On-site
Rekrute -
Morocco , Rabat
--
Rekrute

Job Details

Job description


Company culture :

Axa Services Maroc operates within a strongly collaborative culture, where people, trust, and high-quality professional relationships are central. The company promotes close and supportive management, encouraging accountability, development, and teamwork. This human-centered environment is reinforced by robust organizational practices that ensure reliability and operational efficiency. It is balanced by a performance-oriented mindset and a measured openness to innovation, supporting collective success.




Job :

Role and main mission:




Reporting to the Head of the Compliance, Internal Control, and Security Department, your main mission is to ensure the organization's compliance with current regulations (particularly GDPR) regarding personal data protection, and to manage risks related to the confidentiality and security of data.



Main responsibilities




1. Regulatory and strategic watch



Continuously monitor regulatory changes (GDPR, local laws, CNDP recommendations, etc.)
Support management on legal and strategic issues related to data protection



2. Data compliance and governance



Define, deploy, and maintain the personal data protection policy
Manage and update the register of processing activities
Implement and manage:



Consent management systems
Procedures for exercising data subject rights
Data breach management processes



Conduct impact assessments (DPIA) and support business projects
Lead structural topics: data mapping, cookies, Privacy by Design
Supervise data purging campaigns (structured and unstructured)
Manage the dedicated personal data mailbox
Handle requests for exercising rights and complaints
Ensure processing compliance and monitor declarations to the CNDP



3. Awareness and training



Design and deliver training and awareness sessions for employees
Promote a data protection culture within the organization



4. Incident management and audits



Supervise the management of incidents related to personal data (breaches, leaks)
Keep the incident register up to date
Lead or coordinate GDPR compliance audits
Define and monitor corrective action plans



5. Relations with control authorities



Be the preferred point of contact with the CNDP
Ensure mandatory declarations (incidents, files, reports)
Manage exchanges and controls with authorities



6. Advice and support



Support business units and data controllers in their projects
Integrate GDPR requirements from the design stage (Privacy by Design / by Default)





Required profile :

You have a Master's degree (Bac + 5) in a legal field (business law, digital law, personal data law), computer science (information system security), or a business school with a specialization in compliance or risk management.



Professional experience:
Minimum 2 to 3 years of experience in similar roles (lawyer specializing in personal data, compliance auditor, or GDPR consultant)



  • In-depth knowledge of GDPR
  • Knowledge of "Privacy by Design" and "Privacy by Default" methodologies
  • Management of data processing mapping tools
  • Information system security (ISS) principles
  • Project management


Similar Jobs

About Rekrute
Morocco, Rabat