
Privacy and Compliance Analyst
Posted 13 hours ago

Posted 13 hours ago
This is a fully remote position, open to applicants in United Kingdom.
• Oversee privacy assessments for customers and suppliers, including reviews, questionnaires, and due diligence processes.
• Perform privacy and security due diligence on third-party providers.
• Assist with adherence to GDPR, UK GDPR, PECR, CCPA, CPRA, and various other privacy regulations.
• Execute Data Protection Impact Assessments (DPIAs), Transfer Impact Assessments (TIAs), Legitimate Interest Assessments (LIAs), and additional privacy risk evaluations.
• Maintain and enhance Records of Processing Activities (ROPAs), data inventories, and privacy documentation.
• Collaborate with Product, Engineering, IT, and business teams to implement privacy by design principles.
• Aid the Legal team with privacy notices, consent management, data retention policies, and contractual obligations.
• Support audits and compliance initiatives by gathering evidence and tracking remediation efforts.
• Contribute to compliance efforts for ISO 27001, SOC 2, and other related initiatives.
• Assist in privacy, security, and third-party risk assessments while managing risk registers.
• Facilitate investigations into privacy incidents and help execute remediation actions.
• Stay updated on privacy legislation and propose enhancements to policies or controls.
• Collaborate with the Governance, Risk, and Compliance (GRC) Specialist to promote privacy awareness and compliance training as required.
• Discover opportunities to enhance efficiency, strengthen processes, and minimize privacy risks.
• Familiarize yourself with the business and assess existing policies and documentation.
• Suggest improvements and take on more responsibility for developing and sustaining privacy processes.
• Travel less than 5% annually, which may include international travel.
• Minimum of 3 years' experience in privacy, data protection, compliance, information governance, or GRC.
• Solid understanding of GDPR, UK GDPR, PECR, and global privacy regulations.
• Experience conducting privacy assessments, maintaining documentation, and performing supplier evaluations and customer questionnaires.
• Knowledge of cloud technologies, information security principles, and frameworks like ISO 27001 and SOC 2.
• Excellent research, analytical, and problem-solving abilities.
• Strong communication skills, with the ability to convey complex information in a clear and simple manner.
• Highly organized, detail-oriented, and adept at managing priorities across multiple teams.
• Proficient in Microsoft Office Suite, especially Excel.
• Must reside in and be legally authorized to work in the United Kingdom.
• Not eligible for relocation or sponsorship.
• Competitive base salary.
• Annual salary evaluations.
• Holiday entitlement, including paid annual leave.
• Paid UK bank holidays.
• Critical illness coverage.
• Income protection insurance.
• Private medical insurance (PMI).
• Employer-matched NEST pension scheme.
• Life assurance coverage.
• Employee of the Quarter program with a cash reward.
• Employee of the Year receives a 7-day vacation package to the Caribbean.
• Regional team-building events.
• Opportunities for training, professional development, and career advancement.
• BCM One Gives Back Program.
• Emergency Fund availability.
• Hybrid work arrangement for candidates based in the London office.
• Flexible working hours to accommodate the needs of international teams.
Yordas Group
VELOCITY PORTFOLIO GROUP INC
Orca
Empower
Get handpicked remote jobs straight to your inbox weekly.