
Head of Data Protection and AI Governance
Civica US
full-time
Posted on:
Location Type: Hybrid
Location: London • United Kingdom
Visit company websiteExplore more
Job Level
About the role
- - Lead, develop, and mentor the DP & AI Governance team building a high-performing function that is capable of operating at pace in a complex, regulated environment.
- - You will help define and own Civica's enterprise-wide DP & AI governance framework, ensuring it remains aligned to the evolving regulatory landscape, business strategy, and industry expectations.
- - Working closely with teams across Civica, you will embed governance across the product and AI lifecycle making compliance an enabler of innovation rather than a barrier to it.
- - You will design and own the AI Governance & DP operations roadmap, including policies, standards, role-based training, privacy tooling, and an ISO 27701-aligned Privacy Information Management System.
- - You will lead end-to-end privacy operations — from RoPA, DPIAs, and LIAs to DSARs, incidents, cross-border transfer programmes, and supplier assurance — with clear SLAs, dashboards, and oversight structures in place.
- - At a senior level, you will act as the expert reviewer for high-risk processing activities and complex privacy decisions, provide escalation support across incidents and supplier risks, and coordinate privacy and AI integration planning for M&A activity.
- - You will also provide transparent, confident assurance to the Group Compliance Officer / DPO and senior leadership on DP and AI risks, regulatory developments, and the maturity of Civica's governance posture.
Requirements
- - Deep experience building and scaling privacy and AI governance programmes, including operating a Privacy Information Management System (PIMS), managing RoPA, cross-border transfers, supplier assurance, and lifecycle governance, underpinned by strong metrics, dashboards, and stakeholder leadership.
- - Strong applied knowledge of UK and international privacy and AI regulation, including GDPR, DPA 2018, PECR, ISO 27701, the EU AI Act, and ethical AI principles — with the ability to translate regulatory requirements into practical, business-facing frameworks.
- - Proven capability in governance design, with the confidence and credibility to influence senior stakeholders and drive meaningful change across a complex, matrixed organisation.
- - A strategic thinker with a future-focused mindset — innovative, comfortable operating in ambiguity, and able to anticipate regulatory and business change before it lands.
- - Demonstrated experience leading and developing high-performing teams of data protection and AI governance professionals, with a collaborative and empowering leadership style.
- - Hands-on experience of AI risk management across the full AI lifecycle, including use-case triage, impact/risk assessment, fairness and bias testing, human oversight controls, deployment approvals, incident management, and post-deployment monitoring of AI systems for performance, drift, misuse and unintended outcomes.
- - Flexibility to accommodate global time zones where required, reflecting Civica's international operating footprint.
Benefits
- **Time Off & Work-Life Balance**
- ✔ 25 Days Annual Leave + bank holidays – plus the option to buy up to 10 extra days!** ✔ Days of Difference – Up to 3 extra days off for volunteering.** **
- **Financial Well-being & Security**
- ✔ Pension Contribution**s** – 5% employer match to support your future.** ✔ Income Protection – Up to 75% salary cover for long-term illness.** ✔ Life Assurance – 4x salary tax-free lump sum.** ✔ Critical Illness Cover – £25,000 lump sum (extendable to dependents).
- **Health & Perks**
- ✔ Private Medical Insurance – Fast access to private healthcare.** ✔ Health Cash Plan – Claim back physio, therapies & more.** ✔ Dental Insurance – Cover for routine & emergency care.** ✔ Affinity Groups – Join employee-led communities.** ✔ Bounty Bonus – Refer a friend & get rewarded.
- At Civica, we are committed to building an inclusive and diverse workplace where everyone feels valued and supported. We believe that a variety of perspectives drives innovation and excellence, and we welcome applicants from all backgrounds, cultures, and experiences.
- We are an equal opportunity employer. We do not discriminate based on race, ethnicity, religion, gender, sexual orientation, disability, age, or any other legally protected characteristic. Our recruitment process is designed to ensure fairness and transparency, so every candidate has an equal chance to contribute to our mission.
- If you need any adjustments or accommodations to participate in our recruitment process, please let us know. We are here to support you.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Privacy Information Management System (PIMS)RoPADPIAsLIAsDSARscross-border transferssupplier assurancegovernance designAI risk managementISO 27701
Soft Skills
leadershipstakeholder managementstrategic thinkingcollaborative leadershipinnovative mindsetability to operate in ambiguityinfluencing senior stakeholdersanticipating regulatory changeempowering leadership styleteam development
Certifications
ISO 27701 certification