Compliance and Data Protection Leader responsible for leading EMEA compliance strategies and regional team. Ensuring alignment with GDPR and local data protection laws in collaboration with corporate compliance officer.
Responsibilities
Compliance Leadership: Contributes to setting the compliance strategy for region.
Develops, initiates, maintains, and updates regional and local strategic compliance policies and procedures.
Manages day-to-day operation of the compliance program: Training (incl. training material), risk assessments of the overseen entities, whistleblowing management, 3rd party screening (also in M&A processes), and conflict of interest checks.
Contributes to and works closely with functions having an interface to compliance, e.g. sustainability, legal, HR, Internal Audit, Internal Investigations.
Promote a culture of integrity and accountability through ongoing education and communication.
Data Protection Leadership: Advise and support business units on all data protection matters, especially in an international context.
Assess and accompany projects and business processes regarding data protection and compliance (GDPR, Data Act, AI Act, etc.).
Draft, review, and maintain data protection documentation, in particular records of processing activities, privacy notices, and data processing agreements (DPAs).
Handle and document data protection incidents (data breaches) and support communication with authorities and data subjects.
Conduct and follow up on data protection audits as well as training and awareness sessions for employees.
Support the development and implementation of data protection policies and processes, including the evaluation of new technologies and digital business models.
Collaborate closely with IT, HR, and other relevant departments, as well as with international teams.
Design and deliver compliance and data protection trainings across EMEA teams.
Stakeholder Engagement: Regularly report on the status of compliance and data protection to local managing directors, boards of directors, and region leadership teams.
Requirements
Legal/Law Degree/ Successfully completed first state examination in law (or comparable university degree).
At least two years of relevant professional experience in data protection, ideally in an international corporate environment.
In-depth knowledge of compliance and data protection law (especially GDPR) and initial practical experience with international data protection requirements.
Excellent analytical skills, structured and solution-oriented working style.
Fluent in English.
Strong team player with excellent communication skills and assertiveness.
Desirable: Experience in project-based businesses, including experience working with international project teams.
Experience with data protection management tools (e.g., OneTrust).
Strong IT affinity and interest in new technologies and their data protection implications.
Willingness to continuously develop expertise in data protection and related legal fields.
Proficiency in an additional language would be an asset.
Quality & Compliance Manager developing compliance and quality management systems at HESS Cash Systems. Responsible for internal audits, risk management, and ISO certification preparation.
Senior Manager leading the Regulatory Submissions practice at EY, focusing on the Life Sciences sector. Driving growth and compliance strategies while managing client relationships and team development.
Director of Governance, Risks, and Compliance overseeing GRC policies and strategies. Leading a global team at Sonepar to enhance information security governance and reduce risks.
Senior Manager of GRC leading compliance and risk management programs at Cyderes. Driving regulatory compliance and enterprise risk management in a technology - driven environment.
Regulatory Affairs Lead owning regulatory strategy and safety oversight for assigned products in the Levant. Collaborating with cross - functional teams and ensuring compliance with local and global regulations.
Senior Director leading Medical and Regulatory strategies for Novo Nordisk in the UK. Contributing to affiliate decision making and acting as country Medical Director.
Compliance Specialist managing and monitoring accreditations, certifications, and regulatory requirements for Pharmacy Benefit Dimensions. Ensuring compliance standards and documentation for audits and requirements.
Compliance Manager managing conduct risk framework and compliance for CFC Group. Collaborating with UK and international teams to ensure robust practices and controls.
Deputy Compliance Director at Capitol Compliance Associates managing financial compliance for political clients. Responsible for client services, report preparation, and team supervision with a remote working setup.