Summary
Overview
Work history
Education
Skills
Languages
Affiliations
Certification
Timeline
Generic

Ebuka Opara

United Kingdom

Summary

Information governance professional with expertise in library and information science, specializing in UK GDPR compliance and the Data Protection Act 2018. Proficient in breach management, DPIA coordination, and handling information rights requests (SAR, FOI, EIR). Demonstrates strong analytical and communication skills, effectively delivering staff training and fostering a culture of data protection. Experienced in assessing data protection risks and embedding privacy by design within organizational processes.

Overview

2
2
Languages
1
1
Certification
10
10
years of professional experience

Work history

Information Governance officer

Halton Borough Council(Contract)
2024.04 - Current
  • Interpreting and applying the UK GDPR, Data Protection Act 2018, and Freedom of Information Act 2000.
  • Coordinating the collection, review and maintenance of evidence supporting organisational compliance with the Data Security and Protection Toolkit (DSPT).
  • Investigating reported Information Governance and personal-data incidents, gathering evidence, assessing risks, identifying root causes and producing written reports and recommendations for senior governance groups
  • Coordinating and reviewing Data Protection Impact Assessments, privacy risk assessments and compliance reviews for new and existing systems, projects and processes involving personal data.
  • Embedding privacy by design and default by mapping risks and controls with stakeholders.
  • Embedding privacy by design and default into projects by identifying data-protection risks, recommending proportionate controls and working with project stakeholders to achieve compliant and practical outcomes.
  • Providing specialist advice and support on information rights (Subject Access Requests, Freedom of Information requests, Environmental Information Requests), disclosure, redaction and confidentiality matters.
  • Supporting the maintenance of data-flow maps, Information Asset Registers and information-risk documentation, guiding Information Asset Owners and Information Asset Administrators.
  • Managing the organisation’s data-sharing register, monitoring agreement expiry dates and following up with responsible leads to ensure agreements remained current, lawful and appropriately documented.
  • Developing, reviewing and maintaining Information Governance policies, procedures, staff guidance and learning materials to reflect legislative, regulatory and organisational requirements.
  • Designing and delivering Information Governance training, staff induction, mandatory awareness sessions and ad hoc briefings to employees at different organisational levels.
  • Coaching and developing team members through regular supervision, objective setting, performance reviews, workload planning and continuous professional development
  • Managing and regularly reviewing the organisation’s Record of Processing Activities (ROPA), ensuring processing purposes, lawful bases, data categories, recipients, retention periods and controls were accurately documented.
  • Monitoring the Data Protection mailbox, triaging and logging enquiries, allocating actions, monitoring deadlines and escalating complex or high-risk cases appropriately.
  • Providing SME advice on Data Protection and Information Governance enquiries, translating UK GDPR, confidentiality, information-rights and records-management requirements into practical guidance for staff and stakeholders.

Data Protection Officer

Fidelity Bank
2020.11 - 2024.04
  • Managed data-subject rights requests, including Subject Access Requests, rectification, erasure, restriction, objection and data-portability requests, ensuring identity verification and statutory deadlines were met.
  • Assessed reported personal-data breaches, supported containment and investigation, evaluated risks to affected individuals and documented decisions regarding regulatory or individual notification.
  • Conducted root-cause and thematic analysis of incidents, identifying recurring risks and recommending corrective actions to prevent recurrence.
  • Reviewed privacy notices, consent wording, customer communications, retention arrangements and data-sharing documentation to ensure transparency and compliance.
  • Supported third-party privacy risk management by reviewing supplier arrangements, Data Processing Agreements, access controls and information-sharing requirements.
  • Advised Fraud, Compliance, Legal, Information Security, Operations and Customer Service teams on appropriate and lawful disclosure of personal information.
  • Supported the development, review and implementation of Data Protection policies, procedures, guidance documents and compliance controls.
  • Planned and delivered Data Protection and confidentiality training, awareness sessions and practical guidance for employees and managers.
  • Liaised with internal audit, risk, compliance, legal and information-security teams to maintain an effective and coordinated privacy-governance framework.
  • Promoted a positive data-protection culture by encouraging staff to report incidents promptly, seek early advice and consider privacy throughout the lifecycle of products and services.

Graduate Library Assistant

Delta State University, Abraka.
2020.01 - 2020.11
  • Maintained accurate and confidential records relating to students, staff, library membership, borrowing activity, enquiries and access to information resources.
  • Applied records-management principles when cataloguing, classifying, indexing, storing and retrieving physical and electronic information resources.
  • Conducted data-quality checks across library-management systems, correcting inaccurate, incomplete and duplicate records and escalating significant issues.
  • Supported stock audits and compliance checks by reconciling physical resources against catalogue records, documenting discrepancies and monitoring corrective actions.
  • Coordinated with librarians, departments, IT, and suppliers to resolve enquiry issues.

Academic Placement

Lagos State University Library
Lagos
2016.04 - 2016.09
  • Applied records-management methods when classifying, cataloguing, indexing, and retrieving resources.
  • Ran data-quality checks across catalogue and user records, correcting duplicates.
  • Reconciled physical stock against catalogue records during library stock audits.
  • Produced spreadsheets and operational reports on overdue items and usage trends.
  • Checked digitisation batches for completeness, accuracy, naming, and classification.

Education

MBA -

University of Chester
Cheshire West and Chester, Cheshire

BSc - Library & Information Science

University of Benin
Benin

Skills

  • Managing & supporting in information-rights requests(SAR,EIR,FOI)
  • Staff Training and Awareness
  • DPIA Management
  • Confidentiality and secure handling
  • Data breaches handling
  • Team Collaboration
  • Attention to detail
  • Effective Communication
  • Records and information management
  • Digital literacy and information systems(Ms365,Excel, SQL, Powerpoint, Sharepoint, MsOutlook)
  • Problem-solving and investigation
  • Data analysis and reporting
  • Stakeholder management
  • Policy compliance and procedures

Languages

English
German

Affiliations

  • Problem solving
  • Reading and Researching
  • Volunteering
  • Photography

Certification

Certified Information Privacy Professional (CIPP/E-In view)

Timeline

Information Governance officer

Halton Borough Council(Contract)
2024.04 - Current

Data Protection Officer

Fidelity Bank
2020.11 - 2024.04

Graduate Library Assistant

Delta State University, Abraka.
2020.01 - 2020.11

Academic Placement

Lagos State University Library
2016.04 - 2016.09

BSc - Library & Information Science

University of Benin

MBA -

University of Chester
Ebuka Opara