Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
3.0 - 7.0 years
0 Lacs
pune, maharashtra
On-site
As a Regional Solutions Engineer at Data Dynamics, you will play a crucial role in technical pre-sales and customer management. Your responsibilities will include gathering business and technical requirements from customers, coordinating technical information, providing demonstrations, and positioning our products effectively. You will research customer requirements thoroughly and ensure supportability considerations. You will be tasked with evaluating customers" business needs and translating them into technical and licensing requirements. In the case of a Proof of Concept (POC) or sale, you will collaborate with the sales representative to review the work. For existing customers targeted for upsell or cross-sell opportunities, you will work closely with the customer success manager and global support team, offering a seamless customer experience. Your role will involve setting up and conducting demonstrations and POCs independently. You will define success criteria with customers and sales representatives, monitor goal achievement throughout the POC process, and present the outcomes to Data Dynamics Sales and customer decision-makers. Post-sale, you will be available to assist or lead the installation based on time zone and resource availability. Given your daily interactions with new and existing customers, understanding their business objectives, technical capabilities, and constraints, you are expected to be a customer advocate. Your feedback on business processes, technical issues, and potential enhancements will be invaluable in driving continuous improvements and ensuring customer success. In addition to the above responsibilities, you will be involved in script writing, bug reporting, software testing, personal activity tracking, CRM updates, and communication updates to management. Occasional travel for customer or internal meetings may be necessary. At Data Dynamics, we prioritize delivering an exceptional customer experience. We foster a collaborative, challenging, fun, and innovative work environment. If you are a customer-centric individual passionate about developing scalable data-driven software, we would love to have a conversation with you. **Qualifications:** - Proficiency with Windows, Linux, Docker, and Kubernetes - Knowledge of SQL, Postgresql, Elasticsearch, File/NAS, Object Storage, Data Discovery, Data Science, OCR, NLP, Computer Vision, AI, Keyword search, Regex, Data Governance, GDPR, HIPAA, CCPA - Experience with Microservices based applications, ITILv4, Project Management, and Data Migration - Previous experience in presales and integration - Strong problem-solving, presentation, and communication skills - Ability to work effectively in a team environment - Background in data management or related field is a plus - Bachelor's degree in Computer Science, Engineering, or related field,
Posted 1 week ago
2.0 - 6.0 years
0 Lacs
karnataka
On-site
You will be joining a team of cloud enthusiasts at Rapyder, an innovative company specializing in Cloud Computing Solutions, Big Data, Marketing & Commerce, DevOps, and Managed Services. As a Corporate Legal Executive, your role will involve ensuring the company's compliance with laws and regulations, managing legal risks, and providing legal advice to various departments. Your key responsibilities will include drafting, reviewing, and negotiating a variety of commercial contracts such as NDAs, SOWs, and MOUs. You will also be responsible for vetting legal agreements from partners, customers, and vendors, as well as handling ESOP Trust Creation & Administration. Providing legal advice to internal stakeholders, advising on agreements with clients, vendors, and partners, and ensuring compliance with data protection, privacy, and security regulations will be crucial aspects of your role. You will need to have a BA/LLB degree with at least 2 years of experience as a legal counsel, including experience in attending Labour cases. Strong knowledge of data protection regulations, the ability to manage multiple projects simultaneously, excellent communication skills, and strong analytical abilities are essential for this role. Experience in corporate governance matters will be considered a plus. Stay updated on changes in relevant laws and regulations, and represent the company in legal and statutory matters with authorities when necessary.,
Posted 1 week ago
3.0 - 7.0 years
0 Lacs
delhi
On-site
As a skilled and experienced Data Protection