Data Protection and Privacy Specialist

Aggregate function:  Shared Services
Business Area:  Legal _VOIS
Posting Country:  Romania
Date Posted:  24 Nov 2023
Full Time / Part Time:  Full Time
Contract Type:  Permanent

At Vodafone, we’re working hard to build a better future. A more connected, inclusive and sustainable world. As a dynamic global community, it's our human spirit, together with technology, that empowers us to achieve this. 

We challenge and innovate in order to connect people, businesses, and communities across the world. Delighting our customers and earning their loyalty drive us, and we experiment, learn fast and get it done, together.

With us, you can be truly be yourself and belong, share inspiration, embrace new opportunities, thrive, and make a real difference.

Role purpose:

Vodafone Intelligent Solutions (_VOIS) has businesses in India, Egypt, Hungary, Romania Albania and Spain. _VOIS is a key element in Vodafone’s broader programme to transform, standardise and digitalise the management of various processes across commercial activities such as Customer Operations, Business, Corporate Functions, IT & Networks, and support functions such as Finance, HR and the security teams. The _VOIS strategy is underpinned by the ‘safe, secure and compliant’ agenda which is its license to operate for serving Vodafone local markets and group functions.

The DPPO is a key role to ensure compliance with privacy laws and regulations (incl. GDPR), with Group policies and guidelines and with _VOIS EU standards by creating and implementing local policies and procedures, creating, and operating internal controls and processes in the area of Data Privacy within the _VOIS EU Shared Service Centre.

The role reports directly to the Head of Legal _VOIS EU and works with the _VOIS privacy teams, supporting Head of Legal _VOIS EU to coordinate _VOIS EU related privacy task within EU privacy teams, and with _VOIS Center of Excellence (COE) and _VOIS Centre management, Service Line/Group stakeholders, _VOIS EU Centre business process, control and risk owners, privacy SPOCs within the departments and privacy teams in Group and at _VOIS.

With these activities, you will have a great impact on our business:

  • Data Privacy (DP):

-  Implement and operate the _VOIS privacy program and privacy improvement projects across _VOIS in line with Vodafone Group privacy program.

-  Manage the key deliverables of the GDPR program implementation in _VOIS RO

-  Verify that key processes/channels to identify privacy risks operate effectively (e.g. through Privacy Impact Assessment, Vendor on-boarding assessment, transition due diligence) 

-  Ensure compliance with the __VOIS Privacy Management Framework

-  Ensure data processing in _VOIS RO is in line with local and applicable international legislation.

-  Ensure that _VOIS RO organisation  is legally entitled for data sharing and processing (GDSA) and Vodafone/_VOIS personal data is protected when processed by others (NDA, DPA and other related agreements)

-     Ensure processing of personal data is documented for all local business units (Personal Data Processing Registers)

-  Conduct activities to review whether the data privacy legislative and policy requirements are followed in _VOIS RO  (e.g. contract reviews, Evidence Based Testing “EBT”)

-  Ensure that privacy risks are identified and addressed and logged in the Operational Issue register (e.g. through Privacy Impact Assessment, Vendor on-boarding assessment, Transition due diligence) 

-  Ensure all identified privacy risks are assigned to an owner and with proper mitigation/acceptance in the Operational Issue Register.

-  Ensure that identified risks and their mitigation statuses are reported to the local function management and _VOIS Leadership

-  Ensure data privacy incidents are identified (and underlying monitoring capabilities exist) across all relevant departments, incidents are investigated properly and reported regularly

-  Engage SPoC community and provide them with appropriate level of trainings, information, advisory and provide feedback on their effectiveness.

-     Implement proper awareness raising around data privacy requirements in _VOIS RO

  • Inter-functional Relationships”

-  Interact with _VOIS EU and _VOIS for all aspects of data privacy and with Vodafone Group based on the ways of working agreed with  _VOIS

-  Liaise with Internal Audit

-  Liaise with Information Security and Corporate Security

-  Ensure that Business and Support functions and Process Owners and others involved in the DPP activities are fully aware of their responsibilities and delivering against expected timelines and in quality

-  Liaise with other Vodafone Companies to ensure that DP requirements are met

-  Single Point of Contact for all privacy matters across the centre and actively supports _VOIS RO organization level compliance efforts

-     Interacts with other centres Spocs for sharing and considering good practices

  • Leadership and Teamwork:

-     Educate and increase awareness of all VF Group and _VOIS EU governance and control procedures and processes, privacy initiatives ensuring total adherence

  • to deliver improvements and capabilities as per priorities in the _VOIS EU location therefore supporting the _VOIS EU privacy teams, at other _VOIS EU locations (Spain, Albania, Hungary ) based on the instruction of the line manager
  • Acting as a delegation of Authorities with _VOIS EU Privacy team when it is needed an requested by _VOIS EU head of Legal .

With these skills, you are a great candidate:

  • University Graduate with Economics/Legal Professional Qualification
  • 5-7 Years post qualification experience in a business/ risk/compliance/internal audit/legal environment
  • Strong Team leadership skills. Inspires, motivates and delivers.
  • Knowledge of local and international Privacy/Data management and protection standards
  • Knowledge of risk assessment management and related frameworks (such as ISO, COSO and COBIT)
  • Experience in Shared Service environment with the focus to identify and streamline processes and central controls
  • Exposure to working with Senior Management
  • Problem solving and Decision making
  • Fluency in English
  • IT Literacy

Sounds like the perfect job? We’ve got even more to offer:

  • Work from home - a hybrid approach
  • Medical and dental services for you and your family
  • Life and hospitalization insurance 
  • Dedicated employee phone subscription 
  • Special discounts for gyms and retailers 
  • Annual Company Bonus 
  • Ongoing Education – we continuously invest in you to ensure you have everything needed to excel on the job and enhance your skills 
  • You get to work with tried and trusted web-technology 
  • Getting in on the ground floor of a technology changing company 
  • Flexible Vacation – Take time off when you need it, we trust you! 
  • Special Paternal Program (4 months of paid leave for fathers of newborns)

Not a perfect fit?

Worried that you don’t meet all the desired criteria exactly? At Vodafone we are passionate about Inclusion for All and creating a workplace where everyone can thrive, whatever their personal or professional background. If you’re excited about this role but your experience doesn’t align exactly with every part of the job description, we encourage you to apply as you may be the right candidate for this role or another role, and our recruitment team can help you see how your skills fit in.

Vodafone is committed to attracting, developing and retaining the very best people by offering a motivating and inclusive workplace in which talent is truly recognised and rewarded. We are committed to promoting Inclusion for All with the belief that diversity plays an important role in the success of our business. We actively encourage everyone to consider becoming a part of our journey.