London
3 days ago
Global Legal Counsel, Assistant Director - Ropa IR

At EY, we’re all in to shape your future with confidence. 

We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. 

Join EY and help to build a better working world. 

 

Our global data protection team is seeking a qualified data protection lawyer to advise on and coordinate data protection matters, in particular, to oversee and run the Global Record of Processing Activities (RoPA) Inventory as well as coordinate the Global Incident Response (IR) Process. This involves overseeing a team who are responsible for completing and maintaining EY´s Global RoPA and integration of Privacy Impact Assessment (PIA) records and Third Party Vendor Due Diligence (VDD) data as well as coordinating the work of other resources and EY’s Global Delivery Service (“GDS”) involved in the Global Incident Response Process.  

 

The global data protection team is responsible for the implementation and transformation of EY’s privacy compliance program, which include Binding Corporate Rules. The team works closely with all parts of the business on data protection matters, including both personal data privacy and the protection of client and EY confidential information.
    
The opportunity


As the Global Legal Counsel – Data Protection RoPA and Incident Response, you will be responsible for overseeing the Records of Processing Activity (RoPA) process and inventory as well as the management of the Global Incident Response (IR) process. You will be working closely with business stakeholders, the other members of the global data protection team, and EY Regional/Local Privacy Leaders as well as data protection resources in EY’s GDS locations in India, Argentina, Philippines and Poland. 
 

 

Your key responsibilities

 

Oversee EY’s global Data Protection program for Records of Processing Activities (ROPA) process and the management of Global Incident Response process.  Manage the ROPA program which includes an intake process to meet the requirements of Article 30 GDPR to record all processing activities in a centrally managed inventory.  Support the optimization of the ROPA process to work efficiently within the global EY organization as part of an overall  data protection management platform and adapt to new regulatory frameworks such as for AI technologies. Work and collaborate with Regional and Country DP Leaders to adapt and integrate local RoPA activities into the Global RoPA. Collaborate with key stakeholders to update, implement, and maintain IR methodology as part of the global DP program.  Communicate the Global IR plan to Member Firms, provide training, and support overall preparedness e.g. through planning and conducting of table top exercises. Lead the overall IR policy improvement and process alignments in the Global IR process. Manage a variety of internally and externally triggered global incidents in coordination with Member Firms,  Information Security., and our business Service Lines.  Communicate effectively and consistently with key stakeholders. Work with a team of data protection resources globally throughout EY; Collaborate with team efforts to raise awareness among EY personnel globally regarding the importance of compliance with data protection regulations and EY’s own privacy compliance program; Identify / flag legal and regulatory issues surrounding IR and related dataprotection issues and provide appropriate legal advice / work to implement related solutions.; Escalate to the Chief Privacy Officer and Global DPO any significant incidents, related issues, and plans for their resolution, including as applicable  implications of local data protection regulations as aligned with local counsel.y; Provide general support to the global data protection team.

 

Skills and attributes for success

 

Must be legally qualified and holding a current practicing certificate;  Between 6-8 years of relevant experience either in private legal practice or an in-house role (including proven experience in the field of data protection in cross border situations (including advising on complex matters, such as incident response,  DPIAs, etc.,); Solid knowledge in EU data protection legislation (specifically the GDPR) and ideally familiarity with the legislation of one or more other jurisdictions; Ideally, internationally recognized privacy certification, such as CIPP/E and CIPM; Experience in conducting internal investigations, and in particular data breach response investigations preferred, but not required. Strong project management skills; Excellent command of the English language;  Sensitivity to intercultural contacts and communication.

 

What we offer you   

  

At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.  

  

Are you ready to shape your future with confidence? Apply today.   

  

To help create an equitable and inclusive experience during the recruitment process, please inform us as soon as possible about any disability-related adjustments or accommodations you may need.  

 

EY | Building a better working world

 

EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.

Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.

EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.

Por favor confirme su dirección de correo electrónico: Send Email