SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Zopa is a fintech company founded in 2005 as the first peer-to-peer lending platform, now operating as Zopa Bank—a customer-centric digital bank redefining financial services. The company has been recognized as one of the UK's Most Loved Workplaces and operates across nearly 50 nationalities.
Role Overview:
As Senior Data Privacy Manager, you will lead data privacy strategy and governance at Zopa, translating complex privacy questions into clear, proportionate recommendations that enable responsible business progress. You will manage a small team (including a Data Privacy Associate whom you'll mentor and develop), build and embed risk-based privacy frameworks, and partner with data, technology, product, legal, risk, and security teams on complex data-use and data-governance decisions.
Key Responsibilities:
- Turn complex privacy questions into clear, proportionate recommendations that enable responsible progress
- Build and embed a risk-based framework for data privacy risk, including a usable view of risk appetite
- Partner with data and technology teams on complex data-use and data-governance decisions
- Lead the response to significant privacy issues and ensure decisions are well evidenced
- Develop the Data Privacy Associate through mentoring, standards, and exposure to complex problem-solving
- Create trusted relationships across the business so privacy is involved early, not at the last minute
- Identify manual privacy processes that can be simplified or automated
- Represent the first-line privacy perspective credibly with senior stakeholders
Workplace:
Hybrid role based in London, requiring 2-3 days per week in the office. Option to work from abroad up to 120 days per year (subject to right to work). Zopa values flexible working and work-life balance.
Requirements:
- Substantial practical data privacy experience with strong working knowledge of UK GDPR and its enforcement context
- Sound judgment to balance privacy rights, customer protection, business objectives, and residual risk
- Ability to explain complex privacy issues clearly to non-specialists and make credible, defensible recommendations
- Demonstrated experience leading or materially shaping privacy frameworks, governance, or operating models
- Comfortable working through ambiguity and taking ownership of difficult problems independently
- Ability to build constructive relationships with product, technology, operations, legal, risk, and security partners
- Knowledge of privacy considerations across AI model training, prompting, and outputs (desirable)
- Experience improving efficiency through automation of privacy processes (desirable)
- Legal, operational-risk, or dedicated data-protection qualifications (desirable)