Overview
PDPL Compliance & GRC Specialist Jobs in un at TASC Outsourcing
About the Role:
We are seeking a PDPL Compliance & GRC Specialist to join our team in the United Arab Emirates. The successful candidate will design, implement and maintain our privacy and governance, risk and compliance (GRC) programs while ensuring adherence to the UAE PDPL and international data protection standards. You will partner with cross-functional teams to manage privacy risks, lead data protection impact assessments, oversee data breach responses, and monitor regulatory developments.
Responsibilities:
- Develop, implement and maintain policies, procedures and controls to ensure compliance with UAE PDPL and GDPR
- Conduct and manage Data Protection Impact Assessments (DPIAs) and maintain the Records of Processing Activities (RoPA)
- Lead data breach response planning and incident management activities
- Review and update privacy notices, consents and data subject communications
- Oversee consent management processes and tools across business units
- Manage cross-border data transfer mechanisms in line with PDPL and GDPR requirements
- Monitor regulatory changes and guidance from UAE Data Office and international authorities
- Provide training, awareness sessions and advisory support to stakeholders on privacy and GRC matters
- Coordinate internal and external audits and assessments, and drive remediation of findings
- Prepare reports and dashboards on privacy metrics, risk assessments and compliance status
Required Qualifications:
- 4–7 years of professional experience in data protection, privacy compliance or GRC roles
- In-depth technical knowledge of UAE PDPL requirements and GDPR regulations
- Proven experience conducting DPIAs and maintaining RoPA
- Hands-on experience with data breach response processes and incident management
- Technical expertise in privacy notices review, consent management and cross-border data transfers
- Strong skills in regulatory monitoring and interpreting legal guidance
- Excellent analytical, communication and stakeholder management skills
- Bachelor’s degree in Law, Information Security, Computer Science or related field
Preferred Qualifications:
- Certified Information Privacy Professional (CIPP/E) or Certified Information Privacy Manager (CIPM)
- Experience with GRC platforms and privacy management tools
- ISO/IEC 27701 Lead Implementer or Lead Auditor certification
- Familiarity with UAE Data Office guidelines and local regulatory environment
- Fluency in Arabic and English
- Project management certification (PMP, Prince2)
- Advanced degree in Law, Data Protection or related discipline
Title: PDPL Compliance & GRC Specialist
Company: TASC Outsourcing
Location: un