SlipstreamJobsFresh Startup & VC-Backed Jobs

Data Protection Officer

Revolut - Vilnius, Lithuania - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: EUR 4,600 - 6,500 / monthly

Revolut is seeking a Data Protection Officer to lead and implement data protection and AI compliance frameworks for its Lithuanian entity. This is a senior legal/compliance role reporting to the Compliance team, responsible for ensuring all operations involving customer personal data and AI technologies adhere to GDPR, Lithuanian privacy laws, and emerging digital regulations. Key responsibilities include: providing expert legal and strategic advice to product teams and senior leadership on data protection and AI Act compliance; serving as the statutory point of contact for the Lead Supervisory Authority (VDAI) on inquiries, inspections, and complaints; conducting horizon scanning to adapt entity policies for evolving regional and local requirements; overseeing the local New Initiative Approval Process, performing privacy impact assessments (DPIAs), and reviewing legitimate interest assessments (LIAs) for new features; triaging and managing data security incidents with strict compliance to regulatory reporting windows; supervising maintenance and auditing of records of processing activities (ROPA); reporting regularly to local risk management committees on data protection and privacy risk profile; localizing group data protection policies and delivering training on privacy awareness; and partnering with the Revolut Bank EU privacy team on cross-entity EEA compliance tasks. Required qualifications: 5+ years in a DPO, Senior Privacy Officer, or data protection legal/compliance role within high-growth tech, scale-ups, fintech, financial services, or top-tier law firms; fluency in English and Lithuanian (written and spoken); university degree in law or equivalent legal qualification; in-depth knowledge of GDPR, Lithuanian privacy laws, and EDPB guidelines; experience managing regulatory inquiries and executing rapid data breach assessments; experience evaluating financial/tech products and conducting DPIAs/LIAs in agile frameworks; ability to work independently as sole privacy lead managing shifting priorities and complex stakeholder demands. Nice-to-have: professional credentials (CIPP/E, CIPM, CIPT from IAPP); experience with investment platforms, brokerage services, or automated wealth management tools.

Similar roles