
Data Privacy Counsel
Cantourage UK
full-time
Posted on:
Location Type: Hybrid
Location: United Kingdom
Visit company websiteExplore more
Salary
💰 £80,000 - £90,000 per year
Tech Stack
About the role
- Own and improve Montu UK’s privacy compliance framework (UK GDPR, DPA 2018, PECR and healthcare information requirements).
- Maintain core privacy artefacts (RoPA, policies, DPIA framework, retention, cookie/marketing practices) and produce clear internal reporting.
- Act as the UK privacy SME across the business, translating regulation into workable outcomes.
- Advise senior leaders and cross-functional teams on privacy-by-design and data ethics.
- Support new and existing products/workflows through DPIAs/LIAs, risk assessments and pragmatic controls.
- Guide on controller/processor roles, vendor due diligence, cybersecurity expectations and international transfers.
- Draft, review and negotiate DPAs, data-sharing agreements and privacy/security schedules across commercial and vendor contracts.
- Serve as DPO for Montu UK group companies and act as primary contact for the ICO on UK processing activities.
- Build a strong privacy culture through training, awareness and simple guidance that teams actually use.
Requirements
- UK-qualified solicitor/barrister with c. 3–6 years PQE focused on privacy/data protection (in-house or private practice).
- Strong working knowledge of UK GDPR, DPA 2018, PECR and handling special category health data in regulated contexts.
- Proven experience designing or running privacy compliance programmes (RoPA, DPIAs, policies, training, incident readiness).
- Confident drafting/negotiating DPAs, data-sharing agreements and privacy/security provisions.
- Comfortable operating autonomously in a high-growth, mission-driven environment and influencing technical and non-technical stakeholders.
Benefits
- Training
- Health insurance
- Flexible working hours
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
UK GDPRDPA 2018PECRDPIA frameworkRoPAdata protection complianceprivacy compliance programmesdrafting DPAsdata-sharing agreementsrisk assessments
Soft Skills
communicationinfluencingautonomyadvisingtrainingcollaborationproblem-solvingleadershiporganizationalnegotiation
Certifications
UK-qualified solicitorbarristerPQE