Data Protection Officer

Monex Global

Manchester

On-site

GBP 70,000 - 110,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Monex Global seeks a Data Protection Officer to lead privacy governance across its international operations. The role is based in Manchester, UK, with responsibilities spanning GDPR compliance, DPIAs, data inventories and breach governance, reporting to senior management and coordinating with Legal, Compliance and IT teams.

The DPO will ensure data processing activities adhere to applicable privacy laws, maintain records, and drive privacy-by-design initiatives across product and procurement

Qualifications

  • Significant hands-on experience in data protection, privacy governance or regulatory compliance.
  • Deep knowledge of UK GDPR and EU GDPR and their practical application.
  • Experience completing DPIAs, ROPAs, LIAs and data-protection assessments.
  • Proven ability to draft and implement data protection policies and governance reporting.
  • Strong understanding of information security, third-party risk and privacy-by-design concepts.
  • Ability to translate legal requirements into clear operational controls and guidance.

Responsibilities

  • Act as the appointed DPO for Monex entities and maintain independence.
  • Advise on UK/EU privacy requirements and supervise data protection activities.
  • Lead DPIAs, transfer risk assessments and data subject rights processing.
  • Maintain data inventories, processing records and retention references.
  • Oversee data breach governance and regulatory notifications when required.
  • Provide training and awareness on data protection for staff across regions.

Skills

Data protection experience
UK & EU GDPR
DPIA experience
ROPAs
Data breach assessments
Data transfer assessments
Policy development
Info security
Third-party risk
Privacy by design
Regulatory translation

Job description

Data Protection Officer | Manchester

Monex specialises in FX risk management and international payments, helping corporate and institutional clients design tailored FX solutions to navigate currency volatility with confidence. Our team of FX specialists implement well-considered currency strategies, offering dedicated support to help clients manage their payment needs – whether for goods, services, or direct investments.

In 2023, Monex facilitated $309 billion in FX turnover, managed $10.7 billion in assets, and processed 8.5 million transactions. With offices across North America (Canada, the US, and Mexico), Asia (Singapore), and Europe (the UK, Spain, and the Netherlands), we serve over 66,000 clients worldwide.

By combining global reach with deep local market expertise, Monex enhances businesses with a suite of financial solutions and FX market analysis to help optimise efficiency, mitigate currency risk, and protect margins in an increasingly complex financial landscape. Our corporate client experience is further enhanced by our dedicated sector expertise across a range of industries.

Department Overview

The Information Security and Data Protection Governance function supports Monex in protecting client, employee, supplier and business information and maintaining compliance with applicable data protection, privacy, information security and financial services regulatory requirements. The function works across legal entities and jurisdictions to embed privacy by design, maintain data governance records, support data subject rights, oversee personal data breach response, advise on lawful processing, and provide assurance that personal data is handled responsibly and securely.

The role partners closely with Legal, Compliance, Information Security, IT, HR, Risk, Procurement, Operations, Product and regional business teams to ensure that data protection requirements are understood, documented, implemented and evidenced across Monex’s global operations.

Job Overview

As Data Protection Officer, you will provide independent, expert data protection oversight and practical guidance across Monex’s international operations. The role is based in Manchester, UK, with a global remit covering the UK, EU, Canada, USA and Singapore, and is expected to be capable of being formally notified or registered as the DPO with relevant supervisory authorities, including the Spanish AEPD where required.

You will own and mature the data protection governance framework, including DPIAs, Records of Processing Activities (ROPAs), data subject rights, data breach governance, data protection policies, training, regulatory liaison and risk-based assurance.

