Descripción de la oferta
Requirements3+ years of professional experience advising on data protection and privacy matters, ideally within the international cross-border payments industryProven track record engaging effectively with stakeholders across all levels in a global environment, to handle a varied workloadDetailed understanding of current and emerging global data protection legislation and regulatory updatesKnowledge of international data transfer requirements and cross-border payment landscapesProficiency in use of OneTrust platform for data mapping and inventory is essentialExceptional verbal and written communication skills or stakeholder managementHighly motivated and confident to work independently, and as part of a teamDetail oriented and able to thrive in a fast-paced environmentBachelor’s degree in a relevant fieldCIPPE or equivalent trainingWhat the job involvesAs a Senior Data Protection Analyst (DPA) you will support the delivery of personal data protection controls and compliance at ThunesAssisting with the assessment of privacy risks and supporting efforts to maintain the confidentiality, integrity and availability of personal and sensitive dataYou will collaborate with teams across the business to help drive a culture of privacy, transparency and complianceThe role reports to the Group Data Protection Officer within the Legal and Compliance functionAs a Senior Data Protection Analyst, you will play a critical role in building trust with Thunes’ customers, partners and employees by ensuring their personal data is protected and that the company meets all legal and regulatory requirements in respect of data privacy and governanceWork closely with cross-functional teams to facilitate organisation-wide data inventory and mapping via OneTrust platformConduct initial reviews of new technologies to identify privacy risks, facilitating Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs) and Transfer Impact Assessments (TIAs)Support end-to-end workflow for Data Subject Access Requests (DSARs), Erasure requests and other regulatory rights requestsMaintain and update data processing activities (RoPA) to reflect changes in personal data processing and systemsSupport vendor data protection reviews and contract process where required, to ensure robust third‑party processing practicesAssist in the investigation and mitigation of personal data incidents or breaches and tracking remedial actionDeliver actionable data protection advice to business units, reflecting current regulatory requirements and mitigating privacy risks
#J-18808-Ljbffr