Everway
Privacy Assurance & Compliance Specialist

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
About Everway
Every mind is unique. Yet much of the world is still built for what’s considered "normal," leaving too many people behind. At Everway, we change that by creating technology that helps everyone understand and be understood. By understanding and addressing the unique needs of each individual, we're creating a world where differences are recognized and valued.
Our careers fit real life. When you join us, you’re not just taking a job. You’re joining a movement to build a more neuroinclusive world. We’re a global community of over 800 employees spanning North America, UK, Europe, Australia, and New Zealand. A career here is purposeful and fast-moving, with clear expectations, modern tools, and the clarity to focus on what matters most.
Our people are supported and encouraged to show up as they are, with different ways of thinking welcomed and valued. We pride ourselves on our core values that are embedded within our culture. These are to be curious, have courage, and commit fully.
Join us at Everway - together, we can unlock the full potential of every mind.
About the Role
The Privacy Assurance & Compliance Specialist will manage and support the day-to-day delivery of Everway’s global privacy assurance and compliance programme, supporting the Director of Compliance in their capacity as Data Protection Officer (DPO).
The role will help ensure that privacy and data protection requirements are embedded into Everway’s products, systems and business processes and that privacy risks, controls and regulatory obligations are effectively identified, managed, monitored and evidenced.
Working closely with Legal, Data Governance, Information Security, Product, Engineering, People and other business teams, the role will provide practical privacy guidance and independent compliance oversight while helping Everway maintain a scalable and audit-ready privacy programme across evolving frameworks.
The role is focused on privacy assurance, risk, governance and compliance. Legal retains responsibility for contractual privacy matters and legal advice, while business and data owners remain accountable for the data and processing activities within their areas.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Main Responsibilities
- Supporting the Director Compliance, to implement and deliver the privacy workstream of the compliance roadmap, ensuring the company meets its legal, regulatory and reputational responsibilities.
- Support and lead specific workstreams within the Compliance roadmap and business improvement projects/initiatives, for example data mapping, risk management, controls testing and policy development.
- Lead and coordinate Data Protection Impact Assessments (DPIAs) on products, systems, and processes, tracking risk treatments and embedding Privacy-by-Design from the outset.
- Manage the framework for Data Subject Access Requests (DSARs) and Data Deletion Requests, ensuring robust processes with system owners to assure quality and timeliness.
- Identify privacy risks and controls, translating them into practical business processes to improve organisational compliance and supporting incident management.
- Address privacy-focused vendor security inquiries from customers and collaborate with Legal on related requests.
- Maintain and enhance the Knowledge Base and Trust Centre resources to ensure up-to-date compliance documentation.
- Conduct comprehensive internal Vendor Security Reviews to assess and mitigate third-party privacy risks.
- Develop, implement and maintain internal privacy policies, external privacy notices, procedures and ELT/governance reporting including KPIs.
- Lead privacy assurance activities supporting audit and certification initiatives (e.g., ISO 27701, ISO 27001, ISAE 3000, SOC 2) and manage central evidence within GRC tools.
- Monitor regulatory developments, assist with regulator/auditor interactions, and liaise with external and internal legal counsel as applicable on cross-jurisdictional privacy matters.
Essential Criteria
- Degree level (or equivalent) qualification in a related discipline (e.g., Law, Data Protection, Information Security, Compliance, or Risk)
- 2+ years experience in a similar role in data privacy compliance or privacy assurance role, ideally within a software, SaaS, or international tech environment.
- Sound working knowledge of EU GDPR, including risk and compliance management.
- Ability to work independently and effectively manage and prioritise workstreams in a dynamic environment.
- Practical experience supporting DPIAs, DSAR/data deletion requests, ROPAs, incident response, and vendor privacy reviews.
- Proven experience translating regulatory requirements into clear, practical business processes and controls.
- Strong cross-functional stakeholder management and communication skills.
- Detail-oriented with strong analytical, problem-solving, and organizational skills.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desirable Criteria
- Experience working within a SaaS, Edtech, or software development environment.
- Knowledge of ISO 27001, ISO 27701, ISAE 3000, ISO 42001, or SOC 2 frameworks.
- Familiarity with GRC platforms (such as Vanta, One Trust).
- Relevant privacy or audit qualifications (e.g., CIPP/E, CIPM, or ISO internal auditor training).
- Proficiency with Google Workspace, docs, chat, drive.
Application Details
Please submit your application by Thursday 15th October 2026. Please note: applications may close early due to high demand, so early submission is encouraged.
Benefits
Join our team and enjoy a competitive salary with bonus opportunities, flexible work schedules, and comprehensive health and wellness benefits. We offer flexible time off plans, career growth through development programs, and a collaborative, innovative culture where your ideas matter. Ready to make an impact? Apply today and be part of a company that invests in your success!
We are committed to providing a Drug-Free Workplace for all employees.
We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.
You can view our Recruitment and Selection Policy here.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location