WFH.teamOpen app
Back to remote jobs
Remote job detail

Compliance Manager (Data Protection Officer, Regulatory Compliance & Privacy)

Affirm

LocationUnited Kingdom
Senioritymid_senior_level
CompanyAffirm
Verified recentlyChecked today
Compensation

Salary not listed

Salary details are shown when available from the source listing. Sign in before applying so the role can be reviewed against your resume, salary goals, seniority, timezone, and location eligibility.

Requirements and working style

Decision details from the source listing

Experience

6+ years stated

Education

Bachelor’s degree or equivalent practical experience

Work authorization

Right to work in the United Kingdom

Schedule

flexible

Benefits stated
100% subsidised medical coverage for employee and dependentsDental coverageVision coverageMonthly stipends for health, wellness and tech spendingFlexible time offGenerous holiday calendarEmployee stock purchase plan (ESPP)

These fields are normalized from the employer's text. Confirm details on the employer site before applying.

WFH.team analysis

What this posting tells you

Compliance Manager role at Affirm, serving as Data Protection Officer and leading regulatory compliance and privacy oversight for UK entity. Remote UK role, full-time with flexible schedule. Requires 6+ years in regulatory or privacy compliance, strong UK GDPR and consumer protection knowledge, and experience in second-line defense compliance. Benefits include full healthcare coverage, stipends, flexible time off, and equity plan.

Role lane

Accounting, Customer success, Data, Design and creative, Finance and investments, Healthcare admin, Legal, Marketing, Operations, Product, Security, Software, Customer support

Where you can work

United Kingdom

Working hours

GMT, BST

Arrangement

mid_senior_level · full_time

Required signals
UK privacy complianceData Protection Officer responsibilitiesRegulatory complianceRisk managementGovernanceAudit supportUK GDPRData Protection Impact AssessmentsCompliance monitoringConsumer protectionVulnerable customers complianceSecond-line of defence modelPolicy and procedure developmentCross-functional partnership
Preferred signals
Experience in financial services, fintech, or regulated consumer creditDPO experience in regulated environmentManagement reportingCompliance risk assessment
Confirm before applying
  • Compensation is not listed
Market context

Accounting hiring on WFH.team

1,628active related roles
966new in the latest period
1302.4jobs per 100 candidates
$144kmedian of comparable listed ranges

Category counts come from WFH.team's latest published remote job market snapshot.

Explore the remote job market
Skills and signals
UK privacy complianceData Protection Officer responsibilitiesRegulatory complianceRisk managementGovernanceAudit supportUK GDPRData Protection Impact AssessmentsCompliance monitoringConsumer protectionVulnerable customers complianceSecond-line of defence modelPolicy and procedure developmentCross-functional partnershipExperience in financial services, fintech, or regulated consumer creditDPO experience in regulated environmentRemote-first with flexibility built in; role is Remote UK
Job description

Compliance Manager (Data Protection Officer, Regulatory Compliance & Privacy) at Affirm

At Affirm, we exist for the moments that matter—giving people a clear, predictable way to pay over time, with no hidden fees, no surprises, and no tradeoffs on what matters most.

About the Legal, Compliance, and Public Affairs team

The Legal, Compliance, and Public Affairs team is a group of dedicated professionals committed to helping Affirm scale, innovate, and provide outstanding products for consumers, merchants, and key partners. We combine legal, compliance, and policy expertise to guide growth, shape products, and build trust across our ecosystem. Our work spans multiple professional disciplines and provides the foundation for Affirm’s mission to deliver honest financial products.

About the role

The Manager, Regulatory Compliance & Privacy (DPO) will support the UK Compliance function by leading and coordinating key second-line regulatory compliance and privacy oversight activities for the UK entity. This role will serve as the operational lead for UK privacy compliance and Data Protection Officer (DPO) responsibilities, while also supporting broader UK regulatory compliance priorities, including vulnerable customers and other key regulatory expectations and programs. The role will partner closely with Legal, Product, Engineering, Operations, Risk, Financial Crimes, and other Compliance stakeholders to ensure a well-governed, scalable, and effective UK compliance framework.

What you’ll do

As Manager, Regulatory Compliance & Privacy , serve as the primary operational lead for UK privacy compliance matters and act as the designated Data Protection Officer (DPO) for the UK entity, subject to any final organisational and regulatory approvals.

Lead and oversee on existing key UK privacy governance activities, including Data Protection Impact assessments (DPIA’s), oversight, privacy risk assessments, incident and breach governance, data subject rights processes, retention and deletion governance, and regulatory documentation, where required suggest improvements.

Lead the regulatory input of the firm's Management Information (MI) dashboard for Privacy, to include data relating to consumer outcomes and the firm's meeting of Privacy requirements. Ensure ongoing consideration of the metrics and make recommendations for improvement or updates.

