Privacy & Permissions Specialist
About the assignment
You bridge privacy and access control in a role that's increasingly critical as organisations handle more personal data and comply with stricter regulations.
You'll design consent frameworks, manage data subject rights workflows, and ensure permissions align with privacy principles. Your work directly impacts how personal data flows through systems—and how confidently people trust the organisation.
This is a strategic role where technical knowledge meets privacy governance. You'll report to leadership and influence security architecture decisions.
Your responsibilities
- Design and maintain privacy-by-design principles in identity and access management systems
- Build consent management and data subject rights request workflows
- Conduct data processing impact assessments and document ROPA (Record of Processing Activities)
- Audit user access rights against privacy policies and regulatory requirements
- Collaborate with GRC and security teams to align IAM strategy with GDPR, AI Act, and sector regulations
- Manage third-party permission audits and vendor data processing agreements
- Document and communicate privacy controls to compliance and board-level stakeholders
Tech Stack & Tools
Platforms & Tooling
Frameworks & Standards
Cloud & Infrastructure
Methodologies
Certifications (preferred)
Must-haves
- 5+ years in privacy, IAM, or GRC roles with hands-on compliance experience
- Deep knowledge of GDPR and privacy-by-design principles
- Experience with consent management platforms or IAM governance
- Strong understanding of data processing, ROPA, and DPA frameworks
- Ability to translate privacy requirements into technical controls
Nice-to-haves
- Background in both privacy law and technical access control
- Experience with OneTrust, SailPoint, or similar platforms
- Familiarity with AI Act and emerging privacy regulations
- Board-level reporting and stakeholder management experience
What we offer
- Shape privacy strategy in an organisation handling sensitive personal data
- Work at the intersection of privacy, security, and compliance
- Direct influence on regulatory strategy and board decisions
- Exposure to emerging regulations (AI Act, NIS2, DORA)
- Continuous learning in a rapidly evolving field
- Personal guidance from a dedicated MVPeople consultant who knows your niche
The process
Introduction
Phone call with your MVPeople consultant (within 24 hours)
Match & Brief
We discuss the assignment in detail and prepare you
Client meeting
Introduction to the client
Start
Contracting and onboarding
Details
Type
Consultancy
Location
amsterdam
Work model
Hybrid
Level
Senior
Industry
overige
Posted
10 June 2026
Contact
MVPeople Group
jobs@mvpeoplegroup.com