- Company Name
- King's College London
- Job Title
- Data Protection Officer
- Job Description
-
**Job title**
Data Protection Officer
**Role Summary**
Lead the university’s information governance strategy, developing and implementing policies for data protection, records management, freedom of information, and e‑privacy. Oversee a specialist team, ensure compliance with UK and EU legislation, manage risk, conduct breach investigations, and serve as the primary liaison with regulators such as the ICO.
**Expectations**
- Deliver strategic direction across departments for information governance.
- Maintain current knowledge of GDPR, Data Protection Act 2018, FOI, and related regulations.
- Provide expert advice to senior leadership and committees on compliance matters.
- Manage relationships with external stakeholders, regulators, and partners.
**Key Responsibilities**
- Develop and update university policies on data protection, records management, FOI, data governance, and information security.
- Lead, mentor, and coordinate a multidisciplinary team of specialists.
- Conduct risk assessments, policy audits, and gap analyses across the organization.
- Investigate data breaches, coordinate response, and act as the main contact with the ICO.
- Advise senior committees on compliance obligations and best practices.
- Facilitate training, awareness programmes, and continuous improvement initiatives.
- Ensure effective management of corporate records in line with legal and business requirements.
**Required Skills**
- In‑depth knowledge of GDPR, UK Data Protection Act, FOI, e‑privacy, and records legislation.
- Proven experience in data protection governance, risk management, and compliance oversight.
- Leadership and team‑management skills.
- Strong analytical and problem‑solving abilities.
- Excellent written and verbal communication, stakeholder management, and presentation skills.
- Project management proficiency and the ability to drive cross‑functional initiatives.
**Required Education & Certifications**
- Bachelor’s degree (or equivalent) in Law, Information Management, Computer Science, or related field.
- Professional certification in data protection (e.g., CIPM, CIPP/E, or comparable) is desirable.