Data Privacy Officer at AIICO Insurance
AIICO Insurance
Lagos, Nigeria
Permanent
Published 1 month ago · Expires 3 weeks from now
Job description
## Title: Data Privacy Officer
About the Role
AIICO Insurance seeks a dedicated Data Privacy Officer to support the organization's data protection and governance initiatives. This role is essential to ensuring compliance with data privacy regulations and maintaining robust data protection frameworks across the organization.
Key Responsibilities
Data Privacy & Protection Operations
- Support the implementation of data privacy frameworks, controls, and procedures
- Assist with data mapping and data flow analysis across business units
- Handle internal data subject access requests (DSARs) and ensure responses within required timelines
- Maintain the data processing activity register (RoPA)
- Assist in data breach detection, escalation, documentation, and reporting processes
Third-Party and Vendor Compliance
- Track and document third-party Data Processing Agreements (DPAs)
- Support third-party risk assessments and due diligence questionnaires
- Ensure on-boarding documentation includes privacy compliance checklists
IT Governance, Risk & Compliance (GRC) Support
- Assist in performing IT risk assessments and documenting control gaps
- Maintain and update IT and privacy compliance policies, procedures, and standard operating procedures (SOPs)
- Support internal audits and external compliance reviews
- Monitor compliance with security standards (e.g., ISO 27001, NIST, CIS) as related to data privacy
Training & Awareness
- Assist in developing and disseminating privacy awareness materials
- Support scheduling and logistics for employee data protection training
- Track employee participation and training records
Documentation & Reporting
- Compile regular status reports for management on privacy and GRC activities
- Gather data for preparation of Board committee reports
- Maintain incident logs, risk registers, and audit trails
- Provide administrative support for privacy meetings, assessments, and compliance initiatives
Required Qualifications
Education
- Bachelor's Degree in Information Technology, Computer Science, Law, or a related discipline
Experience
- At least 1–2 years of experience in data privacy, information security, IT GRC, legal advisory, or related roles
Location
Lagos, Nigeria