We’re 1st Central, a market‑leading insurance company utilising smart data and technology at pace. Rapid growth has been based on giving our 1.4 million customers exactly what they want: great value insurance with an excellent service. And that’s the same for our colleagues too; we won Insurance Employer of the Year at the British Insurance Awards 2024 and our Glassdoor score is pretty mega too! At 1st Central, data sits at the heart of everything we do, so protecting it is both a legal obligation and a core responsibility.
Role Overview
Group Head of Data Protection (DPO) – senior voice on all things data protection, advising the Executive, Boards and senior leaders, setting the strategic direction for privacy across the Group and leading a high‑performing Privacy team.
Key Responsibilities
- Build and lead a high‑performing Privacy team, creating a clear vision and building strong relationships across the Group.
- Advising the Executive, Boards and senior stakeholders on privacy strategy and governance.
- Define, scope, gain Audit Committee approval for, and deliver the Group’s data privacy programme.
- Implement the Group’s Data Protection Strategy and oversee compliance across all Group entities.
- Report to the Group’s Risk Committees on compliance position, key risks, incidents and matters requiring Board decisions.
- Act as Data Protection Officer for all Group entities where required, and be owner of the Group Data Protection Policy.
- Supervise the Privacy Team’s completion of data protection impact assessments and develop and execute relevant project plans.
- Manage an awareness‑raising and training programme to foster a data privacy culture.
- Review Data Protection clauses in client and supplier contracts and lead incident response and breach notification procedures.
- Serve as contact point with Data Protection Authorities and data subjects, advising on requests and response.
- Promote a culture of awareness of data security throughout the company.
- Maintain department risk registers, control matrices and attestations, and ensure compliance with Company policies, values and relevant regulations.
Required Experience & Qualifications
- Significant experience as a DPO or in a similar compliance role.
- Expert knowledge of data privacy legislation (GDPR, Data Protection Act 2018, PECR, etc.) and information security standards (ISO27001).
- Proven track record in leading data protection issues at a senior level.
- Strong project management experience and ability to interface with data protection regulators.
- Experience designing and implementing a data protection strategy.
- Degree level education; IAPP CIPP/E, CIPM or equivalent data privacy qualification preferred.
- Qualified lawyer and familiarity with UK, Gibraltarian, Guernsey and European data protection laws and practices.
Key Skills & Competencies
- Knowledge and application of FCA requirements, including Consumer Duty.
- Excellent analytical, communication, influencing and stakeholder management skills.
- Strong analytical and organisational skills; ability to prioritise and manage multiple tasks and projects.
- Ability to work independently with integrity and discretion.
- Team leadership and management capabilities.
- Positive, enthusiastic, proactive, resilient and self‑motivated attitude.
EEO Statement: 1st Central is an equal opportunity employer and welcomes applications from all backgrounds.
#J-18808-Ljbffr…
