- Company Name
- DASSAULT AVIATION
- Job Title
- DELEGUE A LA PROTECTION DES DONNEES F/H (H/F)
- Job Description
-
**Job Title**
Data Protection Officer (DPO)
**Role Summary**
Oversee GDPR, Data Act, and national data protection compliance across all company operations, subsidiaries, and third‑party processors. Implement the organization’s data protection policy, maintain the processing register, conduct risk assessments, and advise business units on legal obligations and best practices. Collaborate with information security, legal, and IT teams to embed privacy by design into projects and manage internal audits and controls.
**Expectations**
- Demonstrated expertise in GDPR and related European data protection frameworks (Data Act, AI Act).
- Proficiency in managing global data processing activities, including contract clauses and subcontractor oversight.
- Ability to lead training sessions, provide practical guidance, and influence culture around data protection.
- Strong analytical and project‑management skills to conduct DPIAs, audits, and incident response activities.
- Advanced English communication skills (C1), with capability to draft clear, concise documentation and regulatory correspondence.
**Key Responsibilities**
- Drive GDPR, Data Act, and national compliance for all personal data processing in France and abroad.
- Maintain and update the processing register; analyze purposes, legal bases, retention periods, and data flows.
- Define and refine internal procedures: privacy rights requests, breach management, contractual clauses, and user notice.
- Conduct and oversee DPIAs for high‑risk processes; provide risk mitigation recommendations.
- Provide guidance and training to business units and staff on data protection obligations.
- Monitor legal, technological, and sectoral developments; recommend adaptations to internal practices.
- Collaborate with IT security (DGSI/RSSI) on audits, action plans, and data‑security policies.
- Validate technical and organizational measures (privacy by design) in IT projects.
- Perform internal level‑2 audits, treatments reviews, and accountability documentation in line with internal controls.
**Required Skills**
- In‑depth knowledge of GDPR, Data Act, AI Act, and national data protection laws.
- Experience managing processing registries, DPIAs, and breach response.
- Strong interpersonal skills for training, advisory, and stakeholder engagement.
- Analytical thinking and problem‑solving across regulatory and technical domains.
- Project management ability to coordinate cross‑functional initiatives.
- Advanced English proficiency (C1‑level); ability to produce clear written and spoken communication.
- Familiarity with privacy‑by‑design principles and IT security integration.
**Required Education & Certifications**
- University degree in Law, Information Security, Data Protection, or related field.
- Certified Professional Data Protection Officer (CPDPO) or equivalent certification preferred.