Data Management & Security Lead
3 days ago
Northampton
Proximity Recruitment are looking for a Data Management & Security Lead to take ownership of data governance, security and risk across a complex, fast-moving organisation in Northampton. This is a hands-on leadership role for someone who knows how data really behaves in the wild, across systems, suppliers and teams, and can turn good intentions into controls that actually work. You’ll lead a small data management function, challenge existing practices, and drive practical improvements that reduce risk without slowing the business down. You’ll act as the go-to expert on data management and data security, providing clear, risk-based advice rather than theory. A key part of the role is working across technology, compliance and commercial teams to ensure data is used safely, legally and effectively, including the acquisition and use of third-party and marketing data. Responsibilities include: • Reviewing and strengthening data security controls across systems, platforms and suppliers., • Making sure controls around access, permissions, storage, transmission, retention, encryption and authentication are fit for purpose., • Keeping on top of real-world cyber threats and ensuring controls reflect how attacks actually happen., • Supporting incident response for data security events, breaches or near misses., • Leading the data management group and owning delivery of agreed changes., • Owning data management policies, standards and control frameworks., • Ensuring alignment with UK GDPR, PECR and relevant regulatory expectations., • Reporting clearly on data risks, control effectiveness and remediation to senior stakeholders., • Tracking remediation actions and escalating issues where risks aren’t being addressed., • Supporting the assessment and procurement of third-party data sources., • Ensuring appropriate due diligence, contracts and security controls are in place., • Around 5+ years’ experience in data management, data security or information security roles, • Proven experience implementing security or data control improvements, not just writing policy, • Strong understanding of the full data lifecycle, from collection to disposal, • Practical knowledge of common cyber threats and how to mitigate them, • Experience assessing and managing third-party and supplier risk, • Solid working knowledge of UK GDPR and PECR, applied pragmatically, • Confidence challenging both technical and non-technical stakeholders, • Experience working across technology, compliance and commercial teams, • Experience in a regulated environment, • Hands-on cybersecurity background or close collaboration with security teams, • Experience supporting or responding to data-related security incidents, • Experience assessing or procuring third-party or marketing datasets