About the role

  • Drive technical implementation of data protection practices across systems and infrastructure
  • Work collaboratively with the wider Information Security team to deliver a consistent, understandable approach
  • Report to the Director of Information Security and Data Protection Officer and play a hands-on role
  • Ensure platforms, applications, and third-party services align with data protection policies, regulatory requirements, and information security best practices
  • Perform technical risk assessments and secure system configuration reviews
  • Lead incident response efforts on a duty basis and provide guidance on mitigation, containment, and recovery
  • Coordinate vulnerability management, assurance testing, and remediation tracking
  • Support administration of data protection systems and risk reporting
  • Coordinate and support internal audits, assessments, and external audits, recommending improvements
  • Collaborate with engineering, DevOps, and IT to embed privacy-by-design and secure coding principles
  • Manage third-party vendor data protection assessments and ensure third-party compliance
  • Implement and manage enterprise-wide data protection awareness training and conduct regular sessions
  • Maintain records of incidents, audits, and assessments and report on KPIs and outcome-driven metrics
  • Continuously assess data protection posture, recommend improvements, and keep the organisation updated on industry best practices

Requirements

  • 3+ years of experience in data protection, information security, or a relevant field
  • Professional certifications or a degree in a related field preferred but not essential
  • Strong understanding of UK, EU, and US data protection law and regulations
  • Good understanding of information security concepts, tools, and technologies
  • Commitment to continuous professional development and willingness to learn and grow
  • Experience supporting or coordinating audits, risk assessments, and compliance processes
  • Ability to coach and guide less experienced members of the Information Security and Data Protection team
  • Ability to work autonomously and manage multiple tasks simultaneously
  • Strong analytical, investigative, and problem-solving abilities
  • Adaptability to perform complex and non-routine work in different environments
  • Ability to work under direction, use discretion, and determine when to escalate issues
  • Strong written and verbal communication skills, able to interact with technical and non-technical stakeholders

Benefits

  • Competitive salary
  • 25 days’ holiday + bank holidays
  • Annual Wellbeing Day (additional day)
  • Pension Scheme
  • Corporate Medical Cash Plan
  • Smart Working Options – spend up to 40% of your working week from home
  • Employee discounts and savings via online community platform
  • Employee Assistance Programme
  • Cycle to Work Scheme
  • Monthly Employee Awards – Employee of the Month with £250 bonus
  • Paid Volunteer Day for charity fundraising
  • Referral scheme – up to £1,500
  • Wellbeing Programme with interactive workshops and 30+ Wellbeing Champions
  • Enhanced Family Friendly Leave
  • Employee Resource Groups (ERGs) including diversity and inclusion groups

Job title

Data Protection Manager

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

No Education Requirement

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job