Expoint – all jobs in one place
Finding the best job has never been easier
Limitless High-tech career opportunities - Expoint

PayPal Data Privacy Officer 
United Kingdom, England, City of London 
1528700

17.07.2025

The role of Data Privacy Officer 'DPO' for the UK is mandated by the UK Data Protection Act 2018, in which the tasks of the DPO are defined as: informing, advising, and monitoring compliance with this law, cooperating with the UK Information Commissioner's Office 'ICO' and being the point of contact for this supervisory authority. The role will form part of Global Compliance, report to the EU DPO, and have a matrixed reporting line to the UK leadership as this is a requirement of the UK law.


Essential Responsibilities:

  • Lead complex projects and problem resolution efforts related to risk management.
  • Collaborate with teams to identify and analyze risks that may impact operations and assets.
  • Develop and implement strategies for risk mitigation and compliance.
  • Assess current business trends to inform risk management practices and improvements.
  • Drive global process improvements through effective project management and stakeholder engagement.

Minimum Qualifications:

  • Minimum of 12 years of relevant work experience and a Bachelor's degree or equivalent experience.

Preferred Qualification:

  • The tasks of the DPO are defined in article 39 of the UK version of GDPR. These include informing, advising, and monitoring the data controller's compliance with the UK GDPR.
  • The role will expand to include the same tasks in relation to other privacy laws including the Privacy and Electronic Communication Regulation, and any new privacy laws, for example relating to Artificial Intelligence.
  • The DPO for the UK will also cooperate with the UK Information Commissioner's Office, serve as their primary point of contact, and help develop the regulatory relationship of trust and confidence in the UK entity(s)
  • The DPO will report on all relevant privacy matters into the UK's governance organisation, including all relevant forums, committees, and complete all associated risk and compliance assessment tasks
  • The DPO will use knowledge of the law and policy to act as a bridge between regulatory needs and competing priorities with other functional areas
  • They will support the administration of privacy compliance assessment processes, including the risk assessment and control measures within data protection impact assessments, legitimate interest assessments, purpose limitation assessments
  • They will support the EU DPO and be a key member of the Global Privacy function to help ensure global approaches are implemented and leveraged to garner business benefits such as consistency, effectiveness, policy alignment
  • They will coordinate and draft responses to regulatory enquiries and/or complaints
  • They will establish and motivate stakeholders across various levels of management by acting as a trusted privacy advisor
  • They will participate in cross functional initiatives, providing value-add solutioning and subject matter expertise on privacy relevant matters
  • They will have a high attention to detail, expert analytical skills, comfortable validating large amounts of data
  • They will advise on the privacy requirements relating to the design of customer facing products to ensure privacy by design and privacy compliance at launch
  • They will maintain expert knowledge of applicable privacy requirements and be able to apply this to the PayPal Privacy program framework, procedures and broader strategies
  • They will define any UK-specific policies, procedures, standards and training that need to be operationalized within business units in the UK
  • They will develop strong partnerships with key stakeholders from product, marketing, legal, & compliance teams.
  • They will engage in the delivery of “Data Privacy Week” and other privacy related events to raise awareness and foster a culture of Privacy including curating and planning experiential and thought-provoking events, managing budgets, and creating external/internal messaging, infographics, and visual media.
  • They will identify enterprise-wide privacy and data protection-related risks and advising on mitigation measures
  • They will maintain their professional privacy qualifications in the management and law of privacy

Our Benefits:

Any general requests for consideration of your skills, please