About the assignment
You are the central point of contact for all privacy and data protection matters. You build and maintain a comprehensive privacy programme that aligns with GDPR, AI Act, and sector-specific regulations. Your role bridges business needs, technical implementation, and legal compliance.
You advise leadership on privacy risks, conduct Data Protection Impact Assessments (DPIAs), and oversee vendor data handling. You ensure the organisation responds to data subject requests efficiently and transparently. Your impact: reduced regulatory risk, strengthened stakeholder trust, and a privacy-aware culture across all departments.
Your responsibilities
- Design and maintain the organisation's privacy compliance framework aligned with GDPR and AI Act requirements
- Conduct Data Protection Impact Assessments (DPIAs) for new projects, systems, and third-party integrations
- Manage data subject rights requests and ensure timely, lawful responses within regulatory deadlines
- Develop and deliver privacy training programmes for board, management, and operational teams
- Monitor regulatory changes and advise on compliance implications for business processes
- Oversee data processing agreements (DPAs) and vendor privacy assessments throughout their lifecycle
- Investigate privacy incidents, document findings, and report to supervisory authorities where required
- Maintain privacy documentation, records, and audit trails demonstrating accountability
Tech Stack & Tools
Platforms & Tooling
Frameworks & Standards
Cloud & Infrastructure
Methodologies
Certifications (preferred)
Must-haves
- 5+ years of privacy or data protection experience in a regulated environment
- Deep knowledge of GDPR and EU privacy law; familiarity with AI Act is essential
- Experience managing DPIAs, data subject requests, and vendor assessments
- Excellent written and verbal communication; ability to translate law into business language
- Proven ability to work independently and drive privacy culture change across organisations
Nice-to-haves
- CIPP/E or CIPM certification
- Experience with OneTrust, TrustArc, or similar privacy platforms
- Background in healthcare, finance, or energy (regulated sectors)
What we offer
- Shape privacy strategy for an entire organisation—real impact on governance and culture
- Work with board and executive leadership on compliance and risk reduction
- Continuous learning: privacy law evolves constantly; you stay ahead of regulations
- Build and mentor a privacy team as the function scales
- Personal guidance from a dedicated MVPeople consultant who knows your niche
The process
Introduction
Phone call with your MVPeople consultant (within 24 hours)
Match & Brief
We discuss the assignment in detail and prepare you
Client meeting
Introduction to the client
Start
Contracting and onboarding
Details
Type
Consultancy
Location
Drenthe
Work model
Hybrid
Level
Senior
Industry
overige
Posted
8 April 2026
Contact
MVPeople Group
jobs@mvpeoplegroup.com