Data Protection Officer
Core
Develop and implement data protection policies, procedures, and guidelines aligned with Saudi PDPL to ensure regulatory compliance and manage data breach response.
Role type
Data Protection Officer (DPO)
Builds
Data governance frameworks, compliance documentation, and breach response plans for the organization.
Domain
Legal compliance and data privacy within regulated sectors (finance, healthcare, telecommunications).
Deliverable
client delivery
Required skills
Saudi PDPL expertise, data governance, risk assessment, data breach investigation, regulatory liaison, employee training, privacy notice management.
Preferred skills
Experience in regulated sectors, CIPP/E/CIPM/CIPT certifications, Arabic language proficiency.
Technologies
None stated
Responsibilities
Develop and implement data protection policies aligned with Saudi PDPL; Establish a data governance framework for retention and archiving; Review and audit data activities for compliance; Guide Data Protection Impact Assessments (DPIAs); Manage data subject requests (DSARs) and complaints; Lead data breach investigations and notify regulators; Act as liaison with regulators; Provide employee training on data protection; Advise senior management on data protection strategy.
Seniority
Mid-to-Senior level, reporting to Head of Information Security