Data Protection Officer

Job Description

Title: Data Protection Officer

Company Name: TRANSPARENCY INTERNATIONAL BANGLADESH

Vacancy: 1

Job Location: Dhaka

Employment Status: Full-time

Educational Requirements:
∎ A Master’s degree with Honours in a relevant field- Law (with courses in Data Protection Law, Cyber Law, Cybercrime, and International Law) or IT/Cyber/Digital security.
∎ Candidates with a third division or a GPA below 2 in SSC/HSC or a CGPA below 2.5 as applicable, need not apply;

Experience Requirements:
∎ At least 10 year(s)

Job Responsibilities:
∎ Planning and implementation of internal and external strategies for personal data or information protection:
∎ Take a leading role in assessing and evaluating TIB’s existing practices/policies on the collection, process and use of both manual and automated personal data or information based on the national laws of Bangladesh and international best practice such as, ‘European General Data Protection Regulation’.
∎ Develop personal data or information protection policies /guidelines/strategies based on the national laws of Bangladesh and international best practice referred to above, with the aim to ensure the protection of all kinds of personal data or information collected, processed and used in, amongst others, TIB’s research and policy activities, civic engagement, training and capacity building, knowledge management, membership programs, and social movement building.
∎ Propose/update policies/guidelines on, inter alia, consent of the data subject, management of sensitive personal data, data anonymisation and encryption, personal information or data protection of human resources/employees, Bring Your Own Device, Standard Contract Terms, employee contracts/appointment letter, TIB’s Website Cookies management, personal data transfer to any third party, binding corporate rules, cross-border data transfer and rights of the data subject, etc.
∎ Ensure the effective implementation of these strategies/guidelines/policies developed with the aim to ensure the protection of all kinds of personal data or information so collected, processed, and used.
∎ Develop mechanisms to ensure the effective maintenance of records of both manual and automated personal data or information collected, used, and processed through TIB’s research and policy activities, civic engagement, training and capacity building, knowledge management, membership programmes, and social movement building, etc.
∎ Develop a general personal Data Protection Manual based on the national laws of Bangladesh and international best practice such as, the ‘European General Data Protection Regulation’ for the future use of TIB.
∎ Develop special manuals on the management of SPAM and
∎ Phishing/Smishing/Vishing/Spear Phishing/Whaling, social media use, etc.
∎ Regularly train TIB staff including staff employed in different adjunct research/projects about the policies/strategies/guidelines and manuals on the protection of personal data or information so developed.
∎ Circulate timely emails on possible phishing attacks or cybersecurity threats.
∎ Regularly assess, monitor, and oversee the data protection practices at different levels and or stages of TIB’s project activities.
∎ Regularly monitor international legal developments on the personal data protection and inform TIB’s relevant departments suggesting directions.
∎ Report on the proper implementation of policies so adopted.
∎ Content management, and improvement of organisational policies and website:
∎ Closely work with the IT security and outreach and communication team to develop a depository of personal data in TIB’s custody.
∎ Closely work with the IT security and outreach and communication team to ensure the secured maintenance of personal data in TIB’s custody.
∎ Develop/evaluate the existing privacy policy regulating TIB’s website and suggest options
∎ for improvement based on national laws of Bangladesh and international best practice, as referred to above.
∎ Evaluate TIB’s IT security and cookies practices from personal data or information protection perspective and suggest options for improvement based on national laws of Bangladesh and international best practice as referred to above. including ISO and other relevant international standards.
∎ The incumbent will be the de facto legal officer of the organisation and will be expected to brief staff members on legal issues, potential risks and liabilities, and possible courses of action in full compliance with the law of the land. S/he must also strive to minimise risks for the organization.
∎ The incumbent will frequently need to write and review policies, guidelines, documents, research reports, contracts, agreements and more. This task makes up a significant portion of her/his day-to-day work and requires both focus and precision.
∎ It is essential for the incumbent to regularly analyse the actions and decisions of the organisation in order to identify problem areas and gaps, suggest alternative courses of action and mitigate risk as much as possible.
∎ Management of personal data or information in outreach and communications efforts:
∎ Review all communications projects (e.g., editorial calendars, campaigns, Google AdWords, branding initiatives, etc.), including setting timelines, assign roles, facilitate meetings, and liaise with external stakeholders, as needed, and suggest best practices that will ensure personal data or information protection.
∎ Advise the team that is responsible for designing, planning and managing programme and advocacy activities on possible options from personal data or information protection perspective (with logistical support from other relevant staff).
∎ Advise the team that is responsible to propose and implement outreach activities with public participation, such as, roundtables, panel discussions, and joint events with partners and stakeholders on possible options from personal data or information protection perspective.
∎ Management of personal data or information issues in Media and public information liaison:
∎ Communicate with all data subjects and relevant stakeholders after the depository of personal data is developed to inform them about various personal data or information polices that have been adopted.
∎ Take initiative to obtain consent from the data subjects from the depository of personal/official data for the personal/official data or information already collected before the adoption of various policies/strategies/guidelines.
∎ Support the implementation of strategies to increase the capacity of the concerned stakeholders on personal data protection during various workshops, training and other programmes.
∎ Provide timely strategic advice and creative solutions for dealing with privacy and sensitive personal data protection issues and stories.
∎ Undertake field visits as and when necessary.
∎ Develop and maintain contacts on behalf of TIB with, amongst others, policymakers and relevant government bodies such as, Digital Security Agency, National Computer Incident Response Team, NGOs, journalists, law enforcement agencies, online service providers and other stakeholders from home and abroad.
∎ Function as the first post of call in responding to various queries and concerns of the data subjects and other relevant stakeholders.
∎ Team supervision and management
∎ Develop a sub-group of human resource to train TIB staff on legal and security aspects of persona data protection.
∎ Manage and oversee the day-to-day operations of the Personal Data or Information Protection Team and provide support and capacity-building to staff.
∎ Perform any other work assigned by the orgsanisation.

