Data Protection Manager
Description
Who We Are
Moneycorp is a thriving dynamic business with an excellent reputation helping Corporate and Private Clients with their FX and International Payments requirements for over 40 years. As a globally expanding business, our footprint covers UK & Ireland, Europe, USA, Canada, Hong Kong, UAE, and Brazil!
With our extremely rare single IBAN multi-currency account, we are able to assist with a variety of different payment needs, including business payment solutions, personal payments abroad (for example buying a property), travel money, as well as the ability to offer interest on deposits. Supplementing this, we also support the global supply chain of wholesale banknotes through our Financial Institutions Group (FIG) and partnership with the US Federal Reserve Bank, to build deeper payment relationships with international banking customers.
It is through obtaining our own banking and payment licenses, the acquisition of two banking platforms and access to 16+ liquidity providers that we are able to proposition a trailblazing FinTech payment infrastructure that simplifies our customer’s diverse business needs and reduce their costs. There is no doubt that we are a major player and differentiated ourselves in a continuously evolving and competitive industry.
With 500+ employees, Moneycorp prides itself in attracting some of the world’s top talent and the people who work at Moneycorp are truly behind its continued success. As Moneycorp continues to expand into new territories, there are considerable opportunities for growth for newcomers and the learning possibilities are endless. We welcome you to be part of a team which has a passion for the business, all within a collaborative and supportive working environment that has ultimately translated to a unique exciting business. To find out more about our journey click here.
Role Purpose
To ensure Moneycorp’s data is appropriately protected and processed in accordance with data protection laws and regulations.
This role sits within Legal, working closely with the Senior Legal Counsel and Data Protection Officer, to embed the Group’s Data Protection framework and approach for effective data protection management across the organisation.
Key Responsibilities
Set and deliver the Data Protection Strategy:
- Assist with delivering the Group data protection strategy and work with key stakeholders on identifying acceptable levels of privacy risks.
- Plan and develop strategies to improve the Group’s data protection compliance programme.
- Put in place appropriate technical and organisational measures to implement the data protection principles effectively and safeguard data subject rights (data protection by design and default).
- Identify the processes, controls and resources (both internal and external) required to facilitate the medium/long term goals and aims of the data protection function within the Group.
- Ensure that an ongoing review of the data protection strategic achievements is in place to ensure that these remain focused on the medium/long term aims and goals of the Group.
Ongoing Data Protection Compliance
- Develop, maintain and publish up-to-date internal and external data protection policies, notices and procedures.
- Providing timely and considered advice and guidance on the processing of personal data in line with data protection laws and regulations.
- Handle a range of data protection matters relating to the Group. This includes, but is not limited to, reviewing new marketing initiatives, conducting DPIA's, dealing with data subjects (complaints, right of access requests, erasure requests and data portability requests), investigating data incidents and breaches, maintaining risk registers and data maps and conducting third party vendor management.
- Conduct internal audits to monitor compliance with data protection laws and regulations as well as with our own data protection policies.
- Increase knowledge and awareness of data protection together with delivering training across the Group
- Assist the DPO on an ongoing basis including understanding the technical and operational measures that should be in place to ensure the security of personal data and assist with the implementation of such measures.
- Identify the Group’s information assets and maintain an information asset register.
- Assist with data protection audits from external auditors.
- Create, communicate and implement a Privacy Impact Assessment process including the assessment and treatment of privacy risks that may result from vendors, suppliers and other service providers.
- Advise business stakeholders when completing Data Protection Impact Assessments for new and revised processing of personal information, especially regarding assessment of risk and associated control implementation.
- Assist the DPO with providing regular reporting on the current status of the Group’s data protection compliance programme to key stakeholders.
- Develop and enhance a privacy framework based on appropriate best practice and guidance from regulators and external data protection specialists.
- Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.
- Advise business stakeholders within context of third party management where personal information is at risk, in collaboration with the Information Security and Procurement teams.
- Manage data protection incidents and breaches, including liaising with key stakeholders and regulators where appropriate.
- Liaise with external agencies and other advisory bodies as necessary, to ensure that the organisation maintains a strong data protection compliance programme and culture.
- Coordinate the use of external resources involved in the information security program.
- Create a framework for roles and responsibilities with regards to information ownership, classification, accountability and protection
- Manage the data protection compliance programme across the Group
- Respond to ad-hoc data protection queries from business stakeholders.
Knowledge and Experience Required:
- A minimum of 3 years' experience working in a data protection role.
- Knowledge of data protection concepts, principles, regulation and legislation, specifically including in-depth understanding of the General Data Protection Regulation and Privacy and Electronic Communications Regulations.
- Experience building, implementing and managing data protection programmes within an international organisation.
- The ability to work under pressure in a fast-paced environment.
- Excellent report writing skills.
- Ability to liaise with all stakeholders across a business organisation
- Good organisational and time management skills including the ability to prioritise effectively.
- A recognised qualification in Data Protection (CIPP, CDPO, CIPM or equivalent) would be preferred but not essential.
Personal Attributes:
- Professional
- Approachable and personable
- Personal drive
- Determined and persistent
- Team Player
Please note: This is a full-time, permanent position with an opportunity to work on a hybrid basis within the team based in our London (Victoria) office.
What you get in return:
This role offers a competitive salary, plus a benefits package including private medical health insurance.
Interested?
If the role sounds like you, we invite you to upload a copy of your CV and can do this by clicking on the Apply Now button.
For company news, announcements and market insights, visit our News Hub.
You can also find Moneycorp on Facebook, Twitter UK, Twitter Americas, Instagram, LinkedIn, where you can discover how we are leading the way in global payments and currency risk management.
Diversity and Inclusion
Moneycorp is proud to be an Equal Opportunity employer. Across our Group, Moneycorp maintains a philosophy that an inclusive company culture inspires creativity, fosters a sense of belonging, and is imperative to both personal and professional growth. With a makeup of 47 percent female employees, Moneycorp has a remarkably diverse workforce. Our commitment to inclusion and opportunity continues to evolve and improve as we listen and engage with our diverse teams.
All qualified applicants will receive consideration for employment without regard to age, colour, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, political affiliation, status as an individual with a physical or mental disability status as an individual with a protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances.
Moneycorp believes that diversity is critical to our success in helping Corporate and Private Clients with their FX and International Payments requirements across the world and is committed to creating an inclusive, mutually respectful environment which celebrates diversity. We hire on the basis of talent, merit, competence, performance, and business needs.