j. awan & partners تعلن عن وظيفة مدير إدارة البيانات في الرياض
تفاصيل الوظيفة
نحن شركة j. awan & partners، إحدى شركات الاستشارات السريعة النمو في مجال الحوكمة والمخاطر والامتثال (GRC)، نبحث عن مدير لإدارة البيانات (حوكمة البيانات، الخصوصية والجودة) للعمل في مكتبنا بالرياض، المملكة العربية السعودية. يهدف هذا الدور إلى دعم إنشاء وتنفيذ وصيانة قدرات إدارة البيانات في الشركة التابعة، مع ضمان التوافق مع أطر وسياسات المجموعة.
المهام والمسؤوليات
- مراجعة وتكييف سياسات ومعايير وإجراءات إدارة البيانات من المجموعة لاعتمادها في الشركة التابعة.
- إنشاء وثائق حوكمة إدارة البيانات الخاصة بالشركة التابعة عند الحاجة.
- دعم تنفيذ أطر حوكمة البيانات وخصوصية البيانات وجودة البيانات وإدارة حوادث البيانات.
- تطوير وصيانة إجراءات التشغيل المحلية ووثائق التوجيه والأدلة الحوكمية.
- دعم المراجعة الدورية وتحديث السياسات المحلية لضمان استمرار التوافق مع متطلبات المجموعة والجهات التنظيمية.
- تمثيل إدارة البيانات في لجان الحوكمة بالشركة التابعة ومجموعات توجيه البيانات ومجموعات العمل.
- إعداد مواد الحوكمة والتقارير والتحديثات الإدارية للمنتديات المحلية ومنتديات المجموعة.
- رفع مخاطر البيانات الهامة ونواقص الرقابة والمخاوف التنظيمية إلى الإدارة وهيئات الحوكمة المناسبة.
- تتبع إجراءات المعالجة وضمان إغلاقها في الوقت المحدد.
- دعم تنفيذ نماذج ملكية البيانات والوصاية والمساءلة.
- تقييم ومراقبة الامتثال لمتطلبات الإمارات والمملكة العربية السعودية وغيرها من المتطلبات التنظيمية ذات الصلة.
- دعم تقييمات الفجوات التنظيمية وتنفيذ خطط المعالجة.
- صيانة متتبعات الامتثال التنظيمي وآليات الإبلاغ.
- إجراء تقييمات مخاطر البيانات وتقييمات تأثير الخصوصية والتقييمات ذات الصلة.
- دعم الفحوصات التنظيمية والتدقيقات وطلبات المعلومات.
- صيانة سجلات أنشطة المعالجة (ROPA) وقوائم جرد المعالجة.
- دعم عمليات إدارة حقوق أصحاب البيانات والطلبات ذات الصلة.
- إدارة تقييمات نقل البيانات والمراجعات المتعلقة بالخصوصية.
- مراجعة وصيانة إشعارات الخصوصية وإشعارات الموافقة والإفصاحات العامة ذات الصلة.
- دعم التحقيقات في شكاوى الخصوصية والاستفسارات القانونية.
- تقديم المشورة لأصحاب المصلحة في الأعمال بشأن متطلبات الخصوصية والالتزامات.
- دعم تحديد وتقييم والتحقيق ومعالجة حوادث البيانات.
- تسهيل تقييمات خرق البيانات وتقييمات الأثر.
- تنسيق الاستجابة للحوادث مع أصحاب المصلحة في الأعمال والتقنية والامتثال والمخاطر.
- دعم تقييمات الإخطار التنظيمي ومتطلبات التوثيق.
- تتبع إجراءات المعالجة والدروس المستفادة.
- إجراء مراجعات خصوصية البيانات وإدارة البيانات للموردين والأطراف الثالثة.
- دعم تقييمات مخاطر الموردين وعمليات العناية الواجبة.
- مراجعة أحكام حماية البيانات التعاقدية.
- مراقبة امتثال الأطراف الثالثة للمتطلبات التنظيمية ومعايير المجموعة.
- تتبع معالجة فجوات الرقابة المحددة.
- تسهيل تقييمات جودة البيانات وإدارة المشكلات.
- دعم حوكمة جودة البيانات وإعداد التقارير.
- مراقبة معالجة مشكلات جودة البيانات والأسباب الجذرية.
- مساعدة مالكي البيانات وأوصيائها في تنفيذ ضوابط جودة البيانات.
- إعداد مقاييس جودة البيانات وتقارير الإدارة.
- دعم عمليات جمع الموافقة وإدارتها والاحتفاظ بالأدلة.
- مراجعة التغييرات في رحلات العملاء وآليات الموافقة.
- ضمان توافق عمليات الموافقة مع المتطلبات القانونية والتنظيمية.
