UK remote
Data Privacy Analyst (12 month FTC)
About this role
Hello, we’re Starling. We built a new kind of bank because we knew technology had the power to help people save, spend and manage their money in a new and transformative way. We’re a fully licensed UK bank with the culture and spirit of a fast-moving, disruptive tech company. We’re a bank, but better: fairer, easier to use and designed to demystify money for everyone. Starling Bank is powered by Engine, the banking platform we built ourselves and which we are now rolling out to other banks around the world.
We employ more than 3,500 people across our London, Southampton, Cardiff and Manchester offices. To support our ongoing growth we’re looking to recruit a Privacy Analyst who will be responsible for promoting and assisting the DPO with data protection compliance across the Bank. You will support and report directly into the Data Protection Officer (DPO) and will have significant exposure across the Bank. The role represents a fantastic opportunity to join a vibrant institution and to shape the Bank’s attitude and approach to data protection.
This role is a 12 month fixed term contract. Responsibilities : Technical Compliance & Oversight: You will be working with senior team members on/or the subject matter expert for technology-driven privacy issues. This involves all of the matters within the GDPR including Article 28 and Article 32 GDPR compliance, vendor due diligence, managing Article 30 ROPA, and advising the Business areas on data privacy by design & default and the Digital & Tech teams on complex areas like cookies, data retention, and automated processing.
Strategic Risk Management: You will support the DPO and senior team members by leading DPIAs (Data Protection Impact Assessments) and assisting with or managing personal data breaches. This includes calculating risk severity and recommending corrective actions to prevent future incidents. Assurance & Reporting: Close and continuous review of the matters brought to team’s attention through various channels and deep dives with advice and operational know-how delivered with a pragmatic business focussed lens while at the same time ensuring processes and actions are in line with the law, guidance and practice.
You will conduct deep dives of the matters that relate to data protection review patterns and gaps in compliance consultation with the DPO, following up known issues, monitor internal controls, contribute to Committee level papers, produce Management Information (MI) to track the Bank’s compliance health. Collaborative Advisory: You will act as a proactive consultant for the business in whichever area or project you are engaged with in an advisory, DPIA or assurance activity, including Cybersecurity, Vendor Management, and HR.