Experienced Data Protection and Privacy expert ZZP
Introduction
• Assessment & implementation Plan: A clear baseline, overview of actions and risk based priorities
• Stakeholder management: Drive stakeholder alignment, ensure sufficient priority and progress, create an overview of dependencies and priorities.
• Operating Model & Governance: Clear roles, responsibilities, ownership, decision-making processes and reporting structures defined.
• Risk & Gap Analysis: Compliance gaps, privacy risks and control weaknesses are identified. Mitigation actions with accountable owners are agreed upon.
• Work Instructions & Controls: Practical procedures, controls and guidance are developed and/or updated to ensure consistent and compliant execution of all actions and requirements.
• Assessments: Support the maintenance and improvement of key data protection requirements and risk assessments such as maintaining a record of processing activities, implementing privacy by design, reviewing DPIA’s and LIA’s.
• Implementation & Adoption: Collaborate with Tribes and 1LoD and 2 LoD teams across the organisation, identify of scalable solutions and ways to work smarter. Embed new ways of working and ensure operational adoption across relevant teams.
• Knowledge Transfer & Sustainability: Identify the need for guidance, transfer knowledge where needed, align relevant interpretations of legal obligations and requirements. Document relevant decisions and considerations and alignment.
• Final Handover Report: Deliver a comprehensive overview of achievements, remaining risks, recommendations and actions required for long-term ownership and compliance.
What should you bring to ING?
• A Bachelor's or Master's degree, preferably in Law.
• Demonstrable expertise in GDPR and privacy-related regulation, supported by relevant certifications.
• Proven experience translating regulatory requirements into operational processes, controls and practical business solutions.
• Strong organizational sensitivity and the ability to balance regulatory, business and operational considerations.
• At least 7 years of experience in data protection, privacy, compliance or risk management.
• Experience operating in a highly regulated environment, preferably within financial services.
• Strong influencing and stakeholder management skills, including the ability to engage constructively with senior management, control functions and global stakeholders.
• The confidence and professional resilience to challenge decisions when required and defend well-reasoned positions.
• An autonomous working style, taking ownership and driving initiatives from concept to implementation.
• Excellent written and verbal communication skills in both Dutch and English.
• A pragmatic mindset combined with a strong sense of accountability and delivery.
• Familiarity with ING's organization and governance structure is considered a strong advantage.
What we have to offer
-------------------------------------------------------------------------------------------------------------------------------------
Lees meer