Group Data Protection Officer - Ocorian

Jobs via eFinancialCareers
Belfast
2 months ago
Create job alert

Group Data Protection OfficerOcorian Belfast, United Kingdom Apply now Posted 1 day ago Hybrid Job Permanent Competitive

Company Description

Fund services | Corporate | Capital markets | Private client | Regulatory & Compliance

We help clients succeed by unlocking new value through expertise, trust and scale. We deliver solutions that solve complex challenges faced by asset managers, financial institutions, corporates, high net-worth individuals and family offices.

With a curious mindset, we ask the right questions to get to the right solution, faster. We collaborate to win together, sharing successes and shaping the future of our global business. Our culture of support and recognition provides the tools and opportunities for you to grow, while unlocking the most value for our clients and making your mark with Ocorian.

Expertise:We deliver specialist, tech-enabled solutions for our clients grounded on deep industry expertise.

Trust: We're a trusted partner to over 8,000 clients globally. We are proud to have long-lasting partnerships with our clients.

Scale: With more than 1,500 colleagues, we operate across 20+ countries, our scale enables us to support our clients globally and locally, providing a seamless client experience across borders and service lines.

Job Description

Purpose of the role

We are looking for a highly experienced Group Data Protection Officer / Data Privacy Lawyer who is looking for a new challenge and to progress their career, who has a genuine love of data protection, who wants to work on a range of interesting projects, accelerate their professional development, can think innovatively and provide practical and commercial advice in relation to data protection.

Main Responsibilities

Reporting to Head of Group Legal & Governance you will be the designated Group Data Protection Officer (GDPO) for all data controllers and responsible for carrying out the tasks prescribed by Article 39 of the EU/UK General Data Protection Regulation. You will be expected to provide specialist, pragmatic, regulatory and legal guidance and support to ensure that Ocorian has the right policies, processes, procedures and controls in place to operate in line with its obligations under applicable data protection laws and regulations that apply to our global businesses.

The role will include:

  • Working collaboratively with the Legal Team, colleagues in Risk & Compliance, Information Technology and Information Security as well as the wider business to ensure that legal and regulatory requirements / best practices relating to data protection laws and regulations are effectively identified and implemented.
  • Reviewing, maintaining and providing guidance on the development of compliant policies, procedures, privacy notices, processes and controls to facilitate compliance with applicable data protection laws and regulations.
  • Reviewing / providing guidance on data privacy aspect of 3rd party supply contracts including carrying out data privacy due diligence on 3rd party suppliers.
  • Working closely with the wider Risk & Compliance team to provide expert guidance on key aspects of data protection, privacy risk strategy, and compliance focussing efforts on areas that present higher data protection risks.
  • Providing regular data protection compliance reports to the Information Governance & Security Committee.
  • Serving as the primary point of contact and liaison with applicable supervisory authorities in each of our jurisdictions.
  • Serving as the primary point of contact for data privacy queries in the Ocorian Group.
  • Facilitating the identification, investigation management and resolution of data protection compliance related issues.
  • Preparing relevant compliance reporting to meet both internal and external regulatory requirements.
  • Engaging with front line operational business teams to inform, advise and train our employees about our obligations to comply with data protection laws and regulations.
  • Monitoring compliance with the EU/UK GDPR and other applicable data protection laws, and with our data protection policies, including managing internal data protection activities and conducting compliance reviews.
  • Ensuring that Ocorian is appropriately registered in compliance with regulatory requirements and maintains an active Article 30 Register of Processing Activities, and responsible for driving internal audit processes.
  • Managing data privacy breaches or near misses, support the identification of the root cause, mitigations and monitor implementation to prevent recurrence.
  • Overseeing the data subject access request procedure and monitor individual rights balanced with the legitimate interests of the businesses.
  • Consulting with the business acquisition programme with due diligence support activities to ensure compliance with the applicable data protection regulations.
  • Developing and delivering data privacy training to the Ocorian Group.



Qualifications Required

Knowledge, Skills & Experience

  • Excellent understanding and knowledge of the EU and UK data protection legislation and regulatory regime and a good understanding of other major privacy frameworks and evolving legislation worldwide, with a proven history of working with other applicable data protection regulations.
  • Qualified lawyer with 10 + years of post-qualification experience and 5 + years of subject matter expertise in providing compliance support for data protection compliance, and a proven track record in carrying out monitoring reviews.
  • Previous experience in a global financial services environment with large client data sets.
  • Demonstrable experience in the application and implementation of Privacy by Design and Default, conducting Data Privacy Impact Assessments and independent assessment of data breaches.
  • Strong communication and interpersonal skills are essential; a people person skilled at building and maintaining relationships both internally and externally as well as managing key stakeholders.
  • Ability to work collaboratively with relevant stakeholders to plan, organise and prioritise activities to efficiently meet business objectives.
  • Work well under pressure, you will need to be a self-starter who will fill in gaps in your knowledge through continued professional development, and be flexible and comfortable with ambiguity and manage several tasks at the same time working to tight deadlines.
  • It's a bonus if you have but not essential to hold a data protection and /or privacy certification such as CIPP/E, CIPT, ISEB, BCS Practitioner Certificate in Data Protection or equivalent



