DPO

ACENSI

Brussel Hoofdstad

Sur place

EUR 90 000 - 130 000

Plein temps

Il y a 27 heures
Soyez parmi les premiers à postuler
Générateur de candidature

Obtenez une réponse de cet employeur — un CV et une lettre de motivation adaptés exactement à ce qu’il recherche.

Passez les filtres ATS

Résumé du poste

ACENSI BELGIUM is seeking a Data Protection Officer (DPO) to ensure GDPR compliance across our client’s environments within a federal public service context. The role requires monitoring data protection obligations, advising management, and ensuring independent operation without a dedicated team.

The DPO will oversee records of processing activities, DPIAs, and policy development, coordinating with authorities and internal stakeholders to maintain a robust privacy program.

Qualifications

  • In-depth knowledge of GDPR and data protection principles.
  • Minimum 8 years of professional experience in data protection.
  • 5+ years of relevant experience in personal data protection and DPIA.
  • Experience leading development of policies, guidelines, and control frameworks.
  • At least three external DPO references in large organizations.

Responsabilités

  • Monitor GDPR compliance and advise management across departments.
  • Oversee the creation and maintenance of the Record of Processing Activities.
  • Advise on DPIAs and risk mitigation measures; monitor residual risks.
  • Develop and update data protection policies and training initiatives.
  • Coordinate with Data Protection Authority notifications and incident handling.

Connaissances

GDPR knowledge
Data protection principles
Risk assessment methods
Policy development
DPO leadership experience

Description du poste

Description

Expanding steadily since its launch in 2003, the ACENSI group is an IT consultancy firm, well known for their technical and functional know-how, who specialize in Telecommunications, Media and Financial Markets, as well as in the Energy industry. ACENSI guides businesses in evolutionary IT projects from the initial strategies through to their realization (Management and Project management, Development, Design and Implementation, Infrastructure). From its original focus on technical engineering and Business Analysis, ACENSI has developed new areas of expertise in Human Resource Management Systems, Business Intelligence, e-learning and Client Relationship Management. Dynamism, enthusiasm and social development are all valued at ACENSI, allowing our clients to benefit from consultants with a true blend of talents.

ACENSI BELGIUM is looking for his client a DPO (F/M/X)

Context and Reporting Line

This is a critical position as the DPO is a legally required role within a federal public service organization. The DPO operates within a staff department reporting to the Chief Executive Officer. The DPO reports directly to the department director and to the CEO. The DPO performs their function independently and does not manage a dedicated team.

The DPO role is defined by Articles 38 and 39 of the GDPR. The DPO is responsible, among other duties, for monitoring compliance with GDPR requirements. The DPO assists the Data Controller and Data Processor in assessing and ensuring internal GDPR compliance.

As part of this compliance oversight, the DPO may:

Collect information to identify processing activities.

Analyze and monitor the compliance of organizational processing activities.

Provide information, advice, and recommendations to the Data Controller or Processor.

Key Responsibilities
1. Governance & Oversight

Monitor compliance with GDPR, privacy legislation, and related regulations.

Advise management and business departments regarding data protection obligations.

Contribute to the development, documentation, and follow-up of a coherent framework of roles, responsibilities, procedures, and reporting mechanisms related to data protection within our client.

Report to senior management on the status, risks, and improvement opportunities concerning data protection.

Safeguard the independence of the DPO function and avoid conflicts of interest.

Monitor compliance with Articles 5, 6, 24, 25, 30, 32, 33-36, and 37-39 GDPR.

Advise on and monitor Privacy by Design and Privacy by Default principles.

Document advice and recommendations to ensure accountability.

Support audits, inspections, and reviews related to data protection.

Prepare periodic reports on compliance, risks, and remediation actions.

2. Record of Processing Activities

Oversee the creation, maintenance, and updating of the Record of Processing Activities (Article

30 GDPR).

Support internal departments in identifying and documenting personal data processing activities.

Evaluate processing purposes, legal bases, retention periods, and data flows.

3. Data Protection Impact Assessments (DPIA)

Advise on the need to conduct DPIAs.

Guide and validate DPIAs for new or modified processing activities.

Monitor mitigation measures and follow up on residual risks.

Advise on prior consultation with the Data Protection Authority when required.

4. Policy & Strategic Advisory Role

Contribute to the development, evaluation, and updating of our client's data protection policies.

Advise on strategic choices, new initiatives, and digital transformation projects from a data protection perspective.

Integrate data protection into broader governance, compliance, and risk management frameworks.

Identify structural gaps and formulate policy recommendations for management.

Develop recommendations regarding personal data protection and coordinate the drafting and implementation of policies, guidelines, procedures, and control mechanisms based on legislation, case law, and legal doctrine.

