All positions
Data Protection and Governance Manager
Department:Risk
Location:Berlin
About the opportunity
Are you ready for your next career step? We are looking for an experienced Data Protection & Governance Manager to join the Data Protection & Governance team within the CISO Office. In this pivotal role, you will help ensure N26 meets its data protection obligations. You will play a key role in ensuring continuity of privacy risk coverage, supporting regulatory readiness, and strengthening how data protection requirements are embedded in day-to-day operations..
What You Will Do
- Govern & Scale: Operationalise data ownership, stewardship, classification, and lifecycle/deletion controls across the business.
- Manage Privacy Risk: Maintain the 2LoD risk framework, risk register, and effectiveness testing for EU privacy laws (GDPR), DORA, MaRisk, and emerging regulations like the EU AI Act.
- Support the DPO & CISO: Triage the DPO mailbox, handle complex internal/external queries, and run DPO involvement and administrative processes.
- Monitor & Report: Design high-impact privacy metrics, global "health checks," and executive reporting for governance forums.
- Drive Execution & Compliance: Partner cross-functionally to close audit findings, manage third-party/vendor risks (DPAs, PIAs/TIAs), and run dynamic privacy awareness initiatives.
What You Need to Succeed
Background & Experience- 3+ years of hands-on experience combining data protection/privacy risk management with data governance (metadata, data quality, stewardship) preferably in banking, fintech, or financial services.
- Proven track record building operational/NFR frameworks, risk matrices, and registers covering personal data, privacy, and AI risks.
- Solid grasp of core InfoSec intersection points: encryption, access controls, logging, and incident response.
- Familiarity with GRC tooling (e.g., ServiceNow) and modern AI-driven risk reporting.
- Certifications (Preferred): IAPP (CIPP/E, CIPM) or Security/Risk credentials (CISA, CISM, CRISC).
- Education: Degree in Tech, Law, Risk, or equivalent practical experience.
- Pragmatic Risk Mindset: Able to translate complex cyber, legal, and AI regulations into clear, actionable advice for non-technical teams.
- Cross-Functional Execution: Strong stakeholder manager who can constructively challenge, prioritize competing workstreams, and close audit actions fast.
- Communication: Exceptional documentation, reporting, and narrative-building skills in English (German is a plus).
- Bias for Action: Resilient, curious, highly analytical, and comfortable innovating processes within an agile, fast-moving environment.
- Accelerate your career growth by joining one of Europe’s most talked about disruptors 🚀.
- Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
- As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
- Vacation days vary depending on your location of work. Additional day of annual leave for each year of service.
- A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and family statuses.
- A relocation package with visa support for those who need it.