عن الوظيفة
Ensure organization-wide compliance with PDPL No. 151 of 2020, its Executive Regulations, and PDPC decisions, circulars, and licensing conditions.Establish, maintain, and periodically review the personal data protection framework, including policies, standards, and procedures covering collection, processing, storage, disclosure, and destruction of personal data.Maintain a comprehensive and up-to-date Record of Processing Activities (RoPA) describing all personal data processing operations, legal bases, retention periods, and security measures.Manage the organization's licenses, permits, and accreditations required from the PDPC, including those for processing sensitive personal data, electronic marketing, and cross-border data transfers.Verify the validity and lawfulness of data processing systems and conduct periodic evaluations and audits of their effectiveness, documenting and reporting the results.Establish and operate procedures for receiving, verifying, and responding to data subject requests (access, correction, erasure, objection, withdrawal of consent) within the timelines prescribed by the PDPL and its Executive Regulations.Ensure that valid, informed, and documented consent is obtained where required as the legal basis for processing, and that consent withdrawal mechanisms are available.Handle and resolve complaints submitted by data subjects and maintain a register of complaints and their outcomes.Act as the official liaison and point of contact with the Egyptian Personal Data Protection Centre, including registration, correspondence, inspections, and requests for information.Deliver ongoing data protection training and awareness programs for employees and management.Report periodically to executive management and relevant governance committees on the organization's data protection posture, compliance gaps, incidents, and remediation plans.Monitor legal and regulatory developments (PDPL Executive Regulations, PDPC guidance, sectoral requirements from CBE, NTRA, FRA, etc.) and advise on their impact.
Bachelor's degree in Law, Information Security, Computer Science, or a related field; a postgraduate qualification in data protection, cybersecurity, or compliance is an advantage.Minimum 3–5 years of experience in data protection, privacy compliance, information security governance, or regulatory compliance, with at least 2 years in a privacy-focused role.Demonstrable knowledge of Egyptian Personal Data Protection Law No. 151 of 2020 and its Executive Regulations, and familiarity with international frameworks such as the EU GDPR for benchmarking purposes.Experience dealing with regulators; prior interaction with Egyptian regulatory bodies is a strong advantage.Recognized privacy/security certifications preferred: CIPP/E, CIPM, CIPT (IAPP), CDPSE (ISACA), CISM, CISSP, or ISO/IEC 27701 Lead Implementer.Fluency in Arabic and English (written and spoken) is required, given bilingual regulatory correspondence and documentation.
Bachelor's degree in Law, Information Security, Computer Science, or a related field; a postgraduate qualification in data protection, cybersecurity, or compliance is an advantage.Minimum 3–5 years of experience in data protection, privacy compliance, information security governance, or regulatory compliance, with at least 2 years in a privacy-focused role.Demonstrable knowledge of Egyptian Personal Data Protection Law No. 151 of 2020 and its Executive Regulations, and familiarity with international frameworks such as the EU GDPR for benchmarking purposes.Experience dealing with regulators; prior interaction with Egyptian regulatory bodies is a strong advantage.Recognized privacy/security certifications preferred: CIPP/E, CIPM, CIPT (IAPP), CDPSE (ISACA), CISM, CISSP, or ISO/IEC 27701 Lead Implementer.Fluency in Arabic and English (written and spoken) is required, given bilingual regulatory correspondence and documentation.