Job description
ABOUT KALLES GROUP:
Everyone deserves to be secure. Our mission at Kalles Group is to help secure the future for companies of all shapes and sizes.
While our expertise spans multiple disciplines, our method remains consistent: building trust and relationship with people – whether you are a client, a consultant, or–in this case–a candidate.
No matter what role you come from–whether you’re an executive or just starting your career-you can expect our highest level of attention and respect. We want to find the right fit for each role, but we also want you to find the right fit for your career.
We believe the best way to show you what our team is like is to treat you like you’re already a part of it. We hope you’ll consider joining our team of experienced professionals who are building their careers at Kalles Group—and having fun while doing it.
WHAT YOU WILL DO:
We are seeking a detail-oriented and compliance-driven Privacy Analyst to oversee and maintain the organization’s Records of Processing Activities (ROPA) in alignment with applicable data protection laws and regulations (e.g., GDPR, UK GDPR, and related frameworks). This role focuses exclusively on ensuring the accuracy, completeness, and compliance of ROPA documentation across the enterprise, partnering with business units, legal, IT, and data governance teams to uphold transparency and accountability in data processing practices.
You will:
Ropa Management & Maintenance
- Develop, update, and maintain comprehensive ROPA registers in accordance with legal and regulatory requirements.
- Review and validate data entries to ensure accuracy, completeness, and alignment with approved processing purposes, legal bases, and retention schedules.
- Coordinate with data owners and process leads to identify and document changes to processing activities, including data flows, recipients, and security measures.
Compliance & Risk Alignment
- Ensure ROPA content meets requirements set forth by data protection authorities and internal privacy policies.
- Identify inconsistencies or gaps in processing activity records and recommend corrective actions.
- Partner with Privacy Counsel to align ROPA with cross-border transfer mechanisms, DPIAs (Data Protection Impact Assessments), and security measures documentation.
Stakeholder Engagement & Training
- Serve as the primary point of contact for business units regarding ROPA-related inquiries.
- Provide guidance and training to process owners on ROPA requirements, terminology, and documentation best practices.
- Coordinate periodic ROPA review cycles to confirm continued compliance and operational accuracy.
Audit & Reporting
- Prepare ROPA data for regulatory inspections, audits, and internal compliance reviews.
- Generate reports and metrics on ROPA completeness, changes over time, and compliance status for leadership and governance bodies.
- Support remediation planning and follow-up for any deficiencies identified in ROPA-related audits.
ABOUT YOU:
Your values:
- Integrity: You believe in doing the right thing, even when it’s uncomfortable, seemingly inefficient, or costly.
- Purposefulness: You have a desire to serve others with your skillset and an openness to continuous learning and growth.
- Ownership: You stick to your commitments, follow up with action, and seek clarity in communication & expectations.
Experience:
- Bachelor’s degree in Law, Information Governance, Data Privacy, or related discipline (or equivalent work experience).
- 2+ years in a privacy, data protection, or compliance role, with direct experience managing or maintaining ROPA.
- Strong understanding of GDPR, UK GDPR, and related privacy regulations.
- Exceptional attention to detail and ability to translate complex processing activities into clear, structured documentation.
- Proficiency with privacy management tools (e.g., OneTrust, TrustArc, or similar).
- CIPP/E, CIPM, or equivalent privacy certification.
- Experience working in regulated industries such as healthcare, finance, or technology.
- Familiarity with data governance, security controls, and record retention frameworks.
WHAT WE OFFER:
- Competitive compensation with opportunities for additional incentives. The salary for this role is $100-125K/year
- Work/life balance – we know there’s more to life than work! We encourage our team to pursue other passions, get outside, and spend time with family. We work with clients and consultants to set expectations for a manageable workload.
- Opportunities to connect in person and remotely with a passionate, supportive team.
LOCATION:
This role can be remote.
HOW TO APPLY:
Please fill out the form below (including uploading your most recent resume) and we’ll be in touch! We know imposter syndrome can be a barrier to many great applicants. We hope you’ll still consider applying. That’s why we’ve made the application process as short and simple as possible.
Even if you’re not a fit for the role, you can expect to hear back from us! We want you to have the best experience as a candidate, so please feel free to share feedback at any stage of the process to [email protected].
Kalles Group is an equal-opportunity employer and does not discriminate on the basis of creed, nationality, race, ethnicity, disability, gender, or other protected class.