Interim Privacy Lawyer / Privacy Analyst

Company: Major, Lindsey & Africa
Apply for the Interim Privacy Lawyer / Privacy Analyst
Location: London
Job Description:

Job Description

Interim Privacy Lawyer / Privacy Analyst

n

6 Month Contract, 2 days in office.

n

n

The Opportunity

n

n

MLA is partnering with a rapidly scaling UK fintech that is transforming the way businesses move and manage money. Operating at the intersection of payments, technology and financial services, the organisation has built a reputation for innovation, agility and customer-centric solutions, supporting thousands of businesses across the UK and Europe.

n

n

As the business continues to grow, the legal and privacy team is experiencing a significant increase in workload and is looking to appoint an interim Privacy professional to provide hands-on support across a broad range of data protection and privacy matters.

n

n

The team is open to both:

n

    n

  • Qualified lawyers (approximately 1-5 PQE) with privacy experience; and
  • n

  • Experienced Privacy Analysts / Privacy Managers with strong operational GDPR expertise.
  • n

n

n

This is an excellent opportunity to join a collaborative and highly regarded legal function, working closely with stakeholders across product, compliance, security, risk and operations within a fast-paced regulated environment.

n

n

Key Responsibilities

n

Privacy Compliance & Governance

n

    n

  • Draft, review and maintain DPIAs, LIAs and other privacy risk assessments.
  • n

  • Support the ongoing development and maintenance of GDPR and UK GDPR compliance frameworks.
  • n

  • Assist with Records of Processing Activities (ROPA) and wider privacy governance processes.
  • n

  • Help maintain privacy policies, procedures, templates and documentation.
  • n

  • Monitor privacy compliance obligations and support business-wide privacy initiatives.
  • n

n

Privacy Operations

n

    n

  • Conduct privacy reviews of new products, services and internal projects.
  • n

  • Support privacy-by-design initiatives, working closely with Product, Technology, Security and Compliance teams.
  • n

  • Review data flows and identify privacy risks and mitigation measures.
  • n

  • Assist with vendor privacy reviews and third-party due diligence exercises.
  • n

  • Support DSAR processes and wider data subject rights obligations where required.
  • n

n

Incident & Risk Management

n

    n

  • Assist with the investigation and documentation of personal data incidents.
  • n

  • Maintain incident records and support regulatory reporting assessments.
  • n

  • Coordinate information gathering across business functions during privacy-related investigations.
  • n

  • Escalate higher-risk issues to senior legal and compliance stakeholders as appropriate.
  • n

n

Regulatory & Stakeholder Support

n

    n

  • Provide practical privacy guidance to internal stakeholders.
  • n

  • Support responses to regulatory enquiries and audits.
  • n

  • Help deliver privacy awareness initiatives and training across the business.
  • n

  • Work closely with Legal, Risk, Compliance and Information Security teams on data protection matters.
  • n

n

About You

n

We are interested in speaking with candidates from either a legal or privacy operations background who can demonstrate:

n

    n

  • Experience working with GDPR and UK GDPR in a commercial, technology, fintech, financial services or regulated environment.
  • n

  • Strong practical experience preparing and reviewing DPIAs, LIAs and privacy assessments.
  • n

  • Experience maintaining privacy governance frameworks and compliance documentation.
  • n

  • An understanding of privacy-by-design principles and operational privacy processes.
  • n

  • Excellent stakeholder management and communication skills.
  • n

  • Strong organisational skills with the ability to manage multiple workstreams simultaneously.
  • n

  • A pragmatic and solutions-oriented approach to privacy risk management.
  • n

n

Additional Experience That Would Be Beneficial

n

    n

  • 1-5 PQE privacy, commercial technology or regulatory lawyer.
  • n

  • Experience within fintech, payments, banking or other regulated sectors.
  • n

  • IAPP qualification (CIPP/E, CIPM or equivalent).
  • n

  • Experience supporting vendor contracting, data processing agreements or international data transfer arrangements.
  • n

  • Experience working in a fast-growth technology business.
  • n

n

n

If this role is of interest please apply for additional information.

n

Posted: August 16th, 2026