Skillnet Ireland logo

Data Protection, Governance & Compliance Specialist

Skillnet Ireland
1 hour ago
Full-time
On-site
Dublin, Leinster, Ireland
Specialists & SMEs

Skillnet Ireland is a business support agency of the Government of Ireland. Our mandate is to advance the competitiveness of Irish businesses through enterprise-led talent development. Skillnet Ireland partners with more than 57 enterprise bodies, providing talent development, upskilling and innovative business supports to 24,035 businesses and 90,136 workers throughout the country every year. The agency has been recognised as an international best-practice model by the European Commission, the OECD and the ILO, among others.

Our mission is to “help businesses in Ireland to be the best they can be, through innovative and enterprise-driven people development”.  We partner directly with companies and industry groups to ensure we understand their needs and talent priorities. We also help companies understand and embrace innovation and build business competitiveness through skills development. 

Skillnet Ireland is funded from the National Training Fund through the Department of Further and Higher Education, Research, Innovation and Science.

Skillnet Ireland is a member of the European Pact for Skills. The organisation actively participates in several skills development projects with European partners. These projects are co-funded by the European Union and support the development of digital and sustainability skills in Irish businesses and organisations. 

Role & Key Responsibilities

Skillnet Ireland invites applications for the position of Data Protection, Governance & Compliance Specialist. Reporting to the Head of Risk, Governance & Digital Transformation, the role is responsible for leading the organisation’s data protection programme, driving data governance maturity, and ensuring compliance with GDPR, the Data Protection Act 2018, and wider regulatory obligations. This role provides expert advisory support, oversees data lifecycle governance, manages data incidents and regulatory engagement, and ensures that information management practices are robust, secure, and aligned with organisational strategy. The role works collaboratively across all departments, acting as a trusted specialist and champion for privacy, governance, and responsible data management.


Key Responsiblities

Data Protection

GDPR Compliance & Oversight

  • Act as statutory Data Protection Officer (DPO)

  • Monitor and oversee organisational compliance with GDPR and the Data Protection Act 2018.

  • Conduct audits, risk assessments, policy reviews, and compliance monitoring activities.

  • Lead awareness‑raising initiatives and deliver staff training on data protection obligations.

  • Maintain data protection policies, procedures, and guidance.

Incident, Breach & Query Management

  • Manage the organisation’s response to data incidents and personal data breaches, including investigation, documentation, risk evaluation, and regulatory notification to the Data Protection Commission (DPC) where required.

  • Oversee responses to Subject Access Requests (SARs) and other Data Subject Requests (DSRs), ensuring timely and compliant outcomes.

  • Act as the primary point of contact for data protection queries from staff, service users, and third parties.

Advisory & Governance

  • Prepare and present regular reports to the Audit & Risk Committee on the effectiveness of the organisation's data protection and information governance framework.

  • Provide expert data protection advisory services across the organisation.

  • Conduct and review Data Protection Impact Assessments (DPIAs), ensuring risks are identified and mitigated.

  • Lead Privacy by Design reviews for new systems, processes, and projects.

  • Review procurement processes, contracts, and data‑sharing agreements to ensure GDPR‑compliant terms and safeguards.

Vendor & Supplier Risk Management

  • Conduct supplier assessments and ongoing monitoring of third‑party processors.

  • Ensure vendors meet GDPR requirements, including appropriate technical and organisational measures.

Regulatory Engagement & Reporting

  • Act as the designated point of contact for the Data Protection Commission.

  • Manage regulatory reporting obligations, including breach notifications and compliance documentation.

  • Maintain Records of Processing Activities (RoPA) and ensure audit‑ready documentation.

Data Governance

Data Governance Leadership

  • Lead the organisation’s data governance framework, ensuring data is managed as a strategic asset.

  • Establish governance structures, roles, and responsibilities that support effective oversight of data.

  • Promote a culture of responsible data use, quality, and stewardship.

Data Lifecycle Governance

  • Oversee governance of the full data lifecycle—from creation and collection through storage, use, sharing, archival, and deletion.

  • Implement data retention and disposal schedules aligned with legal and operational requirements.

  • Support data classification, metadata standards, and data quality controls.

Information Management Practices

  • Maintain information management policies, standards, and procedures.

  • Ensure consistent, secure, and compliant handling of information across systems and teams.

  • Oversee information architecture, data mapping, and documentation.

  • Collaborate with IT and security teams to ensure information management supports organisational strategy and risk management.

Compliance & Risk Management

  • Support organisational compliance with relevant legislation, regulatory requirements, and internal policies.

  • Contribute to enterprise risk management activities, including identification, assessment, and mitigation of data‑related risks.

  • Provide compliance reporting to senior management and governance committees.

  • Support internal and external audits, ensuring evidence, documentation, and corrective actions are managed effectively.

The Individual

Qualifications

  • A third‑level qualification in a relevant discipline (e.g., business, law, public administration, risk management, information systems).

  • Strong knowledge of GDPR, the Data Protection Act 2018, and data governance principles, with a certification in these disciplines desirable

  • Professional certifications such as CIPP/E, CIPM, CDMP, or equivalent.

Experience & Expertise

  • Experience in data protection, compliance, information governance, or risk management.

  • Demonstrated ability to manage data incidents, DPIAs, and regulatory engagement.

  • Experience in vendor risk management or procurement governance.

  • Background in public sector, regulated environments, or organisations with complex data ecosystems.

Competencies

  • Strong analytical, organisational, and problem‑solving skills.

  • Excellent communication skills and ability to work collaboratively across teams.

  • Ability to operate with independence, professional judgement, and discretion.

Application Details

Applicants are invited to submit their application through the Skillnet Ireland Careers page and should include:

  • A comprehensive CV

  • A short application letter (maximum two pages) outlining key achievements and demonstrating how their skills, experience, motivation, and values align with the requirements of the role

Closing Date: 5.00 p.m., Monday, 10th August 2026.

Selection Process

  • Shortlisting based on application materials

  • Preliminary interview

  • Final competency‑based interview, which may include a written exercise and strategic presentation

  • Comprehensive reference checks

An attractive and competitive package will be offered to the successful candidate.

Skillnet Ireland operates a hybrid working model for roles that meet business and suitability criteria.
Skillnet Ireland is an Equal Opportunities Employer and values equity, diversity and inclusion.

If you require reasonable accommodation during the application process, don't hesitate to get in touch with us.