- تقديم المشورة بشأن متطلبات المعالجة القانونية والتزامات حقوق العملاء.
- العمل كنقطة اتصال رئيسية للاستفسارات المتعلقة بإدارة البيانات داخل الشركة التابعة.
- توجيه فرق الأعمال والتشغيل بشأن حوكمة البيانات وخصوصية البيانات وجودة البيانات.
- مراجعة المشاريع والمبادرات والمنتجات والتغييرات التجارية من منظور إدارة البيانات.
- دعم تنفيذ المتطلبات التنظيمية الجديدة ومبادرات الشركة التابعة.
- المساعدة في الرد على التدقيقات والإجراءات الإدارية وبرامج تعزيز الرقابة.
- تطوير وتقديم جلسات توعية حول حوكمة البيانات والخصوصية والجودة وإدارة الحوادث.
- نشر متطلبات إدارة البيانات من المجموعة وضمان الوعي المحلي.
عرض النص الأصلي للإعلان
Manager - Data Management (Data Governance, Privacy & Quality)
Reports To
Director / Senior Manager
Location
Riyadh
Direct Reports
NA
About j. awan & partners
We are a fast-growing international Governance, Risk and Compliance (GRC) Consultancy with our headquarters in the Dubai International Finance Centre (DIFC). We also have our own Technology company creating bespoke cutting edge RegTech solutions. Our business presence covers multiple jurisdictions with offices in the UAE, KSA, UK & Ireland, Singapore, Porto, Pakistan, Qatar and now in South Africa. We provide Regulatory Governance, Risk, Compliance, Finance, Recruitment and Technology services (the "Services") to many clients including global, regional and local financial services institutions, governments and other industry partners.
Mission / Purpose of the Role
The purpose of this role is to support the establishment, implementation and ongoing maintenance of Data Management capabilities within ADCB KSA, ensuring alignment with Group Data Management frameworks, policies, standards and procedures. The role acts as the primary point of contact for Data Governance, Data Privacy, Data Quality and Data Incident Management matters within the subsidiary, translating Group requirements and local regulatory obligations into practical, embedded controls. By delivering credible governance, robust privacy operations and demonstrable data quality improvement, the role protects the client’s regulatory standing and reinforces the firm’s reputation for integrity and regulatory excellence.
Key Accountabilities
Data Management Framework Implementation
Key Responsibilities
- Review and adapt Group Data Management policies, standards and procedures for subsidiary adoption.
- Establish subsidiary-specific Data Management governance documentation where required.
- Support implementation of Data Governance, Data Privacy, Data Quality and Data Incident Management frameworks.
- Develop and maintain local operating procedures, guidance documents and governance artefacts.
- Support periodic review and update of local policies to ensure continued alignment with Group and regulatory requirements.
Success Indicators
- Local framework documentation approved and adopted.
- Implementation roadmap delivered to plan.
- No material misalignment with Group standards.
Data Governance & Oversight
Key Responsibilities
- Represent Data Management in subsidiary governance committees, Data Steering Groups and working groups.
- Prepare governance materials, reports and management updates for local and Group forums.
- Escalate material data risks, control deficiencies and regulatory concerns to the appropriate management and governance bodies.
- Track remediation actions and ensure timely closure.
- Support implementation of data ownership, stewardship and accountability models.
Success Indicators
- Governance packs issued on schedule.
- Risks escalated without delay.
- Actions closed within agreed deadlines.
Regulatory Compliance & Risk Management
Key Responsibilities
- Assess and monitor compliance with applicable UAE, KSA and other relevant regulatory requirements.
- Support regulatory gap assessments and implementation of remediation plans.
- Maintain regulatory compliance trackers and reporting mechanisms.
- Conduct Data Risk Assessments, Privacy Impact Assessments and related evaluations.
- Support regulatory examinations, audits and information requests.
Success Indicators
- Gap assessments completed and remediated.
- Trackers accurate and current.
- Regulatory requests answered fully and on time.
Data Privacy Operations
Key Responsibilities
- Maintain Records of Processing Activities (ROPA) and processing inventories.
- Support Data Subject Rights management processes and requests.
- Manage data transfer assessments and privacy-related reviews.
- Review and maintain privacy notices, consent notices and related public disclosures.
- Support investigations into privacy complaints and statutory inquiries.
- Provide advisory support to business stakeholders on privacy requirements and obligations.
Success Indicators
- ROPA complete and current.
- DSR requests met within statutory timeframes.
- Privacy notices accurate and approved.
Data Incident Management
Key Responsibilities
- Support identification, assessment, investigation and remediation of data incidents.
- Facilitate Data Breach Assessments and impact assessments.
- Coordinate incident response with business, technology, compliance and risk stakeholders.
- Support regulatory notification assessments and documentation requirements.
