Affirm logo

Affirm

Compliance Manager (Data Protection Officer, Regulatory Compliance & Privacy)

Work from home

Remote role where the employee must remain based in a particular country.

United Kingdom only

Employer listed it 2 weeks ago · Added 4 days ago

Been open since 2 weeks ago, still being checked, but it has been live a while.

Salary

£101k to £149k per year

Location

United Kingdom only

Timezone

GMT

Contract

Full-time

Experience

Mid

Category

Data

Stated by the employer in the job description

Remote flexibility

Work from home

This is a remote role, but the employee must be based in United Kingdom. It is work from home rather than work from anywhere.

What the employer says

  • Source listing states candidate location: "Remote UK"
  • Job description states: "based in San Francisco or Los Angeles"

What Nomaders makes of it

  • Payroll and tax are likely handled in that country only

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

At Affirm, we exist for the moments that matter—giving people a clear, predictable way to pay over time, with no hidden fees, no surprises, and no tradeoffs on what matters most.

About the Legal, Compliance, and Public Affairs team The Legal, Compliance, and Public Affairs team is a group of dedicated professionals committed to helping Affirm scale, innovate, and provide outstanding products for consumers, merchants, and key partners. We combine legal, compliance, and policy expertise to guide growth, shape products, and build trust across our ecosystem. Our work spans multiple professional disciplines and provides the foundation for Affirm’s mission to deliver honest financial products.

About the role

The Manager, Regulatory Compliance & Privacy (DPO) will support the UK Compliance function by leading and coordinating key second-line regulatory compliance and privacy oversight activities for the UK entity. This role will serve as the operational lead for UK privacy compliance and Data Protection Officer (DPO) responsibilities, while also supporting broader UK regulatory compliance priorities, including vulnerable customers and other key regulatory expectations and programs. The role will partner closely with Legal, Product, Engineering, Operations, Risk, Financial Crimes, and other Compliance stakeholders to ensure a well-governed, scalable, and effective UK compliance framework.

What you’ll do

As Manager, Regulatory Compliance & Privacy , serve as the primary operational lead for UK privacy compliance matters and act as the designated Data Protection Officer (DPO) for the UK entity, subject to any final organisational and regulatory approvals.

Lead and oversee on existing key UK privacy governance activities, including Data Protection Impact assessments (DPIA’s), oversight, privacy risk assessments, incident and breach governance, data subject rights processes, retention and deletion governance, and regulatory documentation, where required suggest improvements.

Lead the regulatory input of the firm's Management Information (MI) dashboard for Privacy, to include data relating to consumer outcomes and the firm's meeting of Privacy requirements. Ensure ongoing consideration of the metrics and make recommendations for improvement or updates.

Lead the development of the firm's Privacy Compliance Monitoring Programme (CMP) ensuring its suitability is aligned to the risk appetite of the firm, the regulatory landscape and the market within which the firm operates

Support in completion of the firm's Enterprise wide compliance risk assessment and control inventory, including collecting and documenting results, establishing where opportunities exist and work with internal and external partners to deliver.

Translate legal and regulatory requirements into compliance standards, governance routines, oversight expectations, and program requirements for first-line stakeholders.

Support the design, implementation, and continuous improvement of the UK regulatory compliance framework across key privacy, conduct and consumer protection areas, including vulnerable customers and other core UK regulatory programs.

Provide second-line challenge and oversight of first-line control environments, including review of control design, identification of gaps, escalation of issues, and remediation tracking.

Maintain and enhance governance processes for UK compliance issues management, risk assessments, control oversight,and reporting.

Support internal audit, external audit, regulatory enquiries, and external partner review activity, including coordination of materials, tracking of actions, and remediation governance.

Prepare recurring management reporting, governance materials, and issue summaries for senior leadership and relevant governance forums.

Partner with Legal to ensure clear delineation between legal advisory responsibilities and Compliance operational / oversight responsibilities, particularly in the privacy space.

Partner with Product, Engineering, Operations, and other cross-functional stakeholders to ensure UK privacy and regulatory requirements are operationalised effectively.Coordinate with regional and global Compliance partners to support consistency in governance standards, documentation, and reporting across jurisdictions.

Help identify and implement improvements to compliance processes, governance routines, documentation standards, and oversight tools.

Showcase Compliance as an open for business function, accessible and relatable to the goals and objectives of the firm.

What we look for

6+ years of experience in regulatory compliance, privacy compliance, risk management, governance, audit, or a related control

function, preferably within financial services, fintech, banking, or another regulated environment, ideally past experience acting as a DPO in a regulated consumer credit firm.

Strong understanding of UK privacy and regulatory compliance expectations, including UK GDPR, governance, DPIA’s, breach

Requirements

The employer hasn't listed requirements separately, they're described in the role summary above and on the original listing.

Benefits

No benefits package published with this listing. Ask about it at first interview.

How to apply

  1. 1Check the flexibility label above, work from home, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Affirm, mentioning your remote working experience and working hours (GMT).
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 5d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open data roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

£101k to £149k per year · You'll be taken to the employer's careers page.