Additional Requirements:
∎ Age 30 to 60 years
∎ A minimum of 8 years' relevant experience in the legal/regulatory compliance and IT/Cyber/Digital security sectors, preferably 5 years in managerial position.
∎ Candidates with knowledge and experience of work in governance, regulatory and compliance work with/without Privacy/Information protection/Cybersecurity certification from reputed international certification bodies will be given preference.
∎ Excellent communication skills in English and Bangla, both written and verbal, and public presentation capacity with special attention to details, accuracy, audience, and basic computer knowledge and word processing skills in both Bangla and English.
∎ Proven track record of executing high-quality regulatory and compliance work in challenging environments.
∎ Ability to learn continually, think strategically, and provide leadership that is value- and vision-driven. Ability to work in a team and openness to constructive feedback, and capacity to work in coordination and collaboration with all streams of work across the organisation covered by the project.
∎ Strong time management skills in multi-tasking imperatives with ability to prioritise complex and at times, competing goals.
∎ Ability to trouble shoot and address/solve problems independently and/or jointly as appropriate.
∎ Commitment to contributing to a workplace environment in which diversity is valued and promoted.

Salary:
∎ Grade: 4, Step: 1, Gross Monthly Salary: 163,224.00

Compensation & Other Benefits:
∎ T/A, Medical allowance, Provident fund, Weekly 2 holidays, Insurance, Gratuity
∎ Salary Review: Yearly
∎ Festival Bonus: 2

Job Source: Bdjobs.com Online Job Posting.

Application Deadline: 31 Dec 2023

Company Information:
∎ 14 Dec 2023
∎ TRANSPARENCY INTERNATIONAL BANGLADESH
∎ Address : MIDAS Centre (4th & 5th floors) House # 05, Road # 16 (New) 27 (Old) Dhanmondi, Dhaka- 1209
∎ Business : Development organization

Category: NGO/Development

:

Source: bdjobs.com