Job Description
As our Data Privacy Associate Director, you will play an important role in shaping how privacy is embedded across Sobi. You will join our Compliance team, report to the Data Privacy and Global Compliance Director, and serve as a trusted partner to colleagues across the business. This is an opportunity to combine strategic thinking with hands‑on impact in a role that sits at the heart of responsible innovation. The position can be based at our Stockholm headquarters or elsewhere within the European time zone.
In This Role, You Will
- Shape and strengthen our Data Privacy Office by driving a centralized, consistent, and risk‑based approach to privacy across the business.
- Lead and evolve key areas of our privacy program, ensuring frameworks, processes, and controls remain effective, scalable, and aligned with business needs and regulatory expectations.
- Partner closely with the DPO and the wider Data Privacy Office to strengthen governance, support statutory responsibilities, and continuously improve how privacy is managed globally.
- Review business initiatives registered in the PIA tool and provide clear, pragmatic, risk‑based privacy guidance.
- Ensure key privacy requirements are identified and completed, including RoPA, DPIAs, DPAs, and third‑party due diligence.
- Help improve privacy processes, tools, and ways of working so they are consistent, efficient, and scalable across the organisation.
- Support and quality review DPIAs, advising on mitigation actions and helping teams navigate complex privacy questions with confidence.
- Act as a visible and trusted partner to the business, promoting privacy by design and by default through early engagement and solution‑oriented support.
- Contribute to broader DPO and Data Privacy Office activities, including training, incident support, data subject requests, monitoring, and audits.
Qualifications
You combine strong privacy expertise with sound judgment, a collaborative mindset, and the confidence to guide others through complexity. You are a trusted partner who communicates clearly, builds credibility across functions, and turns regulatory requirements into practical solutions. With a proactive, solution‑oriented approach, you bring ownership, adaptability, and the ability to navigate a dynamic environment with confidence.
To Succeed In This Role, You Will Bring
- A law degree (LL.M.).
- Extensive experience in data protection and privacy compliance, ideally within the pharmaceutical industry.
- A strong track record of supporting business functions and partnering effectively with stakeholders across an organisation.
- Deep knowledge of GDPR and broader personal data protection principles, with the ability to apply them in a practical business context.
- Hands‑on experience with privacy assessments, DPIAs, RoPA, and third‑party data protection considerations.
- The ability to translate legal and regulatory requirements into clear, pragmatic guidance for business stakeholders.
- Experience leading and developing key elements of a global privacy programme, from identifying maturity gaps to driving implementation.
- Strong written and verbal communication skills, including the ability to engage effectively with non‑legal audiences.
- Fluent written and spoken English; additional European languages are a plus.