We are hiring an in-house Privacy Officer for the Digital & Finance domain. You will be the key contact for privacy matters across Digital/IT, Internal Audit & Risk, Finance, and Procurement. Your focus is to ensure compliant, controlled, and well-documented processing of personal data for employees and customers, aligned with GDPR/AVG.
You will work closely with the Data Protection Officer (DPO), privacy legal counsel, other privacy officers, and Security/CISO colleagues.
Conditions
- Contract: Permanent (in-house)
- Hours: 32–40 hours per week
- Salary: €4,856–€6,937 gross per month (based on 40 hours/week)
- Work mode: Hybrid — home working supported; regular collaboration in the ’s-Hertogenbosch office (weekly team presence)
- Benefits (high-level): pension contribution, personal budget, annual allowance (per policy), home office setup + daily home-working allowance, laptop/tablet + phone, travel allowance/public transport for work, vitality budget, training and development opportunities
What you will do
- Advise stakeholders at tactical/strategic level on privacy topics in complex change projects and business processes.
- Translate group privacy policy, procedures, and templates into domain-specific frameworks and ensure adoption.
- Handle and coordinate personal data breach notifications (dataleks), including impact/risk assessment in consultation with the DPO.
- Draft, review, and support negotiation of DPAs/processing agreements and contribute to tender/procurement processes.
- Maintain the Record of Processing Activities (RoPA) / processing register and related documentation.
- Identify and monitor sensitive and high-risk processing activities, proactively and on request.
- Perform DPIAs for high-risk processing (often in IT, Audit, and Risk contexts) and define risk-reducing measures.
- Co‑maintain privacy notices and support communication to relevant stakeholders.
- Coordinate privacy contact networks, knowledge transfer, and support awareness activities.
- Align privacy and information security with Security Officers and the CISO team, especially around vendor oversight and processor controls.
What you bring
- 3+ years of experience as a Privacy Officer or in a comparable role (data protection/privacy).
- Strong knowledge of GDPR/AVG and practical application in an organization.
- Experience with DPIAs and maintaining RoPA/processing registers.
- Experience drafting/reviewing DPAs/processing agreements and working with vendors/processors.
- Able to work with multiple stakeholder groups (Digital/IT, Finance, Procurement, Audit & Risk, Security).
- Higher education degree (HBO/University level or equivalent).
Nice to have
- IAPP certifications: CIPP/E, CIPM, and/or CIPT.
- Understanding of IT processes and digital delivery environments.
- Experience in the energy/utility sector.
Hiring process
Typically two interviews; an assessment/selection step may be part of the process.
Interested?
Apply via LinkedIn or message me with your CV / LinkedIn profile and availability.