Lead the development of the firm's Privacy Compliance Monitoring Programme (CMP) ensuring its suitability is aligned to the risk appetite of the firm, the regulatory landscape and the market within which the firm operates

Support in completion of the firm's Enterprise wide compliance risk assessment and control inventory, including collecting and documenting results, establishing where opportunities exist and work with internal and external partners to deliver.

Translate legal and regulatory requirements into compliance standards, governance routines, oversight expectations, and program requirements for first-line stakeholders.

Support the design, implementation, and continuous improvement of the UK regulatory compliance framework across key privacy, conduct and consumer protection areas, including vulnerable customers and other core UK regulatory programs.

Provide second-line challenge and oversight of first-line control environments, including review of control design, identification of gaps, escalation of issues, and remediation tracking.

Maintain and enhance governance processes for UK compliance issues management, risk assessments, control oversight,and reporting.

Support internal audit, external audit, regulatory enquiries, and external partner review activity, including coordination of materials, tracking of actions, and remediation governance.

Prepare recurring management reporting, governance materials, and issue summaries for senior leadership and relevant governance forums.

Partner with Legal to ensure clear delineation between legal advisory responsibilities and Compliance operational / oversight responsibilities, particularly in the privacy space.

Partner with Product, Engineering, Operations, and other cross-functional stakeholders to ensure UK privacy and regulatory requirements are operationalised effectively.Coordinate with regional and global Compliance partners to support consistency in governance standards, documentation, and reporting across jurisdictions.

Help identify and implement improvements to compliance processes, governance routines, documentation standards, and oversight tools.

Showcase Compliance as an open for business function, accessible and relatable to the goals and objectives of the firm.

What we look for

6+ years of experience in regulatory compliance, privacy compliance, risk management, governance, audit, or a related control

function, preferably within financial services, fintech, banking, or another regulated environment, ideally past experience acting as a DPO in a regulated consumer credit firm.

Strong understanding of UK privacy and regulatory compliance expectations, including UK GDPR, governance, DPIA’s, breach

processes, data subject rights, consumer protection, conduct risk, vulnerable customers, and related compliance program requirements.

Experience operating within a second-line of defence model, including governance, oversight, monitoring, and independent challenge of first-line control environments.

Demonstrated ability to translate legal and regulatory requirements into policies, standards, procedures, governance routines and control expectations.

Experience supporting audits, regulatory exams, control reviews, or similar oversight processes in a regulated environment.

Strong cross-functional partnership skills, with the ability to work effectively with Legal, Marketing, Product, Engineering, Operations, Risk, and Compliance stakeholders.

Sound judgment, strong organisational discipline, and the ability to manage sensitive regulatory matters with discretion and rigor.

Experience preparing management reporting, governance materials, and escalation summaries for senior stakeholders.

Ability to manage multiple workstreams and move between strategic governance design and day-to-day execution.

Bachelor’s degree or equivalent practical experience; relevant certifications.

Base Pay Grade - L

Equity Grade - 5

Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.

Base pay is part of a total compensation package that may include monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidised medical coverage, dental and vision for you and your dependents). In addition, the employees may be eligible for equity rewards offered by Affirm Holdings, Inc. (parent company).

GBR base pay range per year: £101,000 - £149,000

Location: Remote UK

#LI-Remote

Remote-first with flexibility built in

Affirm is proud to be a remote-first company. Most roles can be done from almost anywhere within the country of employment. Some positions may occasionally require in-person work at an Affirm office, and a few are office-based due to the nature of the work. All new hires will be invited to attend an in-person onboarding experience.

Benefits designed for you

Our benefits reflect our commitment to care, transparency, and flexibility. Here are a few highlights:

  • Health coverage at no cost: We cover 100% of premiums for employees and their dependents.
  • Spending stipends: Monthly stipends support your tech setup, and the ability to choose health and wellness options that are right for you.
  • Time off to recharge: Flexible time off and generous holiday calendars help you rest when you need to.
  • Own a piece of what you build: Our employee stock purchase plan (ESPP) lets you buy Affirm stock at a discount.

We’re committed to providing an inclusive interview process, including accommodations for candidates with disabilities. If you need support, we’re happy to help.

For positions based in San Francisco or Los Angeles: Affirm considers qualified applicants with arrest and conviction records, as required by law.

By clicking "Submit Application," you acknowledge that you have read Affirm's Global Candidate Privacy Notice and consent to the use of your personal information as described.

Company context

Working remotely at Affirm

We’re excited to announce that Affirm is now a remote-first company!

Headquarters
United States, Poland, and Canada
Team size
1001-5000
Founded
2012
Remote policy

Affirm is described as operating on a remote-first model.

Application process

Review current openings on Affirm's official careers page before applying.

RxJavaJavaScriptHTML5JavaCSS 3RubyKotlinSwiftObjective-CLua
Research Affirm