Job description
Still not sure? We are a culture where values are at the center of everything we do. We also embody what we call the Docebo Heart. We trust our teammates, assume the best of one another, and also hold space for all the differences that make us better. \uD83D\uDC99
So what are you waiting for? Apply today! Join 800+ global Docebians and change the way people learn.
Are you ready to be a part of the learning revolution? \uD83D\uDE80
About This Opportunity:
Docebo is looking for a technically savvy Data Protection Officer (DPO) with strong legal knowledge. The role is responsible for enhancing and maintaining the privacy and data protection framework within Docebo with a heavy focus on pragmatic business counselling on data usage and compliance issues. The DPO will establish, implement and manage processes that ensure purposeful, robust, and proactive compliance with regulatory requirements. The DPO will provide advice and act as a key stakeholder in relation to most of the data protection and privacy-related activities.
This position allows you to collaborate with members of Product, Legal, Security, HR, Marketing, and other teams throughout the company to support our strong privacy culture and practices. This position will report to the Chief Information Security Officer (CISO) and collaborate in an ongoing way with Privacy Counsel (Legal). In this role, you will be a subject matter expert for international privacy laws, such as GDPR, CCPA, Cookie Directive, PIPEDA, PIPL, HIPAA etc., while providing practical advice and guidance on privacy-related business issues. The position is contemplated for either the United Kingdom (preferred) or Italy (Milan area).
Role and Responsibilities:
- Lead the design, implementation, and maintenance of Docebo’s global privacy program.
- Provide and maintain policy governance around Data Protection.
- Work closely with Information Security, Legal and Product on complex issues as they emerge in developing new services and technologies and marketing-related privacy issues such as consent requirements and cookie compliance.
- Act as a contact point for data subject requests from individuals regarding processing their personal data.
- Ensure the Docebo Register of Processing Activities is up to date by providing support and guidance to internal teams to help them maintain it, using privacy governance tools.
- Champion the integration of Privacy Principles across the organization, including internal/external audits, awareness-raising activities, and staff training in processing operations.
- Support the ongoing review and update of the DPMS structure, including associated processes, standards, procedures, and Privacy Shield.
- Provide advice where a DPIA has been carried out and monitor its performance, including advising and assisting Docebo business function with the carrying out of DPIAs, advising Privacy Counsel on when a DPIA is required under regulations, assisting such functions with procedural and substantive aspects of DPIAs, and undertaking any prior consultations with Privacy Counsel or supervisory authorities that may deem required.
- Create and maintain a Data Retention Policy with Privacy Counsel and guide internal functions to make it effective.
- Participate in information security incident planning, investigation, and response to ensure compliance with all relevant laws, regulations, and contractual requirements.
- Understand and stay current on applicable laws, regulations, and industry standards related to privacy and data protection.
- Advise Security, HR, business, and engineering teams regarding privacy by design and data governance.
- Analyze and help operationalize new privacy laws and standards.
Qualifications:
- Experience as in-house experience as a privacy lawyer/privacy counsel.
- Experience as a Data Protection Officer (DPO)
- Experience supporting Software as a Service (SaaS), mobile privacy, analytics, and AI is a strong plus.
- Demonstrable experience with privacy governance/compliance tools (OneTrust, DPOrganiser, TrustArc) and associated reporting.
- Experience handling investigations, including communication with authorities and external parties, will be considered a plus.
- Strong passion and knowledge of cloud computing and product development.
- Keen to deeply understand the functions of Docebo’s business direction, data assets, and information flows.
- Excel in a collaborative team approach in advancing projects in a multi-stakeholder environment.
- Possess a deep knowledge of applicable data privacy regulations and standards (e.g., CCPA, GDPR, PIPEDA, PIPL, Cookie Directive, HIPAA, etc.).
- IAPP privacy certification (CIPP/E or CIPT) required.
- A team player with a sense of humour, self-awareness, innate curiosity, desire, and ability to learn rapidly.
- Keen understanding of the changing landscape of international privacy laws, regulations, and guidance.
- Strong verbal and written communication skills.
- A strong sense of initiative and drive to improve.
- Inclusive and flexible work environment
- Generous Vacation Policy, plus 2 extra floating holidays to use for religious or cultural events that matter to you
- Employee Share Purchase Plan
- Career progression/internal mobility opportunities
- Four employee resource groups to get involved with (the Docebo Women's Alliance, PRIDE, BIDOC, and Green Ambassadors)
About Docebo \uD83D\uDC99
Docebo is an Equal Employment Opportunity employer. We are committed to diversity and inclusion in our workforce. All qualified applicants and employees will receive consideration for employment regardless of their race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, citizenship status, age, disability, genetic information, or any other category protected under applicable law.
Any individuals requiring a reasonable accommodation to assist with their job search or application for employment should send an e-mail to recruiting_accommodations (at) docebo.com. The e-mail should include a description of the requested accommodation and the position you’re applying for or interested in.