PERSONAL DATA PROTECTION LEGAL OFFICER (HEADQUARTERS) - M/F
Machine translation — original language: French.Show original
Description:
MAIN MISSION:
Within the Inserm Data Protection Delegation, under the responsibility of the Data Protection Officer and in collaboration with other Inserm departments, the recruited person will be responsible for assisting the Data Protection Officer.
MAIN ACTIVITIES:
- Provide first-level legal analysis of referrals addressed to the delegation by various stakeholders (files, requests for advice, data protection impact assessments, exercise of rights, data breaches, etc.):
- Perform, in connection with other support functions, a compliance review with the legal and regulatory framework as well as Inserm's internal rules regarding personal data protection
- Formulate documented opinions on the level of compliance and, if necessary, identify potential corrective measures to be implemented
- Alert the Data Protection Officer in case of serious risk or identified non-compliance
- Ensure the follow-up of ongoing projects and procedures
- Contribute to the development of dedicated and adapted tools and procedures to ensure the establishment's compliance with regulations, in connection with the network of dedicated data protection referents and competent actors at Inserm
- Contribute to information, advice, awareness, and training actions for staff regarding the issues and obligations related to personal data protection
- Participate in training and animation actions for the network of dedicated data protection referents
- Participate in working groups, meetings, and write minutes
- Draft letters and notes
- Ensure legal, regulatory, and IT security monitoring and contribute to the drafting and dissemination of content produced by the Delegation, particularly in the section dedicated to personal data protection on the Inserm intranet
- Participate in audit missions conducted by the Data Protection Officer
- Establish and maintain documentation under the "Accountability" principle, including the record of processing activities
- Contribute to the monitoring and updating of dashboards and activity tracking for the Data Protection Delegation and participate in the preparation of the annual report
- Contribute to the processing of requests for the exercise of rights by data subjects
Profile sought:
SPECIFICITY(IES) AND POST ENVIRONMENT:
Exposure to sensitive or confidential subjects requiring great professional discretion.
KNOWLEDGE:
- Good knowledge of rules relating to the protection of personal data
- Knowledge of the regulations applicable to research in the health field
- Dual competence in the fields of IT and information security
- Knowledge of the public service environment, EPST, and research
SKILLS:
- Very good synthesis, written, and oral expression skills
- Ability to popularize information (pedagogy)
- Ability to adapt one's discourse to interlocutors
- Organization, rigor, and method, ability to write within tight deadlines
- Ability to prioritize, manage emergencies, and organize time among many projects
- Mastery of Pack Office (Word, Excel, Power Point, internal messaging, and internet)
- Ability to work in English is indispensable
APTITUDES:
- Adaptability, autonomy, and spirit of initiative
- Interpersonal skills, communication skills, and a taste for teamwork
- Availability, reactivity, and versatility
- Investigative spirit, curiosity, and interest in health research
DESIRED EXPERIENCE:
- 3 to 5 years within a Data Protection Delegation
DIPLOMA LEVEL AND TRAINING:
- Master 2 or 3rd cycle in new technologies law/digital law/data protection