Senior Compliance Specialist
Location: Amsterdam Hybrid
Hours: Full-Time
Contract: 6 Months (Freelancers only)
Languages: English
About the Role
For one of our international partners we are seeking an experienced Senior Compliance Specialist to design and operationalise a robust privacy governance and violation management operating model. This role will establish the decision-making framework, accountability model and operational processes required to transform privacy monitoring activities into an efficient, measurable and sustainable privacy risk management capability. Working closely with Privacy Legal, Risk, Security, Compliance and Engineering stakeholders, you will define how privacy violations are classified, owned, escalated, remediated and reported across the organisation.
What You'll Do
Design the Privacy Violation Operating Model
- Create and implement a formal privacy violation governance framework
- Define decision trees for privacy incidents and policy violations
- Establish remediation, acceptance and escalation pathways
Build Accountability Structures
- Define ownership across Privacy, Risk, Engineering and Legal teams
- Establish RACI models and governance forums
- Formalise exception approval and escalation processes
Manage High-Risk Privacy Issues
- Track and oversee High and Very High risk violations
- Ensure compliance with remediation targets and SLAs
- Escalate overdue or critical issues appropriately
Develop Metrics and Reporting
- Define KPIs and KRIs for privacy risk management
- Create dashboards covering:
- Open violations
- Exception aging
- SLA performance
- Remediation effectiveness
- Produce evidence suitable for audit and regulatory review
Drive Continuous Improvement
- Analyse recurring privacy risk patterns
- Identify root causes and systemic control gaps
- Feed recommendations into policies, controls and engineering backlogs
Enable Business Adoption
- Facilitate workshops across Legal, Risk, Security and Product teams
- Develop operating procedures and response playbooks
- Support transition and handover into business-as-usual ownership
What You Bring
- Significant experience in Privacy, Risk Management, Compliance or Governance
- Strong knowledge of privacy regulations including GDPR
- Experience establishing governance frameworks and operating models
- Proven ability to work with Legal, Compliance, Security and Technology stakeholders
- Experience designing KPIs, KRIs and risk reporting mechanisms
- Strong facilitation and stakeholder management capabilities
- Excellent documentation and process mapping skills
Nice-to-Have Skills
- Privacy programme management
- GRC framework experience
- Control design and risk assessments
- Regulatory audit support
- Data Protection Officer support experience
- Enterprise risk management methodologies
Benefits & Perks
- Opportunity to build a privacy capability from the ground up
- High visibility with senior stakeholders
- Strategic impact across the organisation
- Complex and business-critical privacy governance challenges
- Collaborative environment spanning Legal, Risk and Technology functions