Position

Data Protection Officer

Position Type:

Full Time
Cairo, Egypt

About the Role

We are seeking a motivated and detail-oriented Data Protection Officer (DPO) to join our growing Data Protection & Privacy practice. In this role, you will advise clients on privacy compliance, data protection governance, regulatory requirements, and privacy risk management across a range of sectors. This is a unique opportunity to work on complex, high-impact privacy matters, help organizations navigate their compliance obligations, and play a hands-on role in shaping a market-leading data protection service line.

 

Key Responsibilities

  • Advise clients on compliance with applicable data protection laws and regulations, including UAE PDPL, Egypt PDPL, GDPR, and other privacy frameworks across the GCC.
  • Conduct privacy assessments, compliance audits, gap analyses, Data Protection Impact Assessments (DPIAs), and Transfer Impact Assessments (TIAs).
  • Develop and implement privacy policies, procedures, governance frameworks, and compliance roadmaps tailored to client needs.
  • Manage Records of Processing Activities (ROPAs), data mapping exercises, consent management processes, and day-to-day privacy operational controls.
  • Review and negotiate privacy-related agreements, including Data Processing Agreements (DPAs), Data Sharing Agreements (DSAs), Standard Contractual Clauses (SCCs), and vendor contracts.
  • Support clients with cross-border data transfer requirements, third-party risk assessments, and vendor due diligence reviews.
  • Handle Data Subject Requests (DSRs), including access, rectification, deletion, portability, and consent withdrawal requests.
  • Assist in the investigation, management, and remediation of personal data breaches and privacy incidents, including regulatory notification obligations.
  • Liaise with regulatory authorities and support clients during inspections, investigations, and enforcement actions.
  • Deliver privacy training programmes, awareness initiatives, and workshops to build a strong culture of data protection compliance.
  • Collaborate closely with legal, compliance, cybersecurity, risk, and technology teams to deliver integrated privacy solutions.
  • Stay abreast of emerging privacy laws, regulatory developments, and industry best practices affecting clients’ operations.

 

Qualification & Experience

  • Bachelor’s degree in Law, Compliance, Information Security, Cybersecurity, Business Administration, Information Technology, or a related discipline from a recognized institution.
  • Demonstrated experience in data protection, privacy compliance, information governance, regulatory advisory, compliance audits, privacy operations, or risk management — gained within a law firm, consultancy, financial institution, technology company, or regulatory environment.
  • Strong working knowledge of the UAE Personal Data Protection Law (PDPL), Egypt Personal Data Protection Law, the General Data Protection Regulation (GDPR), and other applicable data protection and privacy regulations across the GCC region.
  • Professional certifications such as GDPR-CDPO, CIPP/E, CIPM, CIPT, ISO 27701 Lead Implementer, ISO 27001 Lead Implementer, or equivalent privacy and information governance qualifications are highly desirable.
  • Certified Data Protection Officer (DPO) certification is required.