development opportunities and the chance to work within a dynamic network of teams across global locations like London, Lisbon, and Berlin. The company prioritises innovation and continuous improvement, ensuring that your contributions directly impact meaningful outcomes in the research and education sectors.

S

Contact Details:

Springer Nature Recruitment Team