Data Privacy Officer | GDPR | FinTech | Healthcare Technology
Salary: £75,000 – £95,000 per year (Dependent on experience)
Location: London, UK (Hybrid – 2–3 days in office per week)
Type: Permanent – Full Time
Industry: FinTech / Healthcare Technology / Data Compliance
Job Owner: Tariq Masood
Job Description
Mastar Limited is hiring a Data Privacy Officer (DPO) on behalf of a fast-growing, data-driven organization operating at the intersection of FinTech and Healthcare Technology.
This is a key strategic position responsible for leading data protection and compliance frameworks, ensuring the organization adheres to global privacy laws including GDPR, UK Data Protection Act (DPA), and HIPAA.
The successful candidate will serve as the primary point of contact for regulatory authorities, oversee privacy governance, and guide internal teams in achieving the highest standards of data protection and compliance.
Experience
Minimum 5+ years of experience in data privacy, information governance, or compliance within regulated industries such as FinTech, healthcare, or biotechnology.
Key Responsibilities
- Lead the organization’s data protection and privacy compliance programs across business units.
 - Monitor compliance with GDPR, UK DPA, HIPAA, and other global privacy frameworks.
 - Conduct and oversee Data Protection Impact Assessments (DPIAs) and internal audits.
 - Act as the primary liaison for data subjects, supervisory authorities, and internal stakeholders.
 - Advise senior leadership on legal risks related to personal data collection, sharing, and retention.
 - Develop and deliver data privacy training programs for employees.
 - Maintain comprehensive Records of Processing Activities (RoPA).
 - Collaborate with Legal, IT, and Cybersecurity teams to assess and mitigate data risks.
 
Required Skills
- Deep knowledge of GDPR, UK Data Protection Act, ePrivacy Regulation, and global data protection frameworks.
 - Proven experience conducting DPIAs, handling DSARs, and managing privacy audits.
 - Strong communication and stakeholder management skills across legal and technical teams.
 - Familiarity with ISO 27001, NIST, or equivalent information security standards.
 - Ability to draft, review, and maintain privacy policies, data sharing agreements, and impact assessments.
 
Desired Skills
- Recognized certifications such as CIPP/E, CIPM, CIPT, or equivalent privacy credentials.
 - Experience working in regulated industries (FinTech, Healthcare, Life Sciences).
 - Background in legal advisory, data ethics, or risk management.
 - Understanding of data security, access management, and encryption controls.
 
Job Benefits
- Competitive salary with annual performance-based bonus
 - Private medical insurance and wellness support
 - 28 days holiday plus public holidays
 - Hybrid/flexible working model (2–3 days in office per week)
 - Professional training budget for certifications (CIPP/E, CIPM, CIPT)
 - Opportunity to work on cutting-edge privacy and compliance initiatives
 - Collaborative and compliance-focused company culture
 
Education
- Bachelor’s degree in Law, Data Protection, Information Security, or a related field.
 - Advanced degree or certifications (CIPP/E, CIPM) preferred.
 
Additional Details
- Experience Required: 5+ years in data privacy, GDPR compliance, or governance.
 - Work Mode: Hybrid (London-based).
 - Sponsorship: Not considered.