Data Protection Officer
We are working with a leading international law firm to appoint a Data Protection Officer. Sitting within the Risk & Compliance Department, you will lead privacy governance across the business, advising on compliance with UK GDPR, EU GDPR and related legislation while supporting data protection impact assessments, audits, training and incident management.
The firm is seeking an experienced data protection professional with 3–5 years’ post-qualified or equivalent privacy experience, including strong knowledge of UK and European data protection law. You will bring excellent communication, writing and presentation skills, sound judgement, and the ability to influence stakeholders and manage complex, competing priorities.
The responsibilities will include:
- Developing and maintaining a privacy governance framework aligned with UK GDPR, EU GDPR and relevant local legislation.
- Advising on data mapping, Records of Processing Activities, vendor assessments and international data transfers.
- Reviewing supplier contracts and overseeing privacy controls, including Article 28 clauses, SCCs and IDTAs, in partnership with Procurement.
- Reviewing projects and operations, advising on and monitoring data protection impact assessments and transfer impact assessments.
- Monitoring legislative developments and recommending appropriate policy or process changes.
- Developing and delivering privacy training to business functions and promoting awareness of data protection and security.
- Coordinating privacy audits, reporting on compliance and participating in internal data governance committees.
- Managing personal data incidents, including impact assessments, breach response, notifications, complaints and claims.
- Advising on data subject rights requests, including DSARs, and ensuring statutory deadlines are met.
- Providing privacy expertise for AI governance, automated decision-making and emerging technology risk assessments.
- Working closely with Data Governance, Information Security, privacy lawyers and other internal stakeholders to identify and manage data-related risks.
Apply today to register your interest in this influential Data Protection Officer opportunity, offering the chance to shape privacy governance, advise on emerging technologies and work across a complex, multi-jurisdictional environment.