£60K/yr to £90K/yr
City of London, England
Permanent, Variable

Data Security and Privacy Officer

Posted by Bank of China (UK) Limited.

About Us

Bank of China London Branch is the first ever overseas Chinese financial institution in a global financial services hub. Established in 1929, Bank of China has expanded steadily in the UK and has become the first choice for both Chinese 'going-out' customers and local UK customers seeking to establish relationships with China, with branches all across the UK including the City of London, London Chinatown, Manchester, Birmingham and Glasgow.

The Bank is taking a leading role amongst UK based Chinese financial institutions and is one of the mainstream foreign banks in the European market.

**Position summary

Data and Process Management Office (DPMO) acts as the leading function for the data governance programme of the Bank in the UK. It is responsible for establishing and ensuring implementation of related policies including data governance policies and undertaking data lifecycle management to ensure data standards and data quality. As a Data Privacy Officer, you will support the Bank to ensure that its operations are compliant with GDPR, Data Protection Act 2018, Privacy of Electronic Communications Regulations (PECR) and other relevant laws and regulations. This is a full time permanent position.

Essential responsibilities include but not limited to

  • Support the information and data security team in DPM to provide Bank-wide guidance and support on data security and data protection
  • Liaise with relevant stakeholders and business lines on matters relating to data security and data protection
  • Support with the development and management of a data protection programme that is aligned with the Bank's strategic objectives, technology roadmap and applicable legal and regulatory framework
  • Draft and review internal policies to ensure UK GDPR compliance of the Bank and monitoring the implementation of the relevant policies and procedures across the Bank
  • Assist in managing internal data protection activities such as DSAR, data breach reporting, RoPA, data protection impact assessment and supplier assurance
  • Assist in providing staff training in regards to regulations and policies on data privacy
  • Ensure that business and technology owners understand the data protection obligations when designing/implementing new business processes and services or changing existing ones
  • Draft and review privacy notices for the Bank
  • Assist in drafting and reviewing relevant terms and conditions in customers, suppliers and employee contracts to ensure GDPR compliance
  • Make sure that a risk analysis has been carried out for all company projects and that this analysis contains the appropriate assessments in the privacy field
  • Respond to data protection related enquiries from within and outside of the Bank and provide pragmatic, commercially minded advice and assisting to resolve the matter being referred

Person specification

  • Degree level educated in IT, Compliance, Law, Banking, Finance or other equivalent
  • IAPP certification (e.g. CIPP/E, CIPM) is preferable
  • Experience in data privacy, cyber security or compliance function is a plus
  • Experience in drafting policies and procedures
  • Knowledge of General Data Protection Regulation (GDPR)
  • FCA Handbook knowledge: MCOBs, BCOBS, CONC
  • Knowledge of information security framework
  • Logical, structured and detail focused with the ability to manage a broad portfolio of responsibilities in a timely and proactive fashion
  • A team player who is willing to assist others when necessary and appropriate
  • Excellent communication skills

What we offer

In return, we will offer a great working environment and supported learning, a competitive salary and benefits package.

In alignment with Bank of China (UK) Limited recruitment policy, Criminal Reference Bureau and reference checks will be carried out in the event of an individual being offered a position with us.

Bank of China (UK) Limited is an equal opportunities employer.

Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.

How to apply

If you wish to apply please follow the link below (you will be redirected to the Bank's career page).

We use cookies to measure usage and analytics according to our privacy policy.