At a Glance
- Tasks: Manage global compliance, risk, and privacy programs while collaborating with various teams.
- Company: Join a leading organisation focused on privacy and compliance in a dynamic environment.
- Benefits: Competitive salary, professional development, and opportunities for career growth.
- Other info: Work in a supportive culture that values integrity and continuous improvement.
- Why this job: Make a real impact by ensuring data privacy and compliance across the organisation.
- Qualifications: Experience in risk, compliance, or privacy; strong communication and analytical skills.
The predicted salary is between 50000 - 60000 £ per year.
The Privacy Risk & Compliance Officer is responsible for the overall administration and execution of the global compliance, risk and privacy programs for the country and/or subsidiary. This position reports directly into the country management structure and has a direct line reporting relationship to the Regional Privacy Officer, the Head of Risk and the Head of Compliance.
Responsibilities
- Privacy Management
- Ensure all new hires receive privacy notice/consent upon hire and all employees receive updated notices and consents as needed, working with local HR and recruiting teams.
- Monitor and track communication/disclosure of appropriate notices to ensure they are received by all employees.
- Evaluate and coordinate with the Global Privacy, Risk & Compliance Office on the communication of any privacy notice and/or consent.
- Ongoing monitoring of all personal data processing activities for the country or subsidiary and escalating new or changes to existing personal data processing activity to the Global Privacy & Compliance Office.
- Records of Processing (ROP) Completion & Ongoing Updates
- Ensure completion of ROP’s within OneTrust for Controller & Processor ROP’s.
- Ensure new or changes to existing personal data processing activities are appropriately documented and/or updated.
- In coordination with local/regional IT, review IT ROP’s to ensure accuracy, completeness, and regular updates.
- In coordination with the appropriate SAM, ensure that data processing activities associated with new global clients are documented in the ROP Processor.
- Records of Processing (ROP) Quality Review
- Review completed ROP’s to ensure completeness and accuracy.
- Coordinate with functional team leads as necessary to ensure accuracy.
- Client Contracts
- Ensure existing clients have been notified regarding data privacy amendments and client contracts have been updated as needed.
- Ensure liaison with the Legal Department so that contracts with new clients include the appropriate data privacy and compliance provisions.
- Vendor Due Diligence Review
- Ensure the Privacy and Compliance Due Diligence processes are conducted on all existing and new vendors.
- Review and approve completed Vendor Due Diligence Questionnaires, or escalate as needed.
- Reporting Metrics
- Support client bid activity and due diligence activity.
- Deliver all go live activity to the TP control framework.
- Risk Management
- Deployment and maintenance of the Risk Management Framework.
- Identification and assessment of risks within the scope of the PRCO.
- Work with management teams to ensure risks and internal controls are documented, current and complete.
- Provide regular updates on Risks and Controls to the Global Risk Team.
- Promote a culture of risk awareness to the local management.
Qualifications and Experience
- Integrity and commitment to compliance.
- Effective communication skills with both front-line representatives and management.
- Assertiveness and a strong working knowledge of the TP country and/or subsidiary.
- Proficient in Microsoft Office including a good working knowledge of PowerPoint and Excel.
- Previous work experience in either risk, compliance or privacy.
- Working knowledge of Data Privacy Regulations with a recognised certification or the ability to gain a recognised Certification within the first 6 months in the position.
- Fluent in English.
- Strong analytical skills and the ability to apply critical thinking skills to a given problem or project.
- Ability to engage and work well at all levels in the organisation.
- Strong influencing skills are a necessity for this position.
Education
- Bachelor Degree.
- Professional qualifications in either security, privacy, compliance or risk management.
We think you need these skills to ace PrivacyRisk &Compliance Officer in Bristol
Privacy Management
Communication and Reporting
Records of Processing (ROP)
Vendor Due Diligence
Risk Management Framework
Data Privacy Regulations
Microsoft Office Proficiency