london (city of london), south east england, united kingdom
Taylor Root
I’m currently working with a prestigious international law firm, who are hiring a Data Risk Officer to join their Data Risk Team within Risk & Compliance, based in London, Edinburgh, Chelmsford or Manchester. This is a fantastic opportunity to support the global management of data, privacy, and information risk - particularly across areas like information security, emerging technologies … The role offers a dynamic mix of hands-on risk management, internal auditing, and strategic input into global processes. It’s ideal for someone with a solid foundation in dataprotection and a keen interest in evolving tech risks. Key highlights: Support global data risk initiatives and cyber incident response Conduct DPIAs and manage Records of Processing … Activities Collaborate on ISO 27001 audits and phishing exercises Engage with AI and emerging tech compliance Liaise with Risk Operations and General Counsel on data sourcing and best practice Ideal Profile: 2–5 years’ experience in dataprotection, risk, or compliance Strong working knowledge of UK/EU GDPR, DORA, HIPAA, and ISO27001 Experience in professional services More ❯
Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance, and protect critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust … critical business decisions. Key Responsibilities: Develop, maintain, and deliver a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS … Cyber Essentials Plus, and ISO/IEC 27001:2022 aligned practices. Lead DataProtection Impact Assessments (DPIAs), data mapping, classification, and retention programs. Oversee incident response, vulnerability management, patch compliance, and secure configuration baselines using SCCM, Ivanti, Intune, GPO, and Azure Defender. Drive SOC integration, threat intelligence, and monitoring to continuously improve detection and response capabilities. Manage More ❯
Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance, and protect critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust … critical business decisions. Key Responsibilities: Develop, maintain, and deliver a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS … Cyber Essentials Plus, and ISO/IEC 27001:2022 aligned practices. Lead DataProtection Impact Assessments (DPIAs), data mapping, classification, and retention programs. Oversee incident response, vulnerability management, patch compliance, and secure configuration baselines using SCCM, Ivanti, Intune, GPO, and Azure Defender. Drive SOC integration, threat intelligence, and monitoring to continuously improve detection and response capabilities. Manage More ❯
Security to lead and shape their enterprise-wide security function. This is a senior leadership role offering the opportunity to define security strategy, strengthen governance, and protect critical systems, data, and operations. The Role: As Head of Security, you will own the strategic and operational delivery of all information and cyber security activities. You'll develop and implement robust … critical business decisions. Key Responsibilities: Develop, maintain, and deliver a 3-5 year Security Strategy and Roadmap covering technology, people, and processes. Embed security by design across projects, platforms, data flows, and product development. Lead enterprise-wide information, cyber, and data security governance. Define and implement security frameworks, policies, and operating models. Ensure compliance with GDPR, PCI DSS … Cyber Essentials Plus, and ISO/IEC 27001:2022 aligned practices. Lead DataProtection Impact Assessments (DPIAs), data mapping, classification, and retention programs. Oversee incident response, vulnerability management, patch compliance, and secure configuration baselines using SCCM, Ivanti, Intune, GPO, and Azure Defender. Drive SOC integration, threat intelligence, and monitoring to continuously improve detection and response capabilities. Manage More ❯
Officer Based in London, on-site – 5 days 3-month ongoing assignment £20 - £25 per hour We are seeking an excellent Information Governance Officer to support governance, compliance, and dataprotection activities. The Information Governance Officer will manage audits, deal with complex issues, and liaise with internal and external stakeholders. Duties and Responsibilities: Deal with complex issues and … Experience of administrating web-based tools such as the IG training tool and Information Governance Toolkit Degree or equivalent experience working as an Information Governance Officer Knowledge of the DataProtection Act 2018 Compliance Knowledge of Data Security and Protection Toolkit Should you be interested in this vacancy, please don’t hesitate to apply immediately. More ❯
