Governance Risk and Compliance Expert

8 hours, 37 minutes ago
Full-time
Lead
Cybersecurity
QUALCO Group

QUALCO Group

QUALCO Group is a leader in designing and delivering technology solutions and tech-driven services. Leveraging a vast ecosystem of partners and clients, alongside the dynamics of data and AI, the company tackles complex challenges in credit, property, ...

Internet Software & Services
251-1K
Founded 1998

Description

  • Ensure IT operations comply with data privacy and data protection standards, laws, and regulations.
  • Assist with designing, implementing, auditing, and testing data and privacy compliance controls.
  • Identify, document, and propose countermeasures for compliance gaps.
  • Advise on personal data processing and other data protection matters.
  • Conduct privacy impact assessments.
  • Write and review records of processing activities and privacy statements.
  • Develop, maintain, communicate, and train on data privacy policies and procedures.
  • Provide legal guidance on data privacy, data protection, and related regulatory requirements.
  • Act as a contact point for queries and complaints regarding data processing.
  • Monitor audits, training activities, and awareness initiatives related to data protection.
  • Support third-party relations and legal aspects of information security responsibilities.
  • Contribute to organizational strategy, policy, and procedures, including anti-bribery and corruption compliance.

Requirements

  • Master's degree.
  • Minimum 5 years of IT professional experience.
  • Minimum 4 years of experience in a similar role.
  • At least 5 years of personal data protection compliance experience in an ICT, EU institutional, public-sector, or similarly technology-heavy environment.
  • At least 3 years of hands-on experience preparing, updating, or reviewing RoPAs, DPIAs, DPAs, TIAs, or related personal data protection documentation.
  • At least 2 years of experience documenting technical arrangements relevant to personal data protection, such as access rights, privileged access, logs, SIEM/log exports, retention, hosting, data flows, support access, transfers, processors, or subprocessors.
  • Ability to work with incomplete or inconsistent ICT-related information and distinguish facts, assumptions, open questions, and missing evidence.
  • Comprehensive understanding of IT business strategy, services, and how they relate to legal, regulatory, and standards requirements.
  • Excellent knowledge of EU data protection legislation, data protection standards, compliance requirements, best practices, and IT operations/service delivery.
  • Practical experience with privacy impact assessment standards, methodologies, frameworks, and with writing or reviewing RoPAs and privacy statements.
  • At least 3 certifications among CISA, CISM, GSNA, GCCC, ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, ISO 27005 Risk Manager, CAP, CRISC, CISSP-ISSMP, GIAC Certified ISO-27000 Specialist, or an equivalent internationally recognized certification accepted by the Contracting EU-I.
  • Very good knowledge of English (C2).

Benefits

  • Remote work opportunity.
  • CVs must be submitted in English.
  • Equal-opportunity hiring based on ability and behavior, regardless of race, gender identity and expression, age, ethnicity, or disability.
  • Personal data is processed under GDPR for recruitment purposes only.
  • Applicants are provided with a Recruitment Notice explaining personal data processing during the recruitment procedure.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Permitting and Compliance Specialist

InCharge Energy 51-250 Electric Utilities

InCharge is seeking a Permitting & Compliance Specialist to support its Sales & Service office by managing permitting, licensing, regulatory compliance, and related operational documentation for company projects.

8 hours, 37 minutes ago

Senior Governance Risk and Compliance Expert

AI that benefits humanity 11-50 Internet Software & Services

SquareDev, part of the QnR Group, is hiring a Senior Governance, Risk and Compliance Expert for a public sector client in Warsaw to support remote work on EU data protection and privacy compliance.

Cybersecurity SIEM SOC
8 hours, 37 minutes ago

Senior Risk & Audit Specialist

RemoteWoman 1-10 Internet Software & Services

Upsun is hiring a Senior Risk & Audit Specialist to help keep its global security, risk, audit, and compliance program on track across a remote, cross-functional organization.

HIPAA
1 day, 8 hours ago

Privacy and Compliance Analyst (Remote)

BIS Safety Software Internet Software & Services

BIS Safety Software is hiring a remote Privacy and Compliance Analyst to support its risk, privacy, and compliance operations for a SaaS platform serving organizations that manage safety, learning, and compliance.

Cybersecurity
1 day, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers