Consultant - Privacy Analyst - Records of Processing Activities; ROPA
Listed on 2025-12-01
-
IT/Tech
Information Security, Data Security, Data Analyst, IT Consultant
Overview
Consultant - Privacy Analyst - Records of Processing Activities (ROPA). Kalles Group is seeking a detail-oriented Privacy Analyst to oversee and maintain the organization's ROPA in alignment with applicable data protection laws and regulations (e.g., GDPR, UK GDPR, and related frameworks). This role focuses on ensuring the accuracy, completeness, and compliance of ROPA documentation across the enterprise, partnering with business units, legal, IT, and data governance teams to uphold transparency and accountability in data processing practices.
Basepay range
$/yr - $/yr
What you will do- Develop, update, and maintain comprehensive ROPA registers in accordance with legal and regulatory requirements.
- Review and validate data entries to ensure accuracy, completeness, and alignment with approved processing purposes, legal bases, and retention schedules.
- Coordinate with data owners and process leads to identify and document changes to processing activities, including data flows, recipients, and security measures.
- Ensure ROPA content meets requirements set forth by data protection authorities and internal privacy policies.
- Identify inconsistencies or gaps in processing activity records and recommend corrective actions.
- Partner with Privacy Counsel to align ROPA with cross-border transfer mechanisms, DPIAs (Data Protection Impact Assessments), and security measures documentation.
- Serve as the primary point of contact for business units regarding ROPA-related inquiries.
- Provide guidance and training to process owners on ROPA requirements, terminology, and documentation best practices.
- Coordinate periodic ROPA review cycles to confirm continued compliance and operational accuracy.
- Prepare ROPA data for regulatory inspections, audits, and internal compliance reviews.
- Generate reports and metrics on ROPA completeness, changes over time, and compliance status for leadership and governance bodies.
- Support remediation planning and follow-up for any deficiencies identified in ROPA-related audits.
Your values:
- Integrity: You believe in doing the right thing, even when it’s uncomfortable, seemingly inefficient, or costly.
- Purposefulness: You have a desire to serve others with your skillset and an openness to continuous learning and growth.
- Ownership: You stick to your commitments, follow up with action, and seek clarity in communication & expectations.
Experience:
- Bachelor’s degree in Law, Information Governance, Data Privacy, or related discipline (or equivalent work experience).
- 2+ years in a privacy, data protection, or compliance role, with direct experience managing or maintaining ROPA.
- Strong understanding of GDPR, UK GDPR, and related privacy regulations.
- Exceptional attention to detail and ability to translate complex processing activities into clear, structured documentation.
- Proficiency with privacy management tools (e.g., One Trust, Trust Arc, or similar).
- CIPP/E, CIPM, or equivalent privacy certification.
- Experience working in regulated industries such as healthcare, finance, or technology.
- Familiarity with data governance, security controls, and record retention frameworks.
- Competitive compensation with opportunities for additional incentives. The salary for this role is $100-125K/year
- Work/life balance – we know there’s more to life than work! We encourage our team to pursue other passions, get outside, and spend time with family. We work with clients and consultants to set expectations for a manageable workload.
- Opportunities to connect in person and remotely with a passionate, supportive team.
This role can be remote.
How to applyPlease fill out the form below (including uploading your most recent resume) and we'll be in touch! We know imposter syndrome can be a barrier to many great applicants. We hope you'll still consider applying. That's why we've made the application process as short and simple as possible.
Even if you're not a fit for the role, you can expect to hear back from us! We want you to have the best experience as a candidate, so please feel free to share feedback at any stage of the process to
Kalles Group is an equal-opportunity employer and does not discriminate on the basis of creed, nationality, race, ethnicity, disability, gender, or other protected class.
Details- Seniority level:
Mid-Senior level - Employment type:
Full-time - Job function:
Consulting - Industries: IT Services and IT Consulting
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).