of high-performing staff to ensure the delivery of resilient, high quality, customer-focused services in a cost effective, safe and efficient manner Ensure robust ICT security to prevent data breaches and ensure the continued security of software, data and infrastructure. Transform how we work internally using technology to drive the right outcomes for our residents, communities and … the Council's/CBH's abilities to meet the needs of internal users and communities through effective relationships. Be responsible for the collection, maintenance and integrity of personal data ensuring confidentiality is maintained and data is processed in an accountable manner. Comply with our dataprotection policies and procedures to ensure we meet our legal … responsibilities under dataprotection legislation. Ensure a wide understanding of this legislation in the Digital Service and that it me Skills Be able to develop and lead the implementation of Digital Strategy and a clear digital roadmap Be able to prioritise competing calls on digital resources Give clear strategic direction Initiate and lead organisational change Be able to More ❯
NHS Bristol, North Somerset and South Gloucestershire Integrated Care Board
Job summary We're seeking an experienced, forward-thinking Technical Lead to drive the delivery and evolution of the South West Secure Data Environment (SWSDE). This pioneering regional platform is transforming how health and care data is securely and ethically linked for research. Our aim is to improve health and wellbeing by making research safer, faster and … platform forward and grow our capacity to deliver projects. The Technical Lead will build a multi-disciplinary technical team and oversee all aspects of SWSDE's delivery, including infrastructure, data pipelines, security, governance and scalability. You will ensure the environment remains robust, trusted and aligned with the highest standards of dataprotection and interoperability, including SATRE and … ISO27001, giving partners and the public confidence their data is safe. This hands-on role suits a leader who thrives on managing complexity and problem solving. Collaboration is key, working with partners across the NHS, local authorities, academia and national bodies. This is a rare opportunity to shape a regionally significant, nationally connected data platform, setting new standards More ❯
to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and dataprotection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to … background, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Please note that any personal data that you submit along with your application will be processed by CHAMP and may be processed by any of its global entities as necessary. These data will be … treated in strict compliance with the applicable dataprotection legislation (i.e. the Law of 2 August 2002 on the protection of individuals with regard to the processing of personal data, as amended, and Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, - the GDPR -, which entered into force More ❯
to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and dataprotection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to … background, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Please note that any personal data that you submit along with your application will be processed by CHAMP and may be processed by any of its global entities as necessary. These data will be … treated in strict compliance with the applicable dataprotection legislation (i.e. the Law of 2 August 2002 on the protection of individuals with regard to the processing of personal data, as amended, and Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, - the GDPR -, which entered into force More ❯
Bexleyheath, Kent, England, United Kingdom Hybrid / WFH Options
Reed
of the role: Policy Support: Assist with the maintenance and implementation of the Council’s Information Governance Framework, policies, and procedures. Security Standards: Monitor compliance with information security and data handling policies, identifying and reporting potential risks or non-compliance. Information Risk: Contribute to the management of information risks, ensuring these are logged and escalated in accordance with agreed … processes. Data Sharing: Review and record data sharing arrangements and support the completion of data sharing agreements and contracts under supervision. Statutory Requests: Manage or assist with the processing of requests made under FOIA, EIR, and Subject Access Requests (SARs), ensuring statutory deadlines are met and exemptions are correctly applied. Breach Management: Assist with the investigation and … of corporate training and awareness activities on information governance, privacy, and security. Required Skills & Qualifications: Experience in administrative roles with a focus on governance. Familiarity with UK GDPR, the DataProtection Act 2018, the Freedom of Information Act 2000, and the Environmental Information Regulations 2004. Ability to handle complex dataprotection and information security requirements. Strong More ❯
