Job Description: Privacy & Data Processing Compliance Specialist
The role involves identifying all processes, products, assets, and third parties within a business area where personal information is processed. The goal is to perform risk assessments and implement control measures to ensure compliance with applicable privacy legislations.
Key responsibilities include:
- Documenting processing activities: Create process/product hierarchies and maintain accurate data flow maps within the Record of Processing Activities (RoPA).
- Conducting assessments: Evaluate existing organizational processes, products, services, apps, and systems for privacy risks.
- Re-assessment of high and medium risk activities: Re-evaluate risk levels and control effectiveness periodically or upon significant changes.
- Privacy impact assessments: Perform Privacy by Design & Assurance assessments for new or modified processes, products, and systems to identify and mitigate risks before launch.
Key accountabilities and decision ownership
- Process Mapping: Identify primary records per PRM reference model and link processes accordingly.
- Product Catalogue Management: Ensure an up-to-date product catalogue with standard references.
- Re-assessments: Conduct re-assessments of processes, products, and assets every three years or after significant changes.
- Record Maintenance: Keep processing activity records current in the Personal Data Processing Register (PDPR), ensuring quality standards are met.
- Assessment Quality Assurance: Ensure all privacy assessments meet quality criteria.
- Data Flow Mapping: Maintain up-to-date data flow diagrams showing relationships and process hierarchies.
- Assets Risk Assessments: Conduct necessary risk assessments for assets.
Performance Indicators
- Maintenance of a comprehensive, up-to-date PDPR.
- Quality of privacy assessments.
- Accurate data flow diagrams/maps.
- Implementation of a re-assessment plan for high & medium risk activities annually.
Qualifications and Experience
- Engineering, Science, IT, Business degree or NQF 7 equivalent.
- Relevant certifications are advantageous.
- Minimum 5 years of relevant experience, including risk and compliance, business processes, and stakeholder influence.
- Exceptional organizational and communication skills.
Desired Skills and Work Experience
- Process Management, Business Analysis, Risk Analysis, Process Modelling.
- 5 to 10 years of relevant work experience.