Key Responsibilities & Accountabilities
  • Act as the appointed Data Protection Officer for relevant Monex entities, maintaining independence, professional judgement and direct access to senior management where required.
  • Provide expert advice on UK GDPR, EU GDPR, the UK Data Protection Act 2018, PECR, Spanish LOPDGDD requirements, Dutch privacy requirements, Canadian privacy requirements including PIPEDA and Quebec Law 25, applicable US privacy requirements and Singapore PDPA obligations.
  • Be eligible and willing to be notified or registered with relevant supervisory authority registers, including the ICO and Spanish AEPD, and support equivalent DPO/contact-point requirements in other jurisdictions where applicable.
  • Own and improve the global data protection governance framework, including policies, standards, procedures, registers, templates, guidance notes and evidence packs.
  • Lead, review and advise on Data Protection Impact Assessments (DPIAs), Privacy Impact Assessments, Legitimate Interest Assessments and Transfer Risk Assessments for new suppliers, systems, products, AI use cases, projects and material changes to processing.
  • Create, maintain and periodically review Records of Processing Activities (ROPAs), data inventories, data-flow maps, lawful basis records, retention references and records of international data transfers across relevant business areas and entities.
  • Support privacy by design and default by engaging early with technology, product, change, procurement and operational initiatives, ensuring data protection requirements are built into design decisions before go-live.
  • Advise on and oversee global personal data breach governance, including assessment of risk to individuals, regulatory notification requirements, data subject communications, evidence retention and post-incident lessons learned.
  • Maintain and improve data subject rights procedures, including access, erasure, rectification, restriction, portability, objection, consent withdrawal and rights related to automated decision-making/profiling, coordinating responses across jurisdictions.
  • Review and advise on supplier data protection due diligence, Data Processing Agreements, controller/processor assessments, subprocessor governance, international transfer mechanisms and contract clauses in cooperation with Legal, Procurement and Information Security.
  • Monitor internal compliance with data protection laws and Monex data protection policies through risk-based reviews, audits, control testing, issue tracking and management reporting.
  • Design and deliver staff awareness, role-based training and targeted guidance for teams handling personal data, including HR, Sales, Operations, Compliance, IT, Product, Procurement and support functions.
  • Act as a point of contact for data subjects and supervisory authorities, coordinating with Legal, Compliance and regional specialists where local regulatory nuance or external counsel input is required.
  • Maintain a data protection risk register, track remediation actions and provide clear, risk-based reporting to senior management, relevant committees and governance forums.
  • Keep up to date with changes in privacy law, regulator guidance, enforcement trends and industry practice, translating changes into practical actions for Monex.
Business Knowledge / Technical Skills
  • Significant hands-on experience in data protection, privacy governance, regulatory compliance or information governance in a regulated or complex international environment.
  • Deep working knowledge of UK GDPR and EU GDPR, including Articles 30, 35, 37, 38 and 39, and practical experience applying these requirements in business operations.
  • Strong practical experience completing DPIAs, ROPAs, LIAs, DSRs, privacy notices, data breach assessments, data transfer assessments and supplier data protection reviews.
  • Proven ability to draft, review and implement data protection policies, procedures, training and governance reporting at a global level.
  • Good understanding of information security, third-party risk management, data classification, retention, access management, incident management and privacy-by-design principles.
  • Ability to interpret legal and regulatory requirements and translate them into clear operational controls, pragmatic guidance and business-friendly recommendations.

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Protection Officer
Data Protection Officer

Monex Technology Solutions • Manchester

On-site
GBP 70,000 - 110,000
Data Protection Officer
Data Protection Officer

Monex group • Manchester

Hybrid
GBP 65,000 - 95,000
Global Data Protection Officer – GDPR & Privacy Lead
Global Data Protection Officer – GDPR & Privacy Lead

Monex group • Manchester

Hybrid
GBP 65,000 - 95,000
Global Data Protection Officer
Global Data Protection Officer

Monex Technology Solutions • Manchester

On-site
GBP 70,000 - 110,000
Global Data Protection Officer | GDPR & Privacy Lead
Global Data Protection Officer | GDPR & Privacy Lead

Monex Global • Manchester

On-site
GBP 70,000 - 110,000
Legal Counsel
Legal Counsel

Monex Global • Greater London

On-site
GBP 60,000 - 100,000
Head of Compliance
Head of Compliance

Monex Europe Markets Ltd • Greater London

On-site
GBP 150,000 - 210,000
Deputy Data Protection Officer
Deputy Data Protection Officer

Medical Protection Society • Leeds

On-site
GBP 85,000 - 110,000
Global Data Privacy Officer
Global Data Privacy Officer

Navari Talent Limited • Greater London

Hybrid
GBP 120,000 - 150,000
Bonus
Benefits package
Data Protection Officer
Data Protection Officer

Card Factory • Wakefield

Hybrid
GBP 59,000 - 72,000
Hybrid working
Benefits package