Skip to content

Our vacancies

Search Jobs  

Data Protection Officer (DPO)

Please Note: The application deadline for this job has now passed.

Job Introduction

Here at the Card Factory we are looking for a Data Protection Officer (DPO) in this role will build and manage Card Factory’s data protection program, to develop privacy policies, describe compliance requirements and facilitate regulatory compliance. The DPO is a neutral position, line-managed by the Head of Information & Cyber Security Team, and required to collaborate with procurement, risk, digital, marketing, legal, HR and other internal functions. The DPO will be the subject matter expert on data protection, the General Data Protection Regulation (GDPR) and the Data Protection Act (DPA) 2018. The DPO will ensure regulatory requirements and best practices on data protection are identified and implemented.

Role Responsibility

  • Maintain, develop and own a data protection program with resulting policies, procedures and documentation to meet best practices and compliance.
  • Maintain, develop and implement a data inventory (IAR) including legal basis of collection, consent, suppression, security, retention etc.
  • Ensure Card Factory maintains appropriate data protection procedures for consent and exercising data subject rights.
  • Provide Card Factory with internal business expertise on privacy, data protection, GDPR and the DPA.
  • Provide an external conduit to the Information Commissioner’s Office (ICO), including subject access rights and breach reporting.
  • Ensure Card Factory maintains appropriate data protection policies (Customer Privacy Policy, Employee Privacy Policy, Cookie Policy, CCTV Policy etc).
  • Ensure Card Factory maintains appropriate data protection registers (IAR, consent register, suppression register, breach register etc).
  • Maintain, develop and test the data breach incident management plan.
  • Monitor continuous adherence to data protection program requirements including colleague training.  

The Ideal Candidate

  • Experience working in risk, compliance, auditing or data protection - preferably in the retail industry.
  • Experienced or qualified in providing privacy, GDPR, DPA and ePrivacy regulatory requirements or best practices. 
  • Civil, polite, diplomatic and patient behaviour with stakeholders. Able to create and manage relationships with business harmony.
  • Motivated, energetic and enthusiastic to solve problems by known or new solutions. ‘Can do’ attitude, proactive with a high level of initiative.
  • The DPO can predominantly remote work, however, occasional head office visits to Wakefield, Yorkshire, are required.

Desired

  • Interest or aspiration to increase role or scope of work to include other compliance or risk management activities.
  • Experience with Governance, Risk and Compliance (GRC) tools or solutions to assist with data protection processes.
  • Experience ensuring technology, web applications, cookies and online policies are appropriate and compliant.
  • Experience in risk assessments, maintaining registers, conducting audits, producing reports and providing analysis.
  • Strong written and oral communication skills. Attention to detail, able to create high-quality products worthy of presenting at Executive level.

About the Company

Card Factory is the UK’s leading specialist retailer of greetings cards, dressings, and gifts with over one thousand stores across the UK and Ireland.  In 2020 we launched our exciting 5-year business strategy including our vision of becoming a true Omni-channel retailer.  This strategy sees significant investment into our colleagues across the business creating multiple opportunities to join a fast-paced environment and be part of our exciting journey.  

In return, we offer a wide range of benefits to support your physical, mental, and financial wellbeing.

Benefits

  • Pension
  • 15% Card Factory colleague discount in-store and online
  • Save As You Earn scheme
  • Financial Wellbeing Support       
    • Financial Education Tools
    • Salary Advance
  • Seasonal incentive schemes
  • Retail Management Apprenticeship Programmes with local providers with access to a virtual internal network for learning together
  • Discounted gym membership, mobile phone contracts, and car leasing
  • Discounts across 100’s of UK retailers
  • Employee Assistance Programme – access to tools to support mental, physical, and financial wellbeing
  • Enhanced Maternity, Paternity, and Adoption leave

This is an exciting role with genuine prospects for the right candidate. If this role describes you and your career aspirations, click apply now.

For any questions email: vacancies@cardfactory.co.uk (we do not accept CVs/Applications via email) 

We reserve the right to close this vacancy once sufficient suitable applications have been received. We advise applying early to avoid disappointment as applications will be reviewed regularly. 

No agencies, please.

Sportswift Ltd T/A cardfactory

This website is using cookies to improve your browsing experience. Tracking cookies are enabled but these do not collect personal or sensitive data. If you prefer for this not to be collected, please choose to turn cookies off below. Read more about cookies.