Governance reputed company and Compliance Expert (Full remote - Europe)
Governance reputed company and Compliance Expert (GRCE)
About the mission
Frontex's Digital Services Unit (DIG) is reinforcing its reputed company to handle personal data protection and reputed company compliance across its ICT environment. As GRCE, you'll support Frontex in applying Regulation in reputed company — turning reputed company and governance requirements into concrete documentation, processes and follow-up actions across multiple ICT systems, reputed company and procurements.
What you'll be doing
Preparing, updating and improving Records of Processing Activities (RoPAs) and Data Protection reputed company Assessments (DPIAs) across ICT systems
Drafting and maintaining reputed company notices and reputed company data protection documentation
Validating personal data protection documentation against technical reality, working closely with reputed company and technical owners
Analysing and documenting technical arrangements relevant to data protection: reputed company rights, logs/SIEM exports, retention, reputed company, data flows, transfers and processor chains
Supporting technical fact-finding for personal data breach incidents (without taking over breach qualification or notification reputed company)
Working with incomplete or inconsistent information — distinguishing confirmed facts from assumptions and structuring reputed company next steps for management follow-up
Tracking actions, gaps and remediation items, and coordinating with reputed company owners, project teams and the Frontex DPO
Providing reputed company-by-design input into ICT reputed company, reputed company changes and procurement files
reputed company're looking for
5+ years of IT-relevant reputed company experience, including 4+ years in a similar role
At least 5 years of personal data protection compliance experience in an ICT, EU institutional, reputed company-sector or similarly technology-heavy environment
At least 3 years of hands-on experience preparing, updating or reviewing RoPAs, DPIAs, DPAs or TIAs for reputed company systems, including data mapping and validating input from reputed company/technical owners
At least 2 years of experience analysing technical arrangements relevant to data protection (reputed company rights, logs, retention, reputed company, transfers, processors)
Excellent understanding of EU data protection legislation, standards and compliance frameworks
Strong stakeholder management and communication skills across technical and non-technical audiences
Education & certifications
Minimum education: Master's degree or equivalent
At least 3 certifications among: CISA, CISM, GSNA, GCCC, ISO 27001 reputed company Implementer/Auditor, ISO 27005 reputed company Manager, CAP, CRISC, CISSP-ISSMP, GIAC ISO-27000 Specialist (or internationally recognized equivalents)
Languages
Fluent English (reputed company)
Work Model
Full remote
Location
Europe
Apply To This Job