
Operational Compliance Specialist
Posted 8 hours ago

Posted 8 hours ago
This is a fully remote position, open to applicants in United Kingdom.
• Oversee the subprocessor register and handle the reviewing, onboarding, and client notification regarding subprocessor modifications.
• Manage data retention schedules according to data category and jurisdiction.
• Organize deletion and archiving processes while keeping necessary documentation.
• Assist with compliance related to access control and conduct periodic access reviews.
• Handle DSAR intake, coordinate fulfillment, and monitor regulatory deadlines.
• Aid in privacy monitoring, testing, and audit activities.
• Keep compliance documentation, processing activity registries, and risk assessments up to date.
• Serve as the primary contact for client privacy and EMEA regulatory inquiries.
• Draft subprocessor update notifications and other privacy-related communications for clients.
• Maintain client-specific compliance records concerning data processing agreements and privacy obligations.
• Monitor EMEA reporting requirements and filing deadlines.
• Manage the EMEA compliance calendar and assist with regulatory correspondence.
• Facilitate credentialing and onboarding/offboarding compliance for EMEA clients and vendors.
• Review criminal-record screening files to ensure eligibility and compliance with procedures.
• Prepare initial responses to inquiries from clients and regulators regarding screening checks.
• Maintain documentation for privacy and EMEA compliance processes.
• Collaborate with Operations on the design of privacy-adjacent processes and workflow enhancements.
• Triage and manage Jira tickets related to privacy and EMEA compliance issues.
• Post-secondary education in a relevant field or a comparable combination of education and professional experience.
• Practical knowledge of GDPR and processes related to data subject rights.
• Experience interfacing with regulatory or quasi-governmental bodies such as the ICO, a privacy commissioner, or an equivalent authority.
• Strong organizational skills with a keen eye for detail.
• Capacity to manage various priorities, deadlines, and regulatory obligations across multiple jurisdictions.
• Excellent written and verbal communication abilities.
• Ability to uphold discretion and confidentiality at all times.
• Comfortable collaborating across compliance, operations, and client-facing roles.
• Professional privacy certification from the IAPP, such as CIPT or CIPP/E, is viewed as a significant advantage.
• Proficient in using AI tools like Claude to assist in drafting communications, summarizing regulatory guidance, and enhancing workflow efficiency.
• Familiarity with UK disclosure regimes: DBS, Disclosure Scotland, and AccessNI, including check levels and eligibility rules.
• Understanding of the obligations of registered bodies, umbrella bodies, and responsible organizations.
• Knowledge of UK GDPR and the Data Protection Act 2018 requirements concerning criminal-record data.
• Authorization to work in the UK is mandatory as specified in the application form.
• The successful candidate must complete a background check.
• 20 days of annual leave to begin with, plus up to 3 additional Performance Days.
• Company-sponsored benefits.
• Flexible remote arrangements that are supportive and remote-friendly.
• Work-from-home allowance.
• Budget for professional development.
• + 2,000 options.
• A few additional perks.
Jerry
Bomb Party Official
BeOne Medicines
Ashbury College
Get handpicked remote jobs straight to your inbox weekly.