
Privacy Assurance – Compliance Specialist
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in United Kingdom.
• Assist the Director of Compliance in implementing Everway’s global privacy assurance and compliance program.
• Support and spearhead compliance roadmap initiatives and business enhancement projects, including data mapping, risk management, controls testing, and policy formation.
• Oversee and coordinate Data Protection Impact Assessments (DPIAs), monitor risk treatments, and embed Privacy-by-Design principles.
• Manage the frameworks for Data Subject Access Requests (DSAR) and Data Deletion Requests.
• Identify privacy risks and controls, convert them into actionable business processes, and assist in incident management.
• Respond to privacy-focused vendor security inquiries and collaborate with the Legal team.
• Maintain compliance resources within the Knowledge Base and Trust Centre.
• Conduct internal Vendor Security Reviews and mitigate privacy risks associated with third parties.
• Develop and uphold privacy policies, privacy notices, procedures, and governance reporting with key performance indicators (KPIs).
• Lead privacy assurance activities for audit and certification efforts, including ISO 27701, ISO 27001, ISAE 3000, and SOC 2, and manage evidence within Governance, Risk, and Compliance (GRC) tools.
• Monitor regulatory changes, assist with interactions with regulators and auditors, and collaborate with legal counsel on cross-jurisdictional privacy issues.
• A degree (or equivalent) in a relevant field, such as Law, Data Protection, Information Security, Compliance, or Risk.
• At least 2 years of experience in a comparable data privacy compliance or privacy assurance position.
• Solid working knowledge of EU GDPR, including risk and compliance management.
• Capability to work independently while managing and prioritizing workstreams in a fast-paced environment.
• Practical experience with DPIAs, DSAR/data deletion requests, Records of Processing Activities (ROPAs), incident response, and vendor privacy assessments.
• Experience in translating regulatory requirements into actionable business processes and controls.
• Strong skills in cross-functional stakeholder management and communication.
• Detail-oriented with excellent analytical, problem-solving, and organizational abilities.
• Experience in SaaS, Edtech, or software development environments is a plus.
• Familiarity with ISO 27001, ISO 27701, ISAE 3000, ISO 42001, or SOC 2 frameworks is desirable.
• Knowledge of GRC platforms like Vanta and OneTrust is a plus.
• Relevant privacy or audit qualifications such as CIPP/E, CIPM, or ISO internal auditor training are desirable.
• Proficiency with Google Workspace is a plus.
• Competitive salary with bonus opportunities.
• Flexible work schedules.
• Comprehensive health and wellness benefits.
• Flexible time off plans.
• Career advancement through development programs.
• Collaborative and innovative culture.
• Company investment in employee success.
Laboratorios Médicos Colonia del Valle - Olab
Insight IT
White Hat Gaming
TRM Labs
Get handpicked remote jobs straight to your inbox weekly.