- Track remediation actions and lessons learned.
Success Indicators
- Incidents managed within framework timelines.
- Notification decisions documented and defensible.
- Lessons learned implemented.
Vendor & Third-Party Data Risk
Key Responsibilities
- Conduct Data Privacy and Data Management reviews of vendors and third parties.
- Support Vendor Risk Assessments and due diligence processes.
- Review contractual data protection provisions.
- Monitor third-party compliance with regulatory requirements and Group standards.
- Track remediation of identified control gaps.
Success Indicators
- Vendor assessments completed before onboarding.
- Contractual gaps identified and closed.
- No unmanaged third-party data risk.
Data Quality Management
Key Responsibilities
- Facilitate Data Quality assessments and issue management.
- Support Data Quality governance and reporting.
- Monitor remediation of Data Quality issues and root causes.
- Assist Data Owners and Data Stewards in implementing Data Quality controls.
- Prepare Data Quality metrics and management reports.
Success Indicators
- DQ issues logged, owned and remediated.
- Metrics reported on agreed cycle.
- Improvement in critical data quality scores.
Consent Management & Customer Data Rights
Key Responsibilities
- Support consent collection, management and evidence retention processes.
- Review changes to customer journeys and consent mechanisms.
- Ensure consent processes remain aligned to legal and regulatory requirements.
- Advise on lawful processing requirements and customer rights obligations.
Success Indicators
- Consent captured and evidenced correctly.
- Customer journey changes reviewed pre-launch.
- No lawful basis gaps identified.
Business Advisory & Operational Support
Key Responsibilities
- Act as primary point of contact for Data Management queries within ADCB KSA.
- Guide business and operational teams on Data Governance, Data Privacy and Data Quality matters.
- Review projects, initiatives, products and business changes from a Data Management perspective.
- Support implementation of new regulatory requirements and ADCB KSA initiatives.
- Assist with audit responses, management actions and control enhancement programmes.
Success Indicators
- Queries resolved promptly and consistently.
- Data Management input evidenced in change and project governance.
- Audit actions closed on time.
Training & Awareness
Key Responsibilities
- Develop and deliver awareness sessions on Data Governance, Privacy, Quality and Incident Management.
- Roll out Group Data Privacy and Data Management training programmes locally.
- Adapt awareness materials to local regulatory and business requirements.
- Deliver targeted initiatives for high-risk business areas.
- Track completion and effectiveness of training.
Success Indicators
- Training delivered to plan.
- High completion rates across target populations.
- Positive participant feedback and improved awareness.
Team & Culture Contribution
Key Responsibilities
- Promote j. awan & partners’ culture and brand.
- Support talent attraction and retention.
- Coach junior team members and share knowledge across engagements.
Success Indicators
- Positive internal engagement scores.
- Contribution to team development initiatives.
- Evidence of knowledge sharing.
Key Deliverables
- KSA Data Management implementation roadmap.
- Local Data Management framework documentation.
- Data Risk Assessments and Privacy Impact Assessments.
- Records of Processing Activities (ROPA).
- Data incident investigation support and reporting.
- Regulatory gap assessments and remediation plans.
- Governance committee reporting packs and dashboards.
- Vendor Data Privacy assessment reports.
- Data Quality reporting and issue remediation tracking.
- Training and awareness materials and delivery records.
Role-Specific Competencies
- Data Governance Expertise: Hands-on experience designing and embedding data governance operating models, including data ownership, stewardship and accountability structures.
- Data Privacy & Regulatory Knowledge: Practical knowledge of KSA PDPL and SDAIA requirements, UAE data protection law and SAMA / CBUAE expectations, with the ability to interpret obligations into workable controls.
- Incident & Risk Management: Proven capability in data incident handling, breach assessment, regulatory notification decisions and remediation tracking.
- Data Quality & Analytical Skills: Ability to assess data quality, identify root causes, define measurable controls and report meaningful metrics to management.
- Third-Party Oversight: Experience assessing vendors and reviewing contractual data protection provisions against regulatory and Group standards.
Skills and Knowledge
- Communication & Presentation
- Organisation, Execution & Attention to Detail
- Governance Documentation
Education & Experience
Education
Bachelor’s degree in Law, Information Management, Computer Science, Business, Finance or a related discipline.
Experience
Minimum 8 years overall industry experience, with at least 4 years in Data Management, Data Governance, Data Privacy or Data Protection roles within financial services. Direct experience implementing data governance, privacy or data quality frameworks is essential. Working knowledge of KSA (SDAIA / PDPL, SAMA) and UAE data protection requirements is strongly preferred.
Additional Requirements
CIPP/E, CIPM, CDMP, DAMA, CISM or equivalent qualifications preferred. Strong written and verbal communication skills in English; Arabic is an advantage.