Data Privacy Officer

London, United Kingdom

Anglo American

Anglo American is a global mining company with a portfolio that spans diamonds, platinum, copper, iron ore & more.

View all jobs at Anglo American

Apply now Apply later

Company Description

Anglo American is a leading global mining company, and our products are the essential ingredients in almost every aspect of modern life. Our portfolio of world-class competitive mining operations and undeveloped resources provides the metals and minerals that enable a cleaner, greener, more sustainable world and that meet the fast-growing consumer-driven demands of the world’s developed and maturing economies.

With headquarters in London, UK, and operations located throughout the world, Anglo American is truly global. We employ more than 60,000 colleagues worldwide and run mining operations across Southern Africa, North and South America and Australia. Anglo American’s purpose is to reimagine mining to improve people’s lives and is committed to creating a Living Mine that brings positive value to the people and environment where we operate.

Job Description

Join us as a Data Protection Officer (DPO) and become the driving force behind our data privacy journey! In this exciting role, you’ll lead the charge in ensuring personal data is handled with care and compliance, while championing collaboration and innovation across the organisation. You’ll be the trusted bridge between our team, external stakeholders, and regulatory authorities, building trust and enabling progress every step of the way. If you’re ready to make an impact, inspire change, and shape the future of data protection, we can’t wait to hear from you — apply now to become a vital part of our team!

Core Responsibilities (amongst others):   

  • Lead engagement with group leadership on data protection laws, regulations, and stakeholder expectations via the Digital Solutions Governance Board.
  • Highlight risks and issues in projects and operations, and recommend controls, mitigations, and process improvements.
  • Manage the company’s data protection programme, including:  
    • The Data Privacy Policy suite and related governance and management processes.
    • Annual mandatory training and team-specific training for high-risk processing.
    • Supporting risk management processes.
    • The Register of Processing, intercompany data processing agreements, and other related matters.
  • Provide recommendations to projects on Data Privacy Impact Assessments (DPIAs), ensuring Privacy by Design and escalating high-risk items to the Group CIO for approval.
  • Act as the primary liaison with data protection authorities in host countries, handling high-risk processing, breach reporting, and regulatory requirements
  • Engage with data subjects (internal and external), managing subject access requests, privacy notices, breach notifications, cookie compliance, and other privacy-related queries.
  • Own and manage Data Privacy standard contractual clauses for supplier contracts and support negotiations through Supply Chain and Group Legal.

#LI-AB2

Qualifications

  • Bachelors degree in relevant discipline.
  • Detailed knowledge and commercial application of Data Protection Act 2018 and General Data Protection Regulation.
  • Working understanding of IT governance and risk management techniques in large enterprises.
  • Practitioner experience of key data privacy and security control frameworks (ISO27001, NIST). Up-to-date knowledge of methodologies and trends in both business and IT.
  • Detailed knowledge and commercial application of the following legislation - South Africa POPIA, Australia Privacy Act, Canada PIPEDA, China PIPL, US CCPA, Singapore PDPA
  • Practitioner experience of managing enterprise document security controls.
  • Experience of design and operations of processes for managing a data protection function, including incident management, risk and compliance management.
  • Experience of managing the Data Privacy function in a large multi-national company, with operations in the scope of EU or UK GDPR.
  • Experience of engaging with IT projects at a large scale, in companies processing records of many thousands of data subjects, including sensitive data classes (e.g. Health).

Additional Information

Who we are

We aim to lead the industry by pursuing ever safer and more responsible ways of working, demonstrating integrity and showing care and respect for people and the planet. That means we are constantly seeking new opportunities to mine and process our products sustainably, using less water, less energy and more precise extraction technologies. As the custodians of coal and other precious natural resources – diamonds (through De Beers), copper, platinum and other precious metals, iron ore and nickel – our extraordinary teams work safely and collaboratively, with the utmost consideration for local communities, our customers and the world at large.

How we are committed to your safety

Nothing is more important to us than ensuring you return home safely after a day’s work. To make that happen, we have the most rigorous safety standards in the industry. Not only that, we’re also continually investing in new technologies – from drones to data analytics – that are helping to make mining safer.

Inclusion and Diversity

Anglo American is an equal opportunities employer. We are committed to promoting an inclusive and diverse workplace where we value and respect every colleague for who they are and provide equality of opportunity so that everyone can fulfil their potential.

How to apply

To apply for this role, please complete our online application form. You will have the opportunity to upload your CV and other relevant documentation as part of the process.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Analytics CCPA Compliance Data Analytics GDPR Governance ISO 27001 NIST PIPEDA Privacy Risk management

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.