to comply with CHAMP Security Requirements (including but not limited to CHAMP's IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and dataprotection, use of company assets, and incident reporting). CHAMP Cargosystems is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to … background, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Please note that any personal data that you submit along with your application will be processed by CHAMP and may be processed by any of its global entities as necessary. These data will be … treated in strict compliance with the applicable dataprotection legislation (i.e. the Law of 2 August 2002 on the protection of individuals with regard to the processing of personal data, as amended, and Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, - the GDPR -, which entered into force More ❯
Data Processor (6-Month Fixed Term Contract) Are you highly organised, detail-focused and experienced in managing sensitive data? We are looking for a Data Processor to join the team on a six-month fixed-term contract.In your role as Data Processor, you’ll play a key part in supporting the migration between DBS providers, ensuring … data integrity, accuracy, and compliance throughout the transition. You’ll work closely with a team that handles sensitive information and provide essential administrative and analytical support. What You’ll Be Doing Support the migration to a new DBS provider service. Use bespoke data management systems to assist users in collecting and managing data. Convert raw data into … clear, easy-to-understand formats. Identify and correct data entry errors, inconsistencies, and discrepancies. Prepare regular and ad-hoc reports on data migration progress. Maintain new processes that comply with GDPR and other dataprotection regulations. Ensure the integrity and accuracy of records throughout the transition. Support data analysis and visualization tasks as needed. Collaborate More ❯
/amount of sales opportunities Achieve acceptable sales Key Performance Indicators (KPI s) as specified by the Sales Manager. Achieve sales goals and targets set. Maintain and update accurate data fields and dialogue reports in the CRM database and other sales systems. Produce accurate quotes for customers. Demonstrate correct usage of pricing and discount models at all times. Accurately … instruction and work with a degree of initiative and autonomy. Communicate effectively in all mediums. Be keen to engage in CPD activities Paul Feldman is the National Skills Agency DataProtection Officer. Your data will be stored until notice is given by you for it to be removed. Our DataProtection Policy will be forwarded More ❯
Northampton, Northamptonshire, England, United Kingdom
VIQU IT Recruitment
for an Information Security Analyst/GRC Analyst to be a part of their growing security team. The successful candidate will play a pivotal role in ensuring compliance with dataprotection regulations, supporting the Information Security Management System ISMS, and maintaining robust governance, risk, and compliance GRC processes. Key Responsibilities on the Information Security Analyst: Manage and respond … to Subject Access Requests SARs in accordance with GDPR timelines and procedures. Oversee Right to Be Forgotten and data deletion requests, ensuring complete and compliant execution. Support the wider GRC and Information Security team in dataprotection and risk management activities. Help maintain the Information Security Management System ISMS Provide expert advice on GDPR compliance and data subject rights. Provide expert guidance on data classification, retention, and information governance best practices. Information Security Analyst Experience/Technology: Proven experience in GRC and Information security. Extensive expertise of GDPR, SAR, and Right to Be Forgotten requirements. Hands-on experience with Microsoft Purview or other data discovery and governance tools are desirable but not necessary. Experience More ❯
to MxDR/SOC environments and advanced security protocols (SIEM, IDS/IPS, firewalls). Knowledge of GDPR, Cyber Essentials+, PCI-DSS, and other compliance standards. Strong grasp of dataprotection legislation (e.g., GDPR, DataProtection Act). Global Impact: Your leadership will help protect the digital infrastructure that supports veterinary care across continents. Strategic Influence More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
British Veterinary Association
to MxDR/SOC environments and advanced security protocols (SIEM, IDS/IPS, firewalls). Knowledge of GDPR, Cyber Essentials+, PCI-DSS, and other compliance standards. Strong grasp of dataprotection legislation (e.g., GDPR, DataProtection Act). Why Join Us? Global Impact: Your leadership will help protect the digital infrastructure that supports veterinary care across More ❯
