Compliance & Data Protection Officer
5 days ago
Barcelona
At Théa Pharma Spain, we’re proud to be certified as a Great Place to Work, and we’re looking for a new Compliance & Data Protection Officer to join our growing team. Who We Are Théa is a leading pharmaceutical company specialized in the research, development, and marketing of ophthalmological products. With strong family values at our core, we focus on long-term growth, innovation, and a deep commitment to people. Our 2,000+ employees around the world share a passion for improving eye health through a collaborative, inclusive, and people-first culture. Your Next Role Based in our Barcelona office, you will be responsible for supporting our Spanish affiliate (and cluster) and ensuring regulatory compliance in the areas of data protection, internal policies, and local healthcare regulations. You will play a key role in implementing compliance systems, managing data privacy programs, supporting risk assessment, and delivering internal training — always aligned with the Group’s legal and compliance frameworks. Key Responsibilities Data Protection • Implement and maintain the affiliate’s data protection program in line with GDPR and local regulations., • Conduct privacy assessments, map risks, and develop action plans with different departments., • Provide internal training and promote awareness of data privacy obligations., • Draft and update privacy policies and internal procedures. Compliance & Risk Management • Oversee the implementation of Théa’s global compliance program at the local level., • Adapt and ensure application of internal policies and SOPs., • Identify, map, and monitor compliance risks in collaboration with business teams., • Support the review of promotional materials and activities to ensure compliance., • Deliver internal training sessions on compliance and ethical conduct. Whistleblowing Channel • Manage the affiliate’s whistleblowing system and ensure proper case follow-up., • Participate in investigations related to workplace misconduct or harassment. Contracts & Third-Party Management • Support the coordination and tracking of contract review workflows., • Ensure proper documentation of third-party agreements and compliance with internal processes. Cluster & HQ Coordination • Act as the main point of contact for Legal and GDPR teams at HQ (France)., • Participate in quarterly alignment meetings and support cluster countries (Portugal, Mexico, Peru, Chile) in compliance and privacy-related matter What You Bring • University degree (preferably in Law, Political Science, or similar), with specialization or solid experience in Compliance, Data Protection, or Regulatory Affairs., • 3–5 years of experience in a compliance, privacy, or regulatory role — preferably in the pharmaceutical or life sciences sector., • Strong knowledge of EU data protection laws (GDPR) and local compliance regulations., • Experience delivering internal training and implementing compliance systems., • Fluent in Spanish and English., • Excellent organizational and communication skills, with the ability to work autonomously and cross-functionally. What We Offer We want you to grow and thrive with us, so we provide: • Permanent contract, • Private health insurance, • Meal vouchers, • Summer reduced hours, • Ongoing training and development opportunities, • Great Culture and good work enviroment, • ... and more! If you’ve read this far... what are you waiting for? We’d love to hear from you! 📅 Application deadline: October 15, 2025 🔗 Follow us on LinkedIn to get to know us better! Equal Opportunity Employer Théa is proud to be an equal opportunity employer with a global, inclusive culture. We’re committed to fostering a workplace free from discrimination and harassment, and we welcome candidates of all backgrounds and identities.