Job
- Level
- Senior
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Bad Vilbel
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop a global data protection and privacy strategy, implement legal requirements, lead risk assessments, and foster a culture of data protection within the organization.
Your role in the team
- Develop, maintain, and continuously enhance the company's global data protection and privacy strategy.
- Establish global privacy governance structures, including policies, standards, and procedures.
- Function as the organization's primary subject matter expert for global privacy and data protection laws.
- Ensure compliance with major privacy regulations (GDPR, CCPA/CPRA, UK DPA, LGPD, PDPA, etc.).
- Überwachen Sie die Datenzuordnung, das Verzeichnis der Verarbeitungstätigkeiten (RoPA) und die Datenschutz-Folgenabschätzungen (DPIA).
- Monitor global regulatory developments and assess implications for the organization.
- Serve as the appointed DPO under GDPR, including acting as point of contact for supervisory authorities.
- Berate zu Datenschutzpflichten und überwache die Einhaltung der einschlägigen Datenschutzgesetze.
- Leite globale Datenschutzrisikobewertungen und setze Minderungspläne um.
- Oversee third-party risk management for vendors and partners handling personal data.
- Ensure proper incident response processes for privacy-related breaches in coordination with IT Security.
- Develop and roll out global privacy training programs for employees and managers.
- Promote a data protection culture across the company.
- Advise the departments in the organization on privacy-by-design requirements.
- Review and negotiate data protection clauses and Data Processing Agreements with partners and vendors.
- Leiten Sie interne Audits und koordinieren Sie externe Audits im Zusammenhang mit Datenschutz und Datensicherheit.
- Provide regular reporting to the Executive Committee and Board-level audit or compliance committees.
This text has been machine translated. Show original
Our expectations of you
Education
- Master's degree in Law, Compliance, Information Security, or related field preferred.
Qualifications
- Certifications such as CIPP/E, CIPM, CIPT, or ISO 27701 Lead Implementer are a strong asset.
- Deep understanding of global data protection laws (GDPR, CCPA/CPRA, LGPD, etc.).
- Strong technical and information security understanding.
- Strong stakeholder management skills.
- Excellent analytical and problem-solving capabilities.
- Ability to manage cross-functional projects and influence senior leaders.
- Strong communication skills; able to simplify complex privacy topics for non-experts.
- High ethical standards and resilience in navigating regulatory complexity.
Experience
- 7-10 years of experience in data protection, privacy, compliance, or related fields.
- Proven experience in global or multi-regional privacy program management.
This text has been machine translated. Show original
What we offer
- 30 days of vacation
- Flexible working hours
- Exciting projects
- Good technical equipment
- Hybrid Working: Office & Remote
- International work environment
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Topics that you deal with on the job
Job Locations
This is your employer
DQS Holding GmbH
DQS Holding GmbH, based in Frankfurt am Main, is the central company of the DQS Group. This internationally accredited group provides audits, certifications, and assessments for various management systems, products, and processes, and serves as the organizational and strategic control unit for global operations.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Consulting