This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Data Protection Officer at Two Circles, you will have the opportunity to drive and shape the privacy compliance and AI governance frameworks across one of the world’s leading and fastest-growing sports and entertainment marketing and technology businesses. We are looking for someone who is comfortable working at pace and responsibly balancing the demands of maintaining a first-class privacy programme with enabling high levels of growth for Two Circles and our clients. You will be responsible for our global privacy framework being continually improved and deeply embedded within our business. Reporting to the Group General Counsel, you will act as a trusted senior advisor within the business, providing pragmatic, risk-based executive-level guidance that enables growth while ensuring strong regulatory compliance and protection of personal data. This is a hands-on leadership role, requiring a combination of strategic oversight and deep technical expertise. You will work closely with senior stakeholders across our Technology, Legal, Cybersecurity, Product, Operations and client-facing teams, embedding data protection as a business enabler. You will also mentor and support more junior privacy colleagues and data protection champions across the business, helping to raise overall maturity and capability.
Job Responsibility:
Act as a senior subject-matter expert on data protection and AI governance across the organisation
Set and deliver the global privacy strategy and roadmap
Provide clear, commercially aware advice on privacy risk, compliance and mitigation
Own and oversee core compliance artefacts, including ROPA, DPIAs, risk registers and policy frameworks
Ensure ongoing compliance with applicable regulations
Lead internal and external audits across relevant frameworks
Manage and continually improve privacy governance, controls and reporting
Manage international data transfers on a global basis
Embed Privacy by Design and Security by Design principles into product development, solution architecture and client delivery
Partner closely with Technology and Product teams to influence design decisions
Provide expert oversight of technical data protection controls
Identify and implement opportunities to automate and enhance privacy and security controls across the business
Lead and coordinate responses to data protection and information security incidents, including investigation, remediation and regulatory engagement where required
Oversee third-party and vendor due diligence, contract reviews and ongoing assurance
Support internal stakeholders with complex assurance, audit and client security questionnaires
Design and deliver training and awareness programmes to upskill colleagues on data protection and information security
Champion a strong culture of accountability, good practice and continuous improvement across Two Circles
Requirements:
Significant experience in a data protection, privacy or information governance role (typically 6–10+ years)
Strong, practical knowledge of UK GDPR, EU GDPR, PECR, CCPA and other relevant global privacy legislation
Experience working with ISO 27XXX frameworks and audits
Proven ability to lead risk management and governance activities
Strong understanding of technical implementations of data protection controls
Ability to tailor advice through a clear, risk-based and commercially pragmatic lens
Deep understanding of Privacy by Design and Security by Design and the ability to influence complex solution design decisions
Nice to have:
Familiarity with Microsoft Azure security tooling and data warehousing environments
Knowledge of AI risk and governance frameworks
Experience of, or a strong interest in, the business of sports and entertainment
What we offer:
Renowned Team Days often throughout the year
Summer Away Days
23 standard days of holiday (+ 1 Birthday, +2 for a ‘Big Life Event’ and +1 Admin Day), closure of office over Christmas (plus Bank Holidays)
Discretionary Bonus based on company performance
Performance Reviews every 6 months with discretionary salary increases
Private healthcare (Vitality) and/or Health Cash Plan (Medicash)