Skip to content
MVPeople Group Logo
MVPeopleGroup
GRC & Compliance

Compliance Officer Privacy & Security

Noord HollandConsultancyHybridSenioroverige

About the assignment

You're responsible for embedding privacy and security compliance into your organization's DNA. You interpret complex regulations—GDPR, NIS2, AI Act, and ISO 27001—and translate them into actionable policies.

You partner with security teams, legal, and business units to identify gaps, manage risks, and maintain certifications. Your work directly impacts the organization's ability to operate confidently in a regulated landscape.

Your responsibilities

  • Develop and maintain privacy impact assessments (PIAs) and data protection documentation
  • Monitor regulatory changes (GDPR, NIS2, DORA, AI Act) and advise leadership on compliance implications
  • Conduct compliance audits and manage audit findings from external regulators
  • Define and enforce data handling policies, access controls, and retention schedules
  • Support ISO 27001 and relevant certification maintenance through evidence collection and process updates
  • Investigate privacy incidents and coordinate breach notifications within legal deadlines
  • Provide privacy training and awareness programs to staff and key stakeholders

Tech Stack & Tools

Platforms & Tooling

OneTrustTrustArcCollibraServiceNow GRC

Frameworks & Standards

GDPRNIS2DORAAI ActISO 27001BIO 2.0ePrivacy Directive

Methodologies

Privacy by DesignData Protection Impact Assessment (DPIA)Risk-based approach to complianceAudit management

Certifications (preferred)

CIPP/E (Certified Information Privacy Professional - Europe)CIPM (Certified Information Privacy Manager)CDPSE (Certified Data Protection Solutions Engineer)CISM (Certified Information Security Manager)

Must-haves

  • 5+ years in privacy compliance, GRC, or related compliance roles
  • Deep knowledge of GDPR, NIS2, and ISO 27001
  • Experience with privacy documentation and data mapping
  • Strong communication skills: explain complex regulations to non-technical stakeholders
  • Familiarity with compliance management tools (OneTrust, TrustArc, or similar)

Nice-to-haves

  • Experience with DORA, AI Act, or emerging regulatory frameworks
  • Background in incident response or breach management
  • Certification in privacy or security (CIPP/E, CIPM, CISM)

What we offer

  • Shape security and privacy strategy at organizational level
  • Work across departments—security, legal, business, technology
  • Stay current with evolving regulations in Europe's strictest compliance environment
  • Mentor junior compliance professionals
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

The process

1

Introduction

Phone call with your MVPeople consultant (within 24 hours)

2

Match & Brief

We discuss the assignment in detail and prepare you

3

Client meeting

Introduction to the client

4

Start

Contracting and onboarding

Details

Type

Consultancy

Location

Noord Holland

Work model

Hybrid

Level

Senior

Industry

overige

Posted

2 June 2026


Contact

Apply nowMore information
Apply now