Skillnet Ireland is a business support agency of the Government of Ireland. Our mandate is to advance the competitiveness of Irish businesses through enterprise-led talent development. Skillnet Ireland partners with more than 57 enterprise bodies, providing talent development, upskilling and innovative business supports to 23,142 businesses and 84,515 workers throughout the country last year. The agency has been recognised as an international best-practice model by the European Commission, the OECD and the ILO, among others.
Our mission is to empower enterprises and individuals across every region and sector to build the skills, confidence, and innovation capacity to drive national competitiveness and to succeed in a changing world. We work in partnership with business, government, and education to deliver upskilling driven by enterprise needs, and aligned with Ireland’s national priorities in digital transformation, sustainability, and inclusive growth. Our mission is to create a connected learning ecosystem that accelerates innovation, supports lifelong learning, and supports Ireland’s workforce to be competitive, adaptable, and future-ready.
Skillnet Ireland is funded from the National Training Fund through the Department of Further and Higher Education, Research, Innovation and Science.
Skillnet Ireland is a member of the European Pact for Skills. The organisation actively participates in several skills development projects with European partners. These projects are co-funded by the European Union and support the development of digital and sustainability skills in Irish businesses and organisations.
Skillnet Ireland invites applications for the position of Data Protection, Governance Compliance Specialist. Reporting to the Head of Risk, Governance Digital Transformation, the role is responsible for leading the organisation’s data protection programme, driving data governance maturity, and ensuring compliance with GDPR, the Data Protection Act 2018, and wider regulatory obligations. This role provides expert advisory support, oversees data lifecycle governance, manages data incidents and regulatory engagement, and ensures that information management practices are robust, secure, and aligned with organisational strategy. The role works collaboratively across all departments, acting as a trusted specialist and champion for privacy, governance, and responsible data management.
Key Responsiblities
Data Protection
GDPR Compliance Oversight
Act as statutory Data Protection Officer (DPO)
Monitor and oversee organisational compliance with GDPR and the Data Protection Act 2018.
Conduct audits, risk assessments, policy reviews, and compliance monitoring activities.
Lead awareness‑raising initiatives and deliver staff training on data protection obligations.
Maintain data protection policies, procedures, and guidance.
Incident, Breach Query Management
Manage the organisation’s response to data incidents and personal data breaches, including investigation, documentation, risk evaluation, and regulatory notification to the Data Protection Commission (DPC) where required.
Oversee responses to Subject Access Requests (SARs) and other Data Subject Requests (DSRs), ensuring timely and compliant outcomes.
Act as the primary point of contact for data protection queries from staff, service users, and third parties.
Advisory Governance
Prepare and present regular reports to the Audit Risk Committee on the effectiveness of the organisation's data protection and information governance framework.
Provide expert data protection advisory services across the organisation.
Conduct and review Data Protection Impact Assessments (DPIAs), ensuring risks are identified and mitigated.
Lead Privacy by Design reviews for new systems, processes, and projects.
Review procurement processes, contracts, and data‑sharing agreements to ensure GDPR‑compliant terms and safeguards.
Vendor Supplier Risk Management
Conduct supplier assessments and ongoing monitoring of third‑party processors.
Ensure vendors meet GDPR requirements, including appropriate technical and organisational measures.
Regulatory Engagement Reporting
Act as the designated point of contact for the Data Protection Commission.
Manage regulatory reporting obligations, including breach notifications and compliance documentation.
Maintain Records of Processing Activities (RoPA) and ensure audit‑ready documentation.
Data Governance
Data Governance Leadership
Lead the organisation’s data governance framework, ensuring data is managed as a strategic asset.
Establish governance structures, roles, and responsibilities that support effective oversight of data.
Promote a culture of responsible data use, quality, and stewardship.
Data Lifecycle Governance
Oversee governance of the full data lifecycle—from creation and collection through storage, use, sharing, archival, and deletion.
Implement data retention and disposal schedules aligned with legal and operational requirements.
Support data classification, metadata standards, and data quality controls.
Information Management Practices
Maintain information management policies, standards, and procedures.
Ensure consistent, secure, and compliant handling of information across systems and teams.
Oversee information architecture, data mapping, and documentation.
Collaborate with IT and security teams to ensure information management supports organisational strategy and risk management.
Compliance Risk Management
Support organisational compliance with relevant legislation, regulatory requirements, and internal policies.
Contribute to enterprise risk management activities, including identification, assessment, and mitigation of data‑related risks.
Provide compliance reporting to senior management and governance committees.
Support internal and external audits, ensuring evidence, documentation, and corrective actions are managed effectively.
Qualifications
A third‑level qualification in a relevant discipline (e.g., business, law, public administration, risk management, information systems).
Strong knowledge of GDPR, the Data Protection Act 2018, and data governance principles, with a certification in these disciplines desirable
Professional certifications such as CIPP/E, CIPM, CDMP, or equivalent.
Experience Expertise
Experience in data protection, compliance, information governance, or risk management.
Demonstrated ability to manage data incidents, DPIAs, and regulatory engagement.
Experience in vendor risk management or procurement governance.
Background in public sector, regulated environments, or organisations with complex data ecosystems.
Competencies
Strong analytical, organisational, and problem‑solving skills.
Excellent communication skills and ability to work collaboratively across teams.
Ability to operate with independence, professional judgement, and discretion.
Applicants are invited to submit their application through the Skillnet Ireland Careers page and should include:
A comprehensive CV
A short application letter (maximum two pages) outlining key achievements and demonstrating how their skills, experience, motivation, and values align with the requirements of the role
Closing Date: 5.00 p.m., Monday, 10th August 2026.
Selection Process
Shortlisting based on application materials
Preliminary interview
Final competency‑based interview, which may include a written exercise and strategic presentation
Comprehensive reference checks
An attractive and competitive package will be offered to the successful candidate.
Skillnet Ireland operates a hybrid working model for roles that meet business and suitability criteria.
Skillnet Ireland is an Equal Opportunities Employer and values equity, diversity and inclusion.
If you require reasonable accommodation during the application process, don't hesitate to get in touch with us.