SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Data Privacy Manager

Zopa - London, United Kingdom - Hybrid - posted 2026-10-01

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Zopa is a fintech company founded in 2005 as the first peer-to-peer lending platform, now operating as Zopa Bank—a customer-centric digital bank redefining financial services. The company has been recognized as one of the UK's Most Loved Workplaces and operates across nearly 50 nationalities. Role Overview: As Senior Data Privacy Manager, you will lead data privacy strategy and governance at Zopa, translating complex privacy questions into clear, proportionate recommendations that enable responsible business progress. You will manage a small team (including a Data Privacy Associate whom you'll mentor and develop), build and embed risk-based privacy frameworks, and partner with data, technology, product, legal, risk, and security teams on complex data-use and data-governance decisions. Key Responsibilities: - Turn complex privacy questions into clear, proportionate recommendations that enable responsible progress - Build and embed a risk-based framework for data privacy risk, including a usable view of risk appetite - Partner with data and technology teams on complex data-use and data-governance decisions - Lead the response to significant privacy issues and ensure decisions are well evidenced - Develop the Data Privacy Associate through mentoring, standards, and exposure to complex problem-solving - Create trusted relationships across the business so privacy is involved early, not at the last minute - Identify manual privacy processes that can be simplified or automated - Represent the first-line privacy perspective credibly with senior stakeholders Workplace: Hybrid role based in London, requiring 2-3 days per week in the office. Option to work from abroad up to 120 days per year (subject to right to work). Zopa values flexible working and work-life balance. Requirements: - Substantial practical data privacy experience with strong working knowledge of UK GDPR and its enforcement context - Sound judgment to balance privacy rights, customer protection, business objectives, and residual risk - Ability to explain complex privacy issues clearly to non-specialists and make credible, defensible recommendations - Demonstrated experience leading or materially shaping privacy frameworks, governance, or operating models - Comfortable working through ambiguity and taking ownership of difficult problems independently - Ability to build constructive relationships with product, technology, operations, legal, risk, and security partners - Knowledge of privacy considerations across AI model training, prompting, and outputs (desirable) - Experience improving efficiency through automation of privacy processes (desirable) - Legal, operational-risk, or dedicated data-protection qualifications (desirable)

Similar roles