- Location
- BCIT Bengaluru Office (MGS), India
- Type
- Full-time
- Seniority
- Senior
- Source
- Workday
Description
Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
About the role:
Corporate Title: Analyst
Functional Title: EMEA Data Privacy Analyst
Department and Division: Core Compliance EMEA
Reporting to: EMEA Head of Data Privacy
Location: Bangalore
MAIN PURPOSE OF THE ROLE
This position will primarily support the data privacy team and the Data Protection Officers in the EMEA region on data privacy and protection and cross-border data movement (CBDM) matters, particularly in the context of offshoring / outsourcing initiatives.
Main Responsibilities:
- Provide advice and developing guidance for MUFG and members of staff, including Business Process Owners (BPOs) on how to meet their data privacy and protection obligations.
- Raise awareness of data privacy matters within the organisation; and cascading key messages and comms to the business and Business Process Owners to proactively manage risks within the organisation.
- Manage the training schedule and update of training material relating to data privacy and protection requirements as well as tracking and reporting on completion status.
- Support the Business Process Owners (BPOs) in keeping their records of business activities up to date, accurate and complete, and coordinating the annual update exercise of such records to completion. Ensuring that the list of Business Process Owners is kept up to date and accurate at all times. Track any changes on the ROPA and escalate to relevant SME for review / quality checks. Conduct quality checks to ensure controls are in place taking a risk based approach. Maintain other registers e.g. DPIA register.
- Maintain the list of policies and procedures on the GDPR Kizuna page and on other sites; and coordinating with the Data Privacy team and global team on the annual update process. Organize and manage the team’s shared drive folders to ensure documents are stored in the correct locations, maintain the latest versions, and implement better labelling for a more structured approach.
- Being the point of contact for the DPIA mailbox, the DPO mailbox and other data privacy related mailboxes, redirecting queries to the appropriate data privacy and CBDM contacts for responses, while providing general advice and being the first responder for queries.
- Being the first responder for incidents and breaches which are reported to the Data Privacy Team and coordinating to ensure that incidents are promptly investigated and reported where required within applicable timeframes; as well as coordinating with the business on
- Support on triage, determining the need for, and coordinating advice and approvals on data protection impact assessments (DPIAs)/ Transfer risk assessments and other assessments such as the Cross border data management (CBDM), also while coordinating with the global data privacy team. Support on maintain the list of privacy assessments and ensuring there are clear audit trails for approval and closure.
- Provide support as and when required to develop and enhance privacy compliance-related policies, procedures, processes and internal controls in support of the Global Privacy Program, and the compliance programs overseen by EMEA compliance teams. Support strategic initiatives relating to data privacy and CBDM in the region.
- Attend relevant regulatory outreaches and seminars, events, and providing summary reports to the relevant office, including follow up on any actions in coordination with the local compliance team. Prepare slides and take minutes for DPO meetings to ensure clear communication and documentation.
- Support on coordinating the team’s monitoring and assurance exercises, and responses to issues raised in compliance examinations, audits and quality control testing.
- Support on fulfilling requests from individuals to exercise their data subject rights to ensure they are fulfilled within required time frames.
- Support the preparation of metrics and reports to the several EMEA office DPOs as well as to EMEA Head of Data Privacy and to leadership in EMEA Compliance and the Global Data Privacy Officer, as well as to committees and senior management on regional privacy related issues, trends, exceptions, and program enhancements within the EMEA region.
- Conduct horizon scanning of local regulatory changes as relevant to the covered jurisdictions and logging those in the appropriate trackers and ensuring that the data privacy team provide regular updates/closure
KEY RESPONSIBILITIES
Tasks across MUFG’s Banking arm and Securities business under a dual-hat arrangement. Under this arrangement, the role will act and make decisions on behalf of both the Bank and Securities business, subject to the same remit and level of authority, and irrespective of the entity which employs the successful candidate. For country specific decisions, the decisions need to be taken only post consultation with the country’s DPO.
WORK EXPERIENCE
Essential:
- Compliance or legal experience and some experience in the data privacy and protection field, with an interest and motivation to work toward being a trusted data privacy and protection SME.
Preferred:
- Experience in the banking/financial services industry.
- Some knowledge of data protection laws within the EU/UK.
SKILLS AND EXPERIENCE
Functional / Technical Competencies:
Essential:
- Some working knowledge of data privacy and protection laws and regulations.
- Ability to hit the ground running working independently and within a regional/ global team.
- Ability to deal with a variey of stakeholders
- Good communicator, and ability to prioritise.
Education / Qualifications:
Essential:
- University degree or equivalent
Preferred:
- CIPP/E and /or other relevant certifications
PERSONAL REQUIREMENTS
- Excellent communication skills
- Strong customer service and project management skills.
- Results driven, with a strong sense of accountability
- A proactive, motivated approach.
- The ability to operate with urgency and prioritise work accordingly
- The ability to demonstrate sound judgement
- A structured and logical approach to work
- Strong problem solving skills
- A creative and innovative approach to work
- Good interpersonal skills
- Good attention to detail and accuracy
- Cultural awareness
- Excellent Microsoft Office skills
PERFORMANCE AND DUTIES
The role holder will be assessed in accordance with their employing entity’s performance framework and process with relevant input obtained from the dual hatting entity as relevant.
As duties and responsibilities change, the job description will be reviewed and emended in consultation with the role holder. The role holder will carry out other duties as are within the scope, spirit and purpose of the role as requested by their line manager or Department Head.
MANAGING CONFLICTS OF INTEREST
- The role holder will have responsibilities for both MUFG Bank and MUFG Securities EMEA plc.
- The role holder will be required to perform their duties and responsibilities on an entity neutral basis, without favour.
- The role holder is required to follow regulatory requirements applicable to ensure each business is appropriately supported and to maintain the legal entity integrity of each of MUFG Bank and MUS.
- Working terms are dictated by functional mandates, the terms of the Dual-Hat Arrangement Agreement in place between MUFG Bank and MUFG Securities EMEA plc and any other relevant agreements entered into between MUFG Bank and MUFG Securities EMEA plc.
- The role holder will have responsibility for identifying and resolving where there may be a difference or conflict in needs between MUFG Bank and MUFG Securities EMEA plc, escalating to their manager where required.
Mitsubishi UFJ Financial Group (MUFG) is an equal opportunity employer. We view our employees as our key assets as they are fundamental to our long-term growth and success. MUFG is committed to hiring based on merit and organsational fit, regardless of race, religion or gender.