Information Security Compliance Manager and Data Protection Officer (DPO)

Tiger Resourcing Group
Birmingham
4 days ago
Create job alert

Information Security Compliance Manager and Data Protection Officer (DPO)


*Remote-first role with travel to UK and European offices if / when required*


Role Summary


Our client is seeking an Information Security Compliance Manager and Data Protection Officer (DPO) to ensure compliance with applicable Information Security Standards (e.g. ISO27001 / Cyber Essentials Plus, NIS2) as well as the General Data Protection Regulation (GDPR) and other applicable data protection laws. This role reports into the Director of Governance, Risk & Compliance and will coordinate with the Compliance department. You will oversee data protection strategies, implement policies, and ensure the secure processing of data within the organisation. The role requires strong expertise in information security compliance, data privacy, legal compliance, and risk management.


Job Responsibilities


Data Privacy Compliance & Advisory


  • GDPR Compliance:Monitor and ensure compliance with GDPR, national data protection laws, and internal privacy policies; provide internal expert advice on data protection matters and privacy risks; act as the primary point of contact with supervisory authorities (e.g. ICO, CNIL, AEPD); conduct regular privacy impact assessments (DPIAs) for high-risk data processing activities; maintain Record of Processing Activities (ROPA)
  • Policies & Training:Develop and implement privacy policies, guidelines, and best practices; develop and deliver training for employees on data protection obligations
  • DSAR:Oversee and respond to Data Subject Access Requests (DSARs), including rights to access, erasure, and rectification
  • Breach Management:Ensure breaches are identified, investigated, and reported according to applicable laws and standards
  • Audit:Conduct internal audits and ensure continuous improvement in data protection practices; support external audits and regulatory assessments
  • Assessments:Provide guidance on data privacy and information security in contracts, vendor agreements, and responsible for addressing third-party risk assessment requirements


Information Security Compliance


  • Certifications:Manage certification compliance programs (ISO27001 / Cyber Essentials Plus); lead and coordinate annual certification efforts
  • Other Cybersecurity Laws and Regulations:Support compliance efforts regarding EU’s emerging data and cyber laws (e.g. NIS2, Data Act)
  • Governance:Support ongoing information security compliance and governance activities


Collaboration & Stakeholder Engagement


  • Work closely with Legal, IT, Compliance, HR, Internal Audit, and external partners to align data protection strategies


Job Skills Requirements


Essential


  • Strong knowledge of GDPR, ePrivacy Directive, ISO27001 and national data protection laws
  • Experience in privacy law, compliance or data security
  • Familiarity with data governance, cybersecurity and IT security frameworks
  • Strong communication skills to engage with internal teams and external regulators
  • Ability to handle sensitive and confidential information with integrity


Preferred


  • Legal, IT security or compliance background
  • Certification in CIPP/E, CIPM, CIPT, CISSP or equivalent privacy or cybersecurity qualification
  • ISO 27001 Lead Auditor certifications and experience
  • Experience conducting privacy impact assessments (DPIAs) and managing data breaches


Key Competencies


  • Strong attention to detail and analytical skills
  • Ability to work independently and make risk-based decisions
  • Strong organizational skills for managing compliance documentation
  • Proactive approach to identifying and mitigating data protection risks


The above statements reflect the general details necessary to describe the principal functions of the occupation described and shall not be construed as a detailed description of all the work requirements that may be inherent in the occupation.

Related Jobs

View all jobs

Information Security Compliance Manager and Data Protection Officer (DPO)

Information Security Compliance Manager and Data Protection Officer (DPO)

Information Security Compliance Manager and Data Protection Officer (DPO)

Information Security Compliance Manager and Data Protection Officer (DPO)

Group Data Protection Manager

Head of Information Security

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Tips for Staying Inspired: How Cyber Security Pros Fuel Creativity and Innovation

Cyber security professionals face a rapidly changing digital landscape, where new threats emerge almost daily and the stakes—protecting critical data, safeguarding personal privacy, and defending entire infrastructures—could not be higher. It’s easy to be consumed by vulnerability scans, incident response workflows, and endless compliance checks. Yet, thriving in this high-pressure environment demands more than just technical know-how. It also requires creativity and innovation, which enable you to stay one step ahead of potential attackers. So how do cyber security experts remain inspired and agile, even when the challenges can feel relentless? Below, we’ll explore ten actionable strategies to help security analysts, threat hunters, penetration testers, and security engineers maintain fresh perspectives and keep innovating. If you’re looking to sharpen your problem-solving skills and rediscover the spark that drew you to cyber security in the first place, these tips can guide you toward a more fulfilling and impactful career.

Top 10 Cyber Security Career Myths Debunked: Key Facts for Aspiring Professionals

In a hyper-connected world, cyber security is no longer an afterthought—it’s a core component of modern business, government, and everyday life. From stopping ransomware attacks to safeguarding personal data, cyber security professionals shoulder a vital responsibility: keeping digital systems, networks, and data safe. Unsurprisingly, the demand for skilled cyber security talent continues to surge, offering robust and often lucrative career paths. Yet, despite the industry’s prominence, myths and misconceptions about cyber security careers abound. Is it really just about hacking? Do you need to be a superhuman coder with years of experience? Or is cyber security just a niche field, reserved for tech giants? At CyberSecurityJobs.tech, we see firsthand how these myths deter capable individuals from entering or advancing in one of the most dynamic fields in tech. This article aims to bust the top 10 cyber security career myths—providing clear, evidence-based insights into what it really takes to thrive in this ever-evolving domain. Whether you’re a recent graduate exploring the field, a mid-career professional seeking a pivot, or simply curious about the prospects, read on to discover the true breadth and promise of cyber security careers.

Global vs. Local: Comparing the UK Cyber Security Job Market to International Landscapes

Understanding opportunities, salaries, and work culture in cyber security across the UK, the US, Europe, and Asia Cyber security has rapidly ascended from a back-office concern to a strategic priority for every industry. As data breaches, ransomware, and nation-state attacks increase in frequency and sophistication, organisations worldwide are racing to fortify their digital defences. This ongoing surge in cyber threats fuels an unprecedented demand for skilled security professionals—ranging from penetration testers and threat intelligence analysts to cloud security architects and CISOs. In this article, we’ll explore how the UK cyber security job market compares to major international hubs in the United States, Europe, and Asia. We’ll discuss job opportunities, salary bands, work culture, and provide guidance for those who might be contemplating remote or overseas positions. By understanding the nuances of each region’s cyber security ecosystem, you can make a more informed decision about where and how to advance your career in this high-impact, fast-evolving sector. Whether you’re a seasoned expert with years of experience or a career-changer eager to break into cyber security, this overview will help you navigate the global landscape. By the end, you’ll have a clearer perspective on each region’s advantages and challenges—along with practical insights for seizing the best opportunities in a field that has become mission-critical for every modern organisation.