Data Protection Officer - 12m FTC (Mat Cover)
hace 1 día
London
Who We Are Zilch is a payment tech company on a mission to create the most empowering way to pay for anything, anywhere. Combining the best of debit, credit and savings, we give our customers the option to earn instant cashback or spread the cost of pricier purchases, completely interest free and with no late fees. Pretty great, right? We started in 2018 with a small team and a big dream - to make credit accessible to all. Since then, we've achieved double unicorn status and taken on more than 5 million customers. There are some exciting projects coming up and we’ve got big growth plans. Want to join us? About The Role. We have an exciting opportunity for a Data Protection Officer to join our Compliance team, with responsibility for data protection and privacy compliance. Are you a GDPR star? Can you think strategically and take lead on data protection as Zilch continues to grow? We are seeking an experienced and proactive Data Protection Officer to lead Zilch’s data protection and privacy compliance framework. You will act as the primary point of contact with the Information Commissioner’s Office (ICO) and other supervisory authorities, ensuring full compliance with the UK GDPR, Data Protection Act 2018, and other applicable privacy and electronic communications regulations. As Zilch’s DPO, you will ensure that privacy is embedded across the organisation, balancing regulatory obligations with business innovation. You will provide independent oversight, expert legal and compliance advice, and practical guidance to senior management and operational teams. Day-to-day Responsibilities. • Develop, implement, and maintain Zilch’s privacy framework, policies, and procedures to ensure compliance with the UK GDPR, Data Protection Act 2018, PECR, and other applicable privacy laws., • Act as Zilch’s principal contact for the ICO and other supervisory authorities, managing communications, investigations, and breach notifications., • Work closely with Legal to review, draft, and negotiate privacy clauses, data processing agreements, and international transfer documentation., • Manage and respond to data subject rights requests, ICO complaints, and data protection–related court cases, continuously improving processes to ensure effective and compliant resolution., • Provide expert advice on privacy aspects of marketing, digital advertising, cookies, and electronic communications in line with PECR and UK GDPR., • Conduct privacy risk assessments, support privacy-by-design in new projects and business initiatives and maintain the company Record of Processing Activities (RoPA) and data flows., • Collaborate with Information Security to investigate personal data breaches and manage related notifications to regulators and data subjects., • Design and deliver privacy and data protection training and promote awareness across the business to foster a culture of accountability., • Monitor and assess privacy risks across the organisation, conduct internal privacy audits and compliance monitoring, providing reports and recommendations to senior leadership., • Track and monitor emerging data protection and advise the business on the implications of legal or regulatory changes. What We’re Looking For... To be successful in this role, you will have extensive experience managing data protection and privacy compliance within a regulated environment. You will demonstrate a strong understanding of the UK GDPR, the Data Protection Act 2018, PECR, and related legislation, with proven experience in implementing and leading privacy programmes. • A minimum of 5 years’ experience in privacy, data protection regulatory compliance roles., • Legal background is highly desirable., • Comprehensive knowledge of the UK GDPR, the Data Protection Act 2018, PECR, and other privacy laws., • Proven ability to implement and lead privacy management programmes in complex, fast-paced, and regulated environments., • Demonstrated experience in interacting directly with supervisory authorities, including the ICO., • Experience reviewing, drafting, and negotiating privacy and data protection contracts., • Professional certifications such as CIPP/E, CIPM, or CIPT (or equivalent) are highly desirable., • Excellent communication and influencing skills, with the ability to translate complex legal and technical issues into clear, practical advice., • Experience supporting M&A transactions, audits, and due diligence activities. Benefits. Compensation & Savings • Pension scheme., • Death in Service scheme., • Income Protection., • Permanent employees enjoy access to our Share Options Scheme., • 5% back on in-app purchases., • £200 for WFH Setup. Health & Wellbeing • Private Medical Insurance including;, • GP consultations (video, telephone or face-to-face)., • Prescribed medication., • In-patient, day-patient and out-patient care., • Mental health support., • Optical, dental & audiological cover., • Physiotherapy., • Advanced cancer cover., • Menopause support., • Employee Assistance Programme including:, • Unlimited mental health sessions., • 24/7 remote GP & physiotherapy., • 24/7 helpline for emotional & practical support., • Savings & discounts on everyday shopping., • 1:1 personalised well-being consultations., • Enhanced maternity pay., • Enhanced paternity pay., • Enhanced adoption pay., • Enhanced shared parental leave. Learning & Development • Professional Qualifications., • Professional Memberships., • Learning Suite for e-courses., • Internal Training Programmes., • FCA & Regulatory training. Workplace Perks • Hybrid Working., • Casual dress code., • Workplace socials., • Healthy snacks.