Advise on the assessment and handling of personal data breaches.

Monitor compliance with legal notification requirements, including reporting to the Data Protection Authority within 72 hours in accordance with Article 33 GDPR.

Advise on and monitor notifications to data subjects where required (Article 34 GDPR).

Support the organization in establishing an escalation and on-call mechanism to ensure data breaches are assessed and reported in a timely manner, including outside normal working hours.

Evaluate root causes of data breaches and recommend corrective and preventive actions.

6. Contracts & Processors

Advise on Data Processing Agreements and data protection clauses.

Monitor GDPR compliance of processors and business partners.

Identify privacy risks in outsourcing arrangements and partnerships.

Act as the primary contact point for the Data Protection Authority.

Collaborate with other supervisory authorities where relevant.

Participate as a member of our client's Information Security Committee (monthly meetings).

7. Awareness & Training

Develop and support awareness and training initiatives regarding data protection.

Act as a point of contact for employees regarding personal data protection matters.

Contribute to building a privacy-aware organizational culture.

8. Data Protection Helpdesk Function

Act as the central point of contact within our client for all questions, notifications, and concerns related to personal data.

Serve as the first contact point for employees, management, and departments regarding questions, new projects, or processing changes.

Receive, register, and coordinate notifications of potential incidents or risks.

Function as an accessible contact point for data subjects regarding data protection matters.

Must-Have Requirements
Experience & Expertise

Demonstrable in-depth knowledge of GDPR, personal data protection principles, and related legislation.

Sufficient legal affinity to analyze and advise on contractual clauses, Data Processing Agreements, and cooperation agreements related to data protection.

Minimum 8 years of professional experience.

Minimum 5 years of relevant experience in personal data protection.

5 to 7 years of experience with risk assessment methodologies (such as DPIA models).

4 years of technical knowledge related to secure data exchange between public sector organizations.

5 years of experience leading the development and implementation of policies, guidelines, procedures, and control frameworks concerning personal data protection.

At least three references from assignments performed as an external DPO within large organizations.

Nice-to-Have

Knowledge of NIS2 and CyFun.

Experience working within a public sector organization.

Strong communication and collaboration skills.

High level of integrity, particularly in handling confidential and sensitive information.

Ability to work independently and challenge incorrect decisions when necessary.

Strong analytical mindset with the ability to quickly identify risks.

Proactive and decisive approach, including anticipating issues before they become incidents and making clear decisions during data breach situations.

Ability to translate complex regulations into practical guidance for non-legal audiences.

Language Requirements

As our client operates in a federal and bilingual environment, both Dutch and French are working languages.

The DPO must:

Have perfect command of at least one of these two languages.

Be able to understand and communicate fluently in the other national language.

Additional language requirements:
Required Skills

Development and management of policies, procedures, and guidelines related to personal data protection.

Experience in personal data protection.

Experience with risk assessment methodologies (e.g., DPIA models).

Strong knowledge of GDPR, personal data protection principles, and related legislation.

Technical knowledge of secure data exchange between public sector organizations.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Data Protection Officer
Data Protection Officer

In4Matic • Brussel

Sur place
EUR 90 000 - 130 000
Data Protection Officer
Data Protection Officer

keystone-solutions • Brussel

Sur place
EUR 90 000 - 130 000
Data Protection Officer
Data Protection Officer

Keystone Solutions • Brussel

Sur place
EUR 70 000 - 110 000
Senior Data Protection professional
Senior Data Protection professional

Netherlands • Antwerpen

Hybride
EUR 70 000 - 100 000
Hybrid working model
Privacy & Information Security Consultant
Privacy & Information Security Consultant

Netherlands • Antwerpen

Hybride
EUR 70 000 - 100 000
Senior Data Protection professional
Senior Data Protection professional

Datashift • Antwerpen

Hybride
EUR 70 000 - 110 000
Data Protection Officer
Data Protection Officer

V-IT NV • Brussel Hoofdstad

Hybride
EUR 65 000 - 105 000
Privacy & Information Security Consultant
Privacy & Information Security Consultant

Data Trust Associates • Antwerpen

Hybride
EUR 60 000 - 90 000
Senior DPO - GDPR & Privacy Governance (Public Sector)
Senior DPO - GDPR & Privacy Governance (Public Sector)

ACENSI • Brussel Hoofdstad

Sur place
EUR 90 000 - 130 000
Data Protection Expert
Data Protection Expert

Orange • Brussel

Sur place
EUR 85 000 - 120 000
Company car or mobility budget
Homeworking and net allowance
Performance bonus
+2