Octopus Energy

Data Protection Manager

United Kingdom

Not SpecifiedCompensation
Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Electric Vehicle Leasing, EnergyIndustries

About Us

Electric Car Leasing. Greener. Fairer. Future.

We’re expanding our Information Security and Data Protection team at Octopus Electric Vehicles! We’re looking for a Data Protection Manager to join our growing team and support our fast-paced security landscape. You’ll be supporting our business and ensuring that we remain fully-operational and compliant with UK GDPR legislation and processes while also working with various teams to expand our capabilities and develop creative solutions to business challenges and opportunities to improve our service to both new and existing customers.

What you'll do

Compliance and Governance

  • Maintain and develop the company's data protection strategy, policies, procedure, and compliance framework in line with UK GDPR, the Data Protection Act 2018, and PECR.

Records and Risk Documentation

  • Lead and conduct Data Protection Impact Assessments (DPIAs), update our Records of Processing Activities (RoPA), conduct Legitimate Interest Assessments (LIAs) and any other expected activity records.

Subject Rights Management

  • Lead and conduct the end-to-end process for Data Subject Access Requests (SARs) and other data subject rights (e.g., erasure, rectification) in a timely and compliant manner.

Breach Management

  • Manage the company's data breach response plan, including investigation, reporting, remediation, and communication with the Information Commissioner's Office (ICO) and affected individuals where necessary.

Advisory

  • Act as the primary point of contact and subject matter expert for all data privacy matters, providing pragmatic advice to internal and external stakeholders, at all levels of the business.

Third-Party Risk

  • Conduct due diligence and manage data protection risks associated with third-party suppliers, including SaaS vendors, finance providers, vehicle dealerships, data brokers, and marketing partners.

Training and Awareness

  • Design and deliver engaging data protection training and awareness campaigns across the business to foster a strong privacy-aware culture.

Monitoring and Reporting

  • Monitor the evolving privacy regulatory landscape and report on the company's compliance posture and risk level.

ICO Liaison

  • Serve as a point of contact for the ICO and support the designated Data Protection Officer (DPO).

What you'll need

  • A passion for Data Protection, Privacy and Information Security and an ability to explain these concepts in a clear and meaningful way to those who may not be familiar with them
  • Excellent understanding and practical experience of the principles/issues involved in Data Protection and compliance with UK GDPR legislation and the expectations of the ICO
  • Excellent understanding of the UK Data Protection Act 2018 and of the principles/issues involved in maintaining compliance
  • Forward-thinking, self-motivated and able to take responsibility for your own initiatives and drive them to implementation
  • Ability to work in a pressured environment while prioritising work in a considerate way
  • Supportive and reliable team member, with excellent attention to detail
  • Awareness of Information Security principles and requirements for ISO27001 compliance would be valuable
  • Any knowledge of the FCA or experience in the financial services industry would be valuable

Why you'll love it here

Don't feel like you meet all of our hiring criteria? That's OK, apply anyway! We'd love to hear from you and have a conversation.

Octopus Electric Vehicles, part of the Octopus Energy Group, won the Sunday Times best company to work for in 2024. We were named 6th out of the top 100 start-ups to work for by Tempo in 2025 and on Glassdoor we were voted 50 best places to work in 2022. Our Group CEO, Greg has recorded a podcast about our culture and how we empower our people.

Wondering what the salary for this role is? Just ask us! On a call with one of our recruiters it's something we always cover as we genuinely want to match your experience.

Skills

UK GDPR
Data Protection Act 2018
PECR
Data Protection Impact Assessments (DPIAs)
Records of Processing Activities (RoPA)
Legitimate Interest Assessments (LIAs)
Data Subject Access Requests (SARs)
Data breach response
Third-party risk management
Data privacy
Information Security

Octopus Energy

Provides affordable green energy solutions

About Octopus Energy

Octopus Energy provides affordable green energy solutions to households and businesses across multiple countries, including the UK, US, Japan, Germany, New Zealand, and Australia. The company focuses on the renewable energy market and utilizes technology and data to enhance its services. Its main product offerings include direct energy sales to consumers and the licensing of its proprietary Kraken technology platform to other energy providers. This platform helps streamline energy management and improve customer experience. Unlike many competitors, Octopus Energy emphasizes sustainability and offers additional services such as electric vehicle solutions. The company's goal is to make green energy accessible and affordable while promoting the use of renewable resources.

London, United KingdomHeadquarters
2016Year Founded
$2,476.6MTotal Funding
GROWTH_EQUITY_VCCompany Stage
Data & Analytics, Automotive & Transportation, EnergyIndustries
1,001-5,000Employees

Benefits

Health Insurance
Dental Insurance
Vision Insurance
Paid Vacation
401(k) Company Match
Parental Leave
Flexible Work Hours
Company Equity
OE Group Share Scheme

Risks

Increased competition in renewable energy may impact market share.
Rapid international expansion exposes Octopus to geopolitical risks.
£3 billion repayment to UK government could strain financial resources.

Differentiation

Octopus Energy's Kraken platform optimizes energy usage for zero-bill homes.
The company leads in electric aircraft charging with AeroVolt collaboration.
Octopus Energy's global reach includes partnerships in Brazil and Japan.

Upsides

'Zero Bills' initiative could revolutionize sustainable living in the UK.
Partnership with Energisa opens South American renewable energy market.
Investment in Ocergy enhances offshore wind capabilities globally.

Land your dream remote job 3x faster with AI