Data Privacy Manager

Data Privacy Manager

Full-Time 70000 - 88000 £ / year (est.) Home office (partial)
Zopa

At a Glance

  • Tasks: Lead data privacy initiatives and manage a team to ensure compliance with UK regulations.
  • Company: Join Zopa, a pioneering bank redefining finance with a people-first approach.
  • Benefits: Enjoy a competitive salary, flexible working, and opportunities for professional growth.
  • Other info: Be part of a diverse team that values collaboration and continuous improvement.
  • Why this job: Make a real impact in a dynamic environment focused on innovation and customer empowerment.
  • Qualifications: Deep knowledge of UK GDPR and experience in managing data privacy functions.

The predicted salary is between 70000 - 88000 £ per year.

Our Story

Hello there. We’re Zopa.

We started our journey back in 2005, building the first ever peer-to-peer lending company.

Fast forward to 2020 and we launched Zopa Bank.

A bank that listens to what our customers don’t like about finance and does the opposite.

We’re redefining what it feels like to work in finance.

Our vision for a new era of banking puts people front and centre — we’ve built a business that empowers everyone to aim high, every day, to move finance forward.

Find out more about our fantastic offerings at Zopa. com!

We’re incredibly proud of our achievements and none of it would be possible without the amazing team here.

It’s not just industry awards we’re winning, we’ve also been named in the top three UK’s Most Loved Workplaces.

If you embrace unconventional challenges, are unafraid to think differently and are driven to make an outsized impact, you’ll thrive here at Zopa, so join us, and make it count.

Want to see us in action?

  • Follow us on Instagram @zopalife
  • The Team

You’ll join the Data Privacy function within Operational Risk & Compliance.

The function serves the whole of Zopa, helping teams across the business make confident, well-reasoned decisions about customer data.

Within the wider function, the Operational Risk & Compliance teams also support product and business activity including current accounts, savings, investments and marketing.

The Role

As Data Privacy Manager, you’ll lead the team’s strategic and day-to-day work, managing a Data Privacy Associate and
partnering closely with product, technology, legal, risk, security and commercial colleagues.

You’ll help evolve a privacy
capability that is rigorous where it needs to be and practical everywhere it can be.

There is also an opportunity to help build
the function’s PCI DSS capability over time.

Key Responsibilities

  • Advise product and business teams on privacy implications of new products, changes and customer journeys.
  • Translate UK privacy law into clear, proportionate recommendations that enable responsible decisions.
  • Support the development of the data privacy governance framework, from DPIAs and privacy by design to retention, ROPA and third-party diligence.
  • Manage complex privacy incidents, including regulatory notification and engagement with affected individuals whererequired.
  • Oversee high-quality, timely handling of DSARs, erasure requests and objections.
  • Build trusted partnerships across technology, legal, risk, security and commercial functions.
  • Develop your direct report and strengthen privacy awareness across the business.
  • Contribute to the Bank’s approach to data risk across a broad range of business activity

Experience

  • Bring deep practical knowledge of UK GDPR, the Data Protection Act 2018 and wider UK privacy regulation.
  • Apply privacy law proportionately in a commercial environment and give pragmatic, business-enabling advice.
  • Make and defend risk-based decisions, including challenging interpretations where commercial impact outweighs the actual privacy risk.
  • Have helped develop a data protection function in an organisation with evolving privacy maturity.
  • Design and implement governance frameworks covering DPIAs, privacy by design, retention, ROPA and third-party duediligence.
  • Manage data breaches and privacy incidents end-to-end, including ICO notification where required.
  • Handle data-subject rights requests with quality, timeliness and defensible decisions.
  • Build credibility with business, technology, legal, risk and security stakeholders.
  • Lead and develop high-performing teams with accountability and continuous improvement.
  • Nice to haves
  • Bring hands-on PCI DSS knowledge and want to help build this capability across the function.
  • Know PCI DSS requirements and their practical application in financial services or payments.
  • Assess cardholder-data flows, scope boundaries and control gaps as part of broader data-risk reviews.
  • Have contributed to PCI DSS compliance programmes.
  • Understand regulated financial services and how privacy obligations interact with FCA and PRA expectations.
  • Comfortably influence senior executives and handle challenging conversations.
  • Bring exposure to another risk discipline, such as compliance or operational risk
  • Experience using One Trust to manage data privacy obligations
  • #LI-JR1

At Zopa we value flexible ways of working.

We value face-to-face collaboration and a good work-life balance. This hybrid role requires you to come to our London office 2-3 days a week.

You’ll also have the option of working from abroad for up to 120 days a year!

But no matter where you are, we’ll make sure you’ve got everything you need to thrive, both in your work and home life, from day one.

  • *Subject to having the right to work in the country of choice
  • Diversity Statement

Zopa is proud to offer a workplace free from discrimination.

Diversity of experience, perspectives, and backgrounds leads to better products for our customers and a unique company culture for our people.

We are made up of nearly 50 nationalities, have a DE&I forum made up of Zopians wanting to make a difference and we are proud of our culture where everyone can bring their full self to work.

Our approach to DE&I is reflected in our hiring process so please let us know if you require any reasonable adjustments.

Our approach to AI in interviews

At Zopa, AI isn't something we're testing out — it's part of how we work every day.

As a proud partner of Jobs 2030, we're committed to building AI fluency across our workforce, and we expect Zopians to use AI as part of how they do their jobs.

Because of that, we want to be transparent about how we think about AI use during our hiring process.

Behavioural and competency-based interviews pleasedon'tuse AI These conversations are designed to understandyou— your experiences, your judgment, and howyou'veapproached real situations.

An AI-generated answercan'ttell us that.

What it can do is get in the way of us finding out whetherwe'rethe right fit for each other.

Technical interviews

It depends on the role.

Some technical stages actively welcome AI use, others don't.

Your Talent Partner will let you know what's expected at each stage.

Where AI is part of the assessment, we’ll be interested not just in the outcome, but in how you used it – the tools you chose, your reasoning, and the decisions you made along the way.

#J-18808-Ljbffr

Data Privacy Manager employer: Zopa

At Zopa, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration. As a Remote Auto Account Manager in the North East, you'll benefit from flexible working arrangements, comprehensive training programmes, and ample opportunities for career advancement, all while contributing to a pioneering company in the fintech space.

Zopa

Contact Details:

Zopa Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Data Privacy Manager

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Zopa looking for candidates who are engaged and informed.

We think you need these skills to ace Data Privacy Manager

UK GDPR
Data Protection Act 2018
Privacy Law Application
Risk-Based Decision Making
Data Privacy Governance Frameworks
DPIAs
Privacy by Design

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Zopa. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at Zopa

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Zopa’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!