Data Protection Officer (Part Time)
Pockit and Monese are the all-in-one money apps that make it easy for people to access and manage the financial tools that put them in control of their money. We provide vital financial services, from accounts and cards through to income advance. In October 2024, Pockit acquired Monese, creating the leading fintech for low-income individuals and those who are poorly served by traditional banks. The combined business serves over three million customers across the UK and Europe.
About us:
We're a lively, diverse and international team, based across offices in London, Newcastle, Tallinn and remote teams in central Europe. You'll be joining a team that fosters curiosity, ambition, accountability, and resilience and we know you'll be made to feel at home straight away.
What you’ll be doing:
Reporting to Group Chief Compliance & Risk Officer and MLRO, this is a permanent part time Data Protection Officer role responsible for ensuring that our data protection framework is robust, practical, and embedded across the business, while supporting fast paced product development and regulatory change in a regulated fintech environment.
You will act as the key privacy leader for the organisation, providing independent oversight and guidance on GDPR and wider data protection obligations across the UK and EU.
You will be expected to balance strategic governance with hands-on delivery, working closely with product, engineering, legal, compliance, security and operations teams.
Please note: During the initial phase of the contract, a greater time commitment may be required to support gap analysis and remediation activities, up to 4 days per week. Following this initial 6-8 week period, the position is expected to require approximately 2 days per week.
Key responsibilities include:
Acting as the appointed Data Protection Officer and main point of contact for regulators such as the ICO and EU supervisory authorities
Ensuring compliance with UK GDPR and EU GDPR across all products, systems and operational processes
Overseeing and maintaining core privacy governance artefacts including Records of Processing Activities (RoPA) and Data Protection Impact Assessments (DPIAs)
Advising on privacy risks in product development, new features, vendor onboarding and cross border data transfers
Leading incident and breach response from a data protection perspective, including assessment, escalation and regulatory reporting where required
Embedding privacy by design principles across engineering, product and operational teams through guidance, review and training
Monitoring regulatory developments and translating requirements into practical internal policies and controls
Reporting on privacy risk and compliance status to senior leadership and governance forums
What we are looking for:
Proven experience as a Data Protection Officer or senior privacy professional in a regulated financial services, fintech, payments or e-money environment
Strong working knowledge of UK GDPR, EU GDPR and associated regulatory frameworks
Experience working with supervisory authorities and handling regulatory engagement
Deep understanding of data governance, DPIAs, RoPA, DSAR handling and privacy risk management
Experience working in product led, agile environments with frequent releases and fast paced delivery
Strong stakeholder management skills, with the ability to influence technical and non technical teams
Practical understanding of cloud based systems, data architectures and modern data flows
Ability to translate legal and regulatory requirements into clear, pragmatic operational guidance
High attention to detail combined with strong judgement and commercial awareness
Relevant legal, compliance, risk or data protection qualifications such as CIPP/E or equivalent preferred
Why Join Us
Join a mission driven company working at the intersection of technology and financial inclusion.
Work with a diverse, entrepreneurial, and ambitious team.
Play a key role in shaping how privacy and trust are embedded in a fast growing fintech serving millions of customers.
Competitive compensation and benefits, including share options, Bupa private healthcare and flexible working.
Work Location
The primary place of work is Pockit’s headquarters in Marylebone, London. The ideal candidate will be able to work from this office at least once a week, though we are open to remote applicants in the UK.
- Department
- Fraud, Risk & Compliance
- Locations
- London
- Remote status
- Hybrid