• Profile

Job Description

***This role is currently only open to employees of Arbuthnot Latham***

Arbuthnot Latham has been associated with banking since 1833. We combine private and commercial banking, wealth planning and investment management. We believe in traditional relationship and service-led banking powered by modern technology.

Job Purpose

Support the Bank's data privacy and data protection activities through the administration of the Privacy Management Framework, data protection risk management processes, regulatory compliance activities, privacy governance reporting and records management. The role provides an entry point into privacy and information management, developing practical experience across data protection, regulatory compliance, operational resilience and information governance whilst supporting the effective operation of the Bank's privacy framework.

To place the interests of customers at the centre of all activities, act in a way that is consistent with achieving good outcomes for consumers; and to comply with the FCA and PRA’s Conduct Rules.

Job Description

Key Responsibilities: 

  • Support the operation and maintenance of the Privacy Management Framework and associated governance documentation.
  • Maintain Records of Processing Activities (RoPA) and data processing inventories.
  • Administer privacy risk registers, ensuring risks, issues, actions and assessments are accurately recorded and tracked.
  • Coordinate evidence collection for GDPR, UK Data Protection Act, regulatory reviews and assurance activities.
  • Support Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs) and privacy-by-design reviews.
  • Assist with the management and tracking of data subject rights requests (DSARs), rectification, erasure and portability requests.
  • Support personal data breach management activities, including incident logging, investigation coordination and remediation tracking.
  • Assist with third-party privacy due diligence and supplier assurance activities.
  • Support privacy awareness, training and communication programmes across the organisation.
  • Produce privacy dashboards, management information, key risk indicators and governance reporting.
  • Maintain privacy action logs, regulatory findings and remediation plans.
  • Support compliance with UK GDPR, Data Protection Act 2018, PECR and related regulatory requirements.
  • Develop professional knowledge and capability across data protection, privacy and information governance disciplines.

 

Key Interfaces:

  • Data Protection Officer (DPO)
  • Senior Privacy Manager
  • Legal
  • Risk & Compliance
  • Operational Resilience
  • Technology Teams
  • Cyber Security
  • Human Resources
  • Third-Party Suppliers
  • Internal Audit
  • Business Data Owners
  • External Regulators and Assessors

Person Specification

Knowledge/Experience/Skills:

  • Strong administration, coordination or analytical skills.
  • Ability to manage multiple activities and maintain accurate records and documentation.
  • Strong written and verbal communication skills with the ability to explain regulatory and privacy requirements clearly.
  • Good organisational skills and attention to detail.
  • Understanding of data protection, privacy and information governance principles.
  • Knowledge of UK GDPR, Data Protection Act 2018 and data subject rights requirements.
  • Familiarity with Records of Processing Activities (RoPA), Data Protection Impact Assessments (DPIAs) and privacy risk assessments.
  • Understanding of personal data breaches, incident management and regulatory notification requirements.
  • Experience using Microsoft 365 and reporting or document management tools.
  • Ability to analyse information, identify trends, risks and compliance issues, and escalate where appropriate.
  • Ability to maintain accurate records, action tracking and evidence repositories.
  • Understanding of third-party data processing and supplier assurance requirements.
  • Demonstrable interest in privacy, regulatory compliance, information governance or risk management.

 

Qualifications:

Minimum of one below is required:

  • Educated to A-Level standard (or equivalent experience).
 Desirable:
 
  • Degree or equivalent qualification in Law, Information Governance, Data Protection, Risk Management, Business, Information Technology or a related discipline.
  • IAPP Certified Information Privacy Manager (CIPM).
  • BCS Practitioner Certificate in Data Protection.
  • GDPR Foundation or Practitioner Certification.

Competencies:

  • Problem Solving and Judgment
  • Customer Focus
  • Planning and Reviewing
  • Performance Focus
  • Communication and Confidence
  • Attention to Detail
  • Integrity

About Us

Life, Work and Benefits

At Arbuthnot Latham, we seek proactive individuals who embrace high standards and bring the energy needed to drive success. In return, you can thrive in a dynamic environment that values your innovative ideas and provides the stability and support for your personal and professional growth.  Our human-scale ethos means that everyone is recognised as an individual, not just a number, creating a workplace where you truly belong and thrive.  

As a service led, relationship driven bank, in-person collaboration and wellbeing are important to us and drives our inclusive culture. With this in mind we offer one day a week working from home.

Benefits

  • Competitive holiday allowance with the ability to buy / sell / rollover up to five days per year
  • Pension via market leading provider
  • Private Healthcare cover
  • 4x Life Assurance
  • Discretionary Bonus
  • Access to a suite of flexible benefits including Cycle to Work Scheme, Gym Scheme, Health Assessment, Season Ticket / Travel loans and Dental insurance as well as other discounts / vouchers

Data Privacy and Reasonable adjustments

We take keeping your data security seriously.  For more detail on how we may keep your data please refer to our Privacy Notice

https://careers.arbuthnotlatham.co.uk/files/RecruitmentPrivacyNotice.pdf

Reasonable adjustments: Please let us know of any adjustments or arrangements that you may need to help you apply to this role or that will help you during the recruitment process. If you wish to discuss any particular requirements or concerns you have because of a disability or medical condition please contact us at [email protected]. Information you provide about any disability or medical condition will remain confidential unless it is necessary to disclose it to other members of staff or outside agencies to ensure the health and safety of yourself and others, or to implement the adjustments you require. In these circumstances we will first discuss with you how and to whom the information may be disclosed.