Data Protection Lawyer (DPL)

دوام كامل في a Laimoon Verified Company في Saudi Arabia
نُشرت يوم November 1, 2024

تفاصيل الوظيفة

Do you want beneficial technologies being shaped by your ideas? Whether in the areas of mobility solutions, consumer goods, industrial technology or energy and building technology with us, you will have the chance to improve quality of life all across the globe.Welcome to Bosch.Job DescriptionAs a governance and advisory function, the data protection lawyer ensures that Bosch organization complies with relevant laws and regulations regarding the collection, use, storage, and protection of personal data. The primary focus is on safeguarding individuals' privacy rights and ensuring that the organization, via its employees, handles personal data in a lawful and responsible manner. The function also defines the internal regulatory framework for data privacy and audits the implementation in the Middle East Region.The position also minimizes risk to Robert Bosch Saudi Arabia Ltd, Robert Bosch Middle East FZE, and activities associated with these companies including, but not limited to, assisting in ensuring compliance with relevant data protection and information security regulations in the Middle East Region. Overall, data privacy lawyers play a crucial role in ensuring that organizations handle personal data in a lawful and ethical manner, protecting individuals' privacy rights, and mitigating the risks associated with data breaches and non-compliance.Provide consultancy and guidance on applicable data protection laws and regulations in the region, such as the Personal Data Protection Law (PDPL) in KSA, and help Bosch and affiliated regional organizations understand their obligations and develop compliance strategies.Prepare privacy policies and notices that inform individuals about how their personal data is being collected, used, and shared.Conduct privacy impact assessments (PIAs) where necessary, to identify and mitigate privacy risks associated with projects, systems, or processes that involve the processing of personal data.Negotiate and draft data processing agreements (DPAs) between Bosch and third-party organizations that share personal data with each other during business transactions. These agreements outline the responsibilities and obligations of each party in ensuring data protection and privacy.In the unlikely event of a data breach or incident, assist organizations in responding appropriately, including but not limited to helping management with breach notification requirements, investigations, and liaising with regulatory authorities.Conduct regular training sessions and awareness programs for employees to educate them about data protection laws, best practices, and their responsibilities in handling personal data.If a data privacy issue leads to a legal dispute or regulatory investigation, represent the organization in legal proceedings and help navigate the legal complexities involved in close cooperation with local Bosch organizations and Bosch corporate information security and data protection department (C/ISP).Develop and update the National Information Security and Privacy Regulations (NISPR) and data privacy notices based on local privacy laws.Handle data subject requests and data protection incidents as well as communication with local supervisory authorities and take actions as deemed necessary.Advise all business units on local data protection laws in the region. Audit the implementation of such requirements where necessary together with C/DSO-AE and C/DSO-TR. Support the business units as an enabler regarding the implementation of the regulations.Advise on privacy regulations during the product development phase (where applicable).Advise on data security topics and make associates aware of the risks of not handling personal data correctly.Support GBs and RO functions in documenting the requirements for Information Security Management Systems (ISMS) including, but not limited to, Data Concepts, External Partner Confidentiality Agreements, Risk Assessment, Declaration of Obligation of Personal Data Agreements, Non-Disclosure Agreements, Controller to Processor and sub-Processor agreements, etc.Assess information security risks to personal data and develop policies, procedures, and contingency plans to minimize the effects of security breaches.Rollout Regional (Middle East) Data Privacy Regulations.Work closely with the Regional Office (RO) data security team for planning and conducting regulatory and compliance-related information security and privacy audits based on the Central Directives and Guidelines.Conduct incident investigations based on reports from the BKMS tool in coordination with C/ISP-DP, C/DSO-AE, and C/DSO-TR.Advise on any other matter related to Information Security and Data Protection (ISP).QualificationsA qualified lawyer having 1-3 years of experience on privacy law topics is needed.Self-driven, motivated, and a team player.

#J-18808-Ljbffr Other Legal Services

Apply safely

To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.

Share this job
تحسين فرصتك لحصول على وظيفة خذ دورة عبر الإنترنت على الشبكات والأمان ابتداءً من الآن. تطلب ترويج10 دولار للدورات عبر الإنترنت. انظر جميع الدورات
See All Data Jobs
تعليقات وملاحظات تعليقات وملاحظات