Data Protection Analyst (m/f/d)
- Luxemburg
- Unbefristet
- Vollzeit
- Assist the Data Protection Manager in the day-to-day operations related to the implementation of the Data Protection Program;
- Strengthen the collaboration with the various Lines of Services to translate the Data Protection control objectives enabling to identify and implement measures to embed data protection throughout the operational activities, and ensure timely implementation of project activities;
- Provide guidance to internal owners (Data Office, Project Managers, business and IT) for a consistent completion of the documentation, such as the Register of Processing Activities;
- Provide guidance to internal owners (Network Information Security, Legal department) involved into the Data Protection Program and review the quality of their related tasks handling;
- Identify gaps between data processing and PwC standards in performing data protection assessments (Risk analysis, TIA, DPIA, LIA…);
- Assist the Data Protection Manager to identify, inventory and assess the personal data processing, associated supporting assets and applicable governance measures;
- Conduct interviews/audits/surveys with different internal owners (business and IT) and/or external counterparts to assess compliance and suggest appropriate recommendations;
- Assist with remediation of control deficiencies/gaps identified during the review process;
- Seek solutions, implement and follow-up efficient technical and organizational measures to reduce risks and to ensure compliance;
- Technology watch and robust tool testing;
- Collaborate closely with IT, Data Office, Project Managers, business (HR, Infrastructure, Finance, Lines of Services…), Network Information Security and our Legal department;
- Accountable for integrity, accuracy and timeliness of reporting to Supervisory Authorities and PwC (including PwC Network);
- Maintain awareness of compliance changes that may affect PwC’s environment;
- Support the education and training of PwC’s employees so they better understand their responsibilities for compliance with PwC’s policies, standards and guidelines as well as applicable with applicable laws;
- Participate in the construction and animation of a community of Data Protection champions.
- Hold a Master’s degree in law, business, information technology, or any other relevant field;
- Bring 3 to 5 years of experience in a similar role;
- Have strong knowledge of regulatory requirements on data protection (especially the GDPR) and can apply them to data governance and IT architecture;
- Understand how PwC’s organizational units operate;
- Can quickly grasp PwC’s projects related to data governance or quality (including those within the PwC Network);
- Possess a deep comprehension of the data lifecycle and excel at acting as a Business Analyst or Risk Analyst, engaging with operational teams, critically assessing their input, and modeling operational processes (BPM);
- Are able to swiftly interpret and actively contribute to PwC’s policies and guidelines on data handling and IT security (including within the PwC Network);
- Have a foundational understanding of ISO 2700X and EBIOS, with a focus on risk analysis methodology;
- Are proficient in computer applications (Excel, Word, PowerPoint...) and familiar with Windows environments (e.g., OS, SharePoint);
- Demonstrate a solid grasp of databases and applications;
- Communicate fluently in both English and French