Personal Data Protection/Privacy Expertise Support (NATO-NCIA)

Brussels, Belgium, Sapienza Consulting [OCIO-0006]

Field(s) of expertise
Project and Service Management
Job type

About this job

Sapienza Consulting, a tpgroup company, is recruiting a Personal Data Protection/Privacy Expertise Support to join NATO – NCIA in Brussels, Belgium.


The NATO Office of the Chief Information Officer (OCIO) is responsible for IT Coherence and Cyber Defence for the NATO Enterprise. The OCIO requires support in the drafting and implementation of a Personal Data Protection Policy (PDPP) (e.g. Privacy Policy) for the NATO Enterprise. As an international organization (IO), NATO is not bound to follow any national personal data protection law or GDPR, but has the liberty to pick the best elements of national law and other IO’s policies. The candidate will have the exciting opportunity to play a key role in implementing a standardized personal data protection programme throughout the NATO enterprise including travel and coordination with various NATO entities throughout Europe and North America.

The contracted individual must be able to perform effectively and efficiently with minimal supervision the following tasks:

  • Support the PDPP Core Writing Team in the approval of the NATO Personal Data Protection Framework Policy by providing expertise and editorial skills
  • Develop an implementing supporting document to the NATO Personal Data Protection Framework Policy that further explains how to implement the policy
  • Develop a Personal Data Protection Policy template that NATO Bodies can use to readily develop their own Personal Data Protection policies
  • Develop other documents required by the NATO Enterprise personal data protection program, such as personal data protection risk register templates, personal data transfer agreement templates, personal data impact assessment templates and so on
  • Serve as the NATO Enterprise Personal Data Protection Officer with a coordination role. The person will engage with stakeholders throughout the NATO Enterprise to facilitate the adoption of the NATO Personal Data Protection Framework Policy and to provide expert advice
  • Provide advice to the OCIO as to other aspects of a personal data protection programme that NATO should adopt
  • Other related tasks may be assigned as required



  • The candidate must have a university degree from a nationally recognised/certified University. Exceptionally, the lack of a university degree may be compensated by the demonstration of a contractor’s particular abilities or experience in personal data protection/privacy
  • The candidate must have expertise in national/European personal data protection law and regulations
  • The candidate must have multiyear experience in planning, implementing and managing a personal data protection/privacy program
  • The candidate must have excellent English writing skills and the ability to brief their work in English
  • The candidate must have strong stakeholder engagement skills



  • Professional Certifications in personal data protection/privacy such as CIPP or CIPM
  • Experience in GDPR
  • Experience working in an International Organization or for government
  • Business or process analyst experience is a plus

For information on how the personal data in your application is processed, please see the Sapienza Consulting Privacy Policy.