delivery and platform teams during privacy incidents or investigations. Provide technical insight during incident triage, root cause analysis, and remediation planning. Coach teams in privacy-preserving engineering practices, including data minimisation, anonymisation/pseudonymisation, and consent management. Cross-Functional Collaboration Collaborate with Product Owners, Architects, Security Engineers and Lega to ensure privacy compliance is aligned with business and technical … and Architecture to embed privacy considerations early in design phases. Contribute to the continuous improvement of privacy engineering practices across the organisation. Experience Technical Expertise: Background in software or data engineering, with hands-on familiarity across data pipelines, APIs, SDKs, client/server tracking, consent tooling, and event-driven systems. Understanding of cloud environments, modern data architectures … Privacy & Regulatory Literacy: Working knowledge of GDPR, PECR and relevant regulatory guidance from authorities such as the ICO or EDPB. Capable of identifying potential compliance risks and escalating to DataProtection or Legal teams when appropriate. Agile & SAFe Proficiency: Experience embedding Non-Functional Requirements (NFRs) and Behaviour-Driven Development (BDD) practices within agile workflows. Comfortable participating in agile More ❯
benefits - to support you both in and out of work. So if you care about making a difference - every day - we want to hear from you. The Role: A data professional with a clear proven track record of supporting an organisation wide analytics strategy, supporting the needs of customers within a self-service BI environment, developing report requirements with … strong knowledge of BI Development approaches and database and reporting technologies. You will help translate business requirements into technical solutions, support in the data design and architecture, model complex datasets, create interactive data visualisations and support in transforming Cygnet into a data driven business. Being passionate about data and how insight can make the business more … to the role. Your day to day: Work with multiple stakeholders to understand, interpret and translate complex business requirements into technical specifications and wireframes To create, develop and maintain data models promoting best practice Generate queries against data sources to setup solutions and test solutions for accuracy and performance Develop a suite of BI reports containing visualisations and More ❯
Stoke Gifford, Gloucestershire, United Kingdom Hybrid / WFH Options
Synoptix
upgrades in accordance with service commitments Proactively monitor resources to predict and prevent capacity issues Support system maintenance, security checks, and oversee backup procedures Maintain Active Directory, adhering to dataprotection and retention policies Manage documentation and change control processes for, servers, and applications Contribute to strategic planning for future IT requirements aligned with company growth and compliance … will need to be eligible to obtain UK Security Clearance. By applying to this position, you are confirming that you consent to the retention of your personal data. Your data is held securely on our own premises and under the terms of the DataProtection Act (2018). It will be treated as confidential, and will not … be transferred to any third party, or to any other jurisdiction without your consent. We will not hold any data for any longer than is necessary for us to fulfil our obligations and will remove any data at your written request. More ❯
Bristol, Avon, South West, United Kingdom Hybrid / WFH Options
Synoptix Limited
upgrades in accordance with service commitments Proactively monitor resources to predict and prevent capacity issues Support system maintenance, security checks, and oversee backup procedures Maintain Active Directory, adhering to dataprotection and retention policies Manage documentation and change control processes for, servers, and applications Contribute to strategic planning for future IT requirements aligned with company growth and compliance … will need to be eligible to obtain UK Security Clearance. By applying to this position, you are confirming that you consent to the retention of your personal data. Your data is held securely on our own premises and under the terms of the DataProtection Act (2018). It will be treated as confidential, and will not … be transferred to any third party, or to any other jurisdiction without your consent. We will not hold any data for any longer than is necessary for us to fulfil our obligations and will remove any data at your written request. More ❯
Bristol, Stoke Gifford, Gloucestershire, United Kingdom Hybrid / WFH Options
Synoptix
upgrades in accordance with service commitments Proactively monitor resources to predict and prevent capacity issues Support system maintenance, security checks, and oversee backup procedures Maintain Active Directory, adhering to dataprotection and retention policies Manage documentation and change control processes for, servers, and applications Contribute to strategic planning for future IT requirements aligned with company growth and compliance … will need to be eligible to obtain UK Security Clearance. By applying to this position, you are confirming that you consent to the retention of your personal data. Your data is held securely on our own premises and under the terms of the DataProtection Act (2018). It will be treated as confidential, and will not … be transferred to any third party, or to any other jurisdiction without your consent. We will not hold any data for any longer than is necessary for us to fulfil our obligations and will remove any data at your written request. More ❯
Data Privacy Lead - DPIA Specialist Rate: £550 per day (Inside IR35, Umbrella) Location: London, Bristol, York (50% on-site) Duration: 6 months Our client is seeking an experienced Data Privacy Lead with strong hands-on expertise in DPIA (DataProtection Impact Assessment) design, guidance and delivery. The successful candidate will play a key role in ensuring … privacy by design across Customer and Marketing initiatives advising, leading and supporting teams through DPIA processes covering customer data, marketing preferences and digital engagement (apps, emails, MarTech platforms). Key Responsibilities: Lead and provide expert guidance on the DPIA process across complex, data-driven marketing and customer projects. Advise stakeholders on privacy best practice, ensuring compliance with UK … GDPR and internal governance standards. Support and train project teams to undertake DPIAs effectively, ensuring consistency in approach and documentation. Assess and manage privacy risks related to customer data, marketing preferences and third-party data transfers. Collaborate closely with Legal, Data Governance and Technology teams to embed privacy by design principles. Experience & Skills Required: Proven experience as More ❯
Data Privacy Lead - DPIA Specialist Rate: £550 per day (Inside IR35, Umbrella) Location: London, Bristol, York (50% on-site) Duration: 6 months Our client is seeking an experienced Data Privacy Lead with strong hands-on expertise in DPIA (DataProtection Impact Assessment) design, guidance and delivery. The successful candidate will play a key role in ensuring … privacy by design across Customer and Marketing initiatives advising, leading and supporting teams through DPIA processes covering customer data, marketing preferences and digital engagement (apps, emails, MarTech platforms). Key Responsibilities: Lead and provide expert guidance on the DPIA process across complex, data-driven marketing and customer projects. Advise stakeholders on privacy best practice, ensuring compliance with UK … GDPR and internal governance standards. Support and train project teams to undertake DPIAs effectively, ensuring consistency in approach and documentation. Assess and manage privacy risks related to customer data, marketing preferences and third-party data transfers. Collaborate closely with Legal, Data Governance and Technology teams to embed privacy by design principles. Experience & Skills Required: Proven experience as More ❯
luton, bedfordshire, east anglia, united kingdom Hybrid / WFH Options
TUI
with TUI's key marketing technology partners such as Google, Meta, Smartly and others – ensuring contracts, SLAs and renewals are managed effectively and in alignment with Procurement, Legal and DataProtection teams. It leads the preparation and coordination of Joint Business Plans (JBPs) and Quarterly Business Reviews (QBRs) across all markets, driving accountability, partnership value, and compliance in … in operations, marketing, finance, and customer service to identify tech-driven efficiencies, Solutions need to be connected with other (internal & external) systems and be fed with all the necessary data Lead cross-functional implementation projects from planning to post-launch optimization with full implementation in all regions Own and manage contractual relationships and partner operations with key global vendors … Google, Meta, Smartly, etc.), coordinating with Procurement, Legal, and DataProtection to ensure all solutions and agreements meet TUI's compliance, privacy, and governance standards Lead and coordinate Joint Business Plans (JBPs), Quarterly Business Reviews (QBRs), and related partner reporting and administrative processes to ensure consistency and strategic alignment across all markets. Maintain relationships with third-party technology More ❯
31000. Practical experience of conducting gap analysis, testing information security processes, procedures, plans and leading audits to achieve compliance with Information Security standards. Practical experience of establishing and maintain data classification standards within a corporate environment. Experience of project managing Information Security, DataProtection & Compliance initiatives. Experience in developing and executing an Information Security awareness training across … multi-business units. Experience with ensuring corporate compliance with UK/EMEA dataprotection legislation such as DPA and GDPR. Good knowledge of a broad range of IT technology platforms, products, services. Stakeholder management experience at both a technical and non-technical to Executive level. Excellent Business/customer facing experience If you are interested please apply or More ❯