Group Data Protection Officer
Trust PaymentsCompany Description:
Trust Payments is an MFSA-regulated in Malta; and an FCA-regulated company in the UK. We provide a range of payments and commerce solutions, with market-leading technology and data insights.
We offer innovative payment methods and cutting-edge technologies, with a truly global presence. Our global offices cater to the most demanding business sectors, including retail, travel, hospitality, forex, and financial services.
Driving value for our clients and demonstrating genuine care for their success, is a core value of ours. We also believe in striving to build a better, more sustainable tomorrow and believe in conducting our business ethically, driving social and environmental change.
We have a passionate, collaborative, and diverse culture that recognizes that every employee contributes to our business success.
Find out more at www.trustpayments.com.
Trust Payments has an exciting opportunity for a Group Data Protection Officer (Part-Time) to join their team.Location: Malta; Hybrid- Part Time (3 days a week)
Salary: Competitive + Benefits
How will you make an impact in this role?
The Role:
The DPO is responsible for overseeing the Group's compliance with data protection laws and regulations across the EU, including the UK and Malta — covering the UK GDPR, EU GDPR, and any relevant local legislation. This role ensures that personal data is processed lawfully, transparently, and securely, and that appropriate governance frameworks and controls are in place. The DPO serves as the primary point of contact for data protection authorities, advises on privacy impact assessments, manages data subject rights requests, and promotes a culture of data protection awareness across the Group.
What We Expect of You, Day To Day:
- Serve as the organisation's formally appointed DPO and primary contact for the IDPC (Malta) and the ICO (UK).
- Monitor compliance with the UK GDPR, EU GDPR, and national data protection laws in both jurisdictions.
- Advise the Group and executive leadership on data protection and privacy risk, regulatory developments, and compliance obligations.
- Oversee the development and continuous improvement of the Group-wide data protection strategy and privacy governance framework.
- Manage and maintain comprehensive Records of Processing Activities (ROPA) for both Malta and UK operations.
- Coordinate responses to regulatory enquiries, investigations, and audits.
- Complete and document DPIAs for processing activities, working collaboratively with relevant business teams where necessary.
- Handle all data subject rights requests (DSARs, right to erasure, etc.) within legal timeframes.
- Investigate and document personal data breaches, escalate high-risk incidents to the Board and/or relevant stakeholders, and assist with regulatory reporting in line with legal obligations.
- Conduct vendor risk assessments in coordination with relevant business teams and assist with the review of data processing agreements (DPAs) and related contractual obligations.
- Embed privacy-by-design principles into all product, service, and system design.
- Deliver and track all Group data protection training and awareness initiatives.
- Respond to internal queries regarding GDPR and local data protection law obligations.
- Liaise with IT Security, Compliance, Legal, and HR to ensure effective implementation of all relevant data protection measures.
- Maintain documentation for audit readiness and internal assurance.
- Manage and maintain the Group Privacy Team software tool.
Qualifications
- Experience
- Demonstrable experience overseeing and implementing data protection compliance within an MFSA, FCA, or similarly regulated business.
- Degree or equivalent professional experience in a DPO role.
- Professional data protection qualifications (e.g., CIPP/E, CIPM, BCS, or equivalent).
- Previous experience in a B2B environment.
- Proven track record in contributing to large-scale GDPR transformation programmes.
- Experience or familiarity with privacy software tools is beneficial.
- Knowledge and Skills
- Comprehensive knowledge and practical application of EU GDPR, UK data protection law, Malta data protection legislation, and related privacy regulations.
- Excellent communication skills with the ability to engage clearly and effectively at senior leadership level.
- A pragmatic, solution-focused approach to data privacy.
- Skilled at problem-solving and building collaborative relationships across the organisation.
- Accountability
- This role operates with professional independence, as required under Article 38 of the GDPR.
- Provides regular reporting on DPO-related metrics, risks, and issues to senior leadership, the Board, or relevant committees as needed.
- KPI’s
- Level of compliance with GDPR and related privacy obligations.
- Timely and compliant handling of DPIAs, rights requests (including DSARs), and breach/incident responses.
- Audit findings and regulator engagement outcomes.
- Organisation-wide integration of privacy-by-design principles.
We offer comprehensive benefits to support our team members and their families' well-being.
Our robust benefits package includes (subject to local office benefits policy):
- Be part of a dynamic, market-leading Fintech experiencing rapid growth
- Flexible work arrangements tailored to role requirements and business needs
- Comprehensive wellness initiatives, including mental health resources supported by internally qualified mental health first aiders
- Extensive leave provisions, encompassing annual, volunteering, and birthday allowances
- Progressive family-oriented policies and benefits, including Maternity, Paternity and Adoption leave
- Robust compensation package, including pension scheme, healthcare plans, and life assurance
- Regular corporate events fostering team cohesion and company culture
- Diverse company culture and global working environment
- Continuous professional development and career advancement opportunities
Offer of employment with Trust Payment is conditioned upon the successful completion of a background verification check, subject to applicable laws and regulations.
Get a glimpse into the exciting world of Trust Payments through:
Next Steps:
Ready to revolutionize fintech? If you're excited about this opportunity, we'd love to hear from you!
Our Talent Acquisition Team will review your application promptly. We'll contact successful candidates via email and phone to discuss the next steps, including our inclusive interview process.
Additional Information:
Trust Payments is an Equal Opportunities Employer
We are a growing business with an aspiration to create a truly inclusive working environment, where each employee can reach their full potential. We celebrate the differences that exist within our teams. We encourage our people to bring their own opinions and thoughts to work, to be authentic and help us to innovate. We do this by embracing people as individuals, and appreciating that what works for one person, doesn’t work for everyone. We are committed to equal employment opportunity for all, regardless of race, heritage, religion, gender, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or any other protected characteristic.
If you require reasonable adjustments to be made to enable you to apply for a role with us or wish to provide feedback about the accessibility of this website, please contact the Talent Acquisition Team.
Automated Assessment Notice
Trust Payments may use automated tools during our recruitment process, including skills assessments and application screening questions. All decisions involve human oversight and comply with data protection legislation. Candidates can request human review of any automated screening decisions.
To submit your CV for this opportunity, please complete the application form and click 'Apply' now.