Regional Personal Data Associate
Kuala Lumpur - Malaysia
Department:
Job Summary
Stay informed of all relevant laws regulations and industry best practices relevant to the Group. This includes tracking legislative changes regulatory updates and enforcement actions.
Provide expert guidance on data protection laws and regulations relevant to the Group including but not limited to Personal Data Protection Act of Singapore and other relevant local regulations.
Conduct personal data impact assessments and data protection risk assessments to identify and mitigate potential privacy and security risks.
Develop implement and maintain the Groups Personal Data Management Plan data privacy policies procedures and training programs.
Support the incident response process for data breaches and other security incidents including conducting investigations and implementing corrective actions.
Collaborate with cross-functional teams including legal engineering and product to ensure personal data protection and security are embedded into all aspects of the business.
Monitor emerging personal data and security threats and trends and communicate potential impacts to management and relevant stakeholders.
Identify opportunities to improve processes and policies related to data protection and cybersecurity at scale.
Provide support and guidance to internal teams on data protection and cybersecurity best practices.
Provide training and awareness programmes across the Group to strengthen personal data protection culture
Support customer inquiries and requests related to personal data protection.
Act as the data protection officer of certain subsidiaries (if the need arises) and as the primary point of contact for supervisory authorities and managing communications with regulators
Qualifications :
Deep understanding of data protection laws in our operating markets.
A personal data background with a minimum of 2 years of experience in personal data support a DPO role privacy consulting or a similar operational setting.
Privacy Certifications such as CIPP/E CIPP/A CIPM.
Experience in developing and maintaining a Personal Data Management Plan.
Customer support experience in a fast-paced and specialised environment with a keen eye for detail.
Ability to assess risk and impact from a privacy and data protection perspective.
Ability to work in a very fast-paced environment.
Ability to identify opportunities to improve processes and policies at scale and communicate emerging risks to management and cross-functional partners.
Experience in risk assessment and mitigation within a personal data and cybersecurity context.
Leadership & Project Management Skills: Able to lead others in the performance of assigned duties. Experience in managing projects related to regulatory compliance process improvement or organisational change.
Business-Oriented: Interest in business operations and a proactive approach to problem-solving.
Effective Communication: Excellent written and verbal communication skills with the ability to build relationships and explain legal concepts in plain language.
Growth Mindset: Eagerness to learn and develop skills in a fast-paced environment.
Self-starter Mindset: Takes Ownership has a Bias for Action and never-ending obsession to excel in a lean and fast-paced organisation
Additional Information :
By proceeding with your application you are adhering to our PDPA case you are interested to know more read about our Candidates Personal Data Privacy Statement.
Remote Work :
No
Employment Type :
Full-time
About Company
Carousell Group is the leading multi-category platform for secondhand in Greater Southeast Asia on a mission to make secondhand the first choice. Founded in August 2012 in Singapore, the Group has a leading presence in seven markets under the brands Carousell, Carousell Media Group, C ... View more