Additional Information

All staff are expected to embody our core values that underpin everything that we do and that reflect the skills and behaviours we all need to be successful. These are:

  • We are CLIENT CENTRIC- Clients are at the centre of our world, and we're committed to providing expertise and specialist solutions to meet their most complex challenges.
  • We are AMBITIOUS- We aim high. We think and act globally, seizing every opportunity to delight our clients and support our colleagues - wherever in the world they may be.
  • We are AGILE- We act on our initiative to get things done for our clients. Our independence gives us the flexibility and freedom to keep things simple, efficient and effective.
  • We are COLLABORATIVE- With a curious mindset, we ask the right questions to get to the right solution, for our clients faster. We collaborate to win together and share our successes.
  • We are ETHICAL- We behave with integrity at all times and assume positive intent, building trust through responsible actions and honest relationships.


Equal Opportunities for Everyone

Please let us know if there's anything we can do to make the process easier for you. You can reach us at [email protected] .

We're an equal opportunity employer. All applicants will be considered for employment without attention to age, ethnicity, religion, sex, sexual orientation, gender identity, family or parental status, national origin, or veteran, neurodiversity or disability status.#J-18808-Ljbffr

Related Jobs

View all jobs

SCS1 Deputy Director Data Protection Officer *Deadline extended*

Regional Information Security Officer

Governance, Compliance and Risk Manager

Senior Information Security Analyst

Compliance Manager

Enterprise Security Architect

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Jobs for Non‑Technical Professionals: Where Do You Fit In?

Defence Needs More Than Hackers in Hoodies When headlines warn of ransomware crippling hospitals or deepfakes swaying elections, we picture hoodie‑clad hackers and elite penetration testers. Yet the reality of the UK’s cyber security sector is broader—and desperately short of talent. The Department for Science, Innovation & Technology (DSIT) estimates a shortfall of 11,200 cyber security professionals in 2024, while 43 % of advertised roles require governance, risk or communication skills rather than hands‑on technical exploits. Put plainly: if you can guide policy, manage projects, interpret regulations or inspire behaviour change, cyber security wants you. This guide highlights the fastest‑growing non‑technical roles, the transferable skills you already possess, and a concrete 90‑day plan to land a cyber security job—no packet sniffers required.

BAE Systems Cybersecurity Jobs in 2025: Your Complete UK Guide to Protecting Governments, Businesses and Critical Infrastructure

From securing the Royal Navy’s new Dreadnought submarines to foiling multimillion‑pound fraud rings, BAE Systems Digital Intelligence (DI)—formerly Detica—sits at the sharp end of global cyber defence. Head‑quartered in Guildford with hubs in Gloucester, Leeds and London, the 5,500‑strong DI business delivers threat‑intelligence platforms, secure‑by‑design software and 24/7 SOC services to government and commercial clients worldwide. With escalating ransomware, AI‑driven disinformation and complex supply‑chain threats, BAE plans to expand its UK cyber workforce by 20 % in 2025. Whether you’re a graduate passionate about reverse engineering, a DevSecOps engineer who loves IaC, or an incident‑response pro comfortable in high‑side environments, this guide explains how to land a BAE Systems cybersecurity job in 2025.

Cyber Security vs. Ethical Hacking vs. Security Analysis Jobs: Which Path Should You Choose?

In an era where data breaches, ransomware attacks, and sophisticated digital threats dominate headlines, the demand for skilled cyber security professionals has never been higher. From global corporations to small businesses, organisations are scrambling to protect their systems, networks, and data from malicious actors. If you’ve been exploring cyber security jobs on www.cybersecurityjobs.tech, you’ve likely encountered various specialised roles—Ethical Hacking (often termed Penetration Testing), Security Analysis, Security Architecture, Incident Response, and more. Yet many job seekers and technology enthusiasts are unsure how these fields overlap or which one is right for them. In this in-depth guide, we’ll demystify three core disciplines—Cyber Security, Ethical Hacking, and Security Analysis—outlining the skills each requires, the responsibilities you can expect, salary ranges in the UK, and typical day-to-day activities. By the end, you’ll have a clearer understanding of these roles, helping you decide which path to pursue in this fast-growing industry. And when you’re ready to take the next step, head over to www.cybersecurityjobs.tech to explore the latest openings and find your perfect match.