Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Privacy and Data Protection ManagerVocalink OverviewThis is an exciting opportunity to be part of Vocalink Limited, the UK company that enables the payments of 90% of salaries, 70% of utility bills, most ATM transactions and every cheque cleared in the UK. The successful candidate will become part of a high functioning team, dedicated to delivering secure and resilient services for the benefit of over 60 million citizens and the UK private, public and third sectors every day. In 2024, Vocalink is expected to process more than 14 billion transactions, with a value more than £11 trillion.
Vocalink is a Mastercard business that was acquired in 2017 and whose products include:
•\tBacs (Direct Credits and Direct Debits)
•\tThe Faster Payments System (FPS)
•\tThe LINK ATM network for cash withdrawal
•\tThe Image Clearing Service (ICS) that supports cheque clearing.
Role Overview
In this role you will be responsible for managing the first line privacy and data protection obligations for Vocalink Limited, working closely with the Global Privacy and Data Protection team and business management. Responsibilities include:
Initial project:
•\tDefine & document the VLL Data Privacy Framework, including:
o\tPolicy, processes & obligations
o\tResponsibilities across first line of defence (1 LOD)
o\tAssurance & reporting
o\tControls & control testing procedures
•\tAddress any process and control weaknesses and ensure effective implementation of identified privacy and data protection controls
Ongoing:
•\tManaging the Vocalink Privacy and Data Protection Framework
•\tManaging ‘Think Data’ internal hub page as an internal tool to communicate on privacy and data protection controls
•\tLiaising with product & business owners, providing guidance for projects, data retention, sub processing and other privacy and data protection requirements
•\tResponding to privacy and data protection queries and escalating to the Global Privacy and Data Protection team as second line of defence (2 LOD) where necessary
•\tOversee process documentation & monitoring controls and improvements
•\tManaging assurance activities
•\tMonthly dashboard reporting
•\tManaging VLL privacy and data protection audit
•\tOngoing training to business
All About You
•\tHave an experience in compliance, audit or risk management as they relate to privacy and data protection
•\tHave a practical experience in implementing privacy and data protection controls
•\tSound knowledge of UK GDPR and Data Protection Act2018
•\tUnderstanding of working in a regulated business
•\tA strong communicator both verbally and in writing
•\tAble to simplify complexity
•\tA strong team player with ability to manage stakeholders at all levels
•\tGood problem solving skills
•\tProactive self-starter who is able to work independently.
•\tBe someone who embodies the Mastercard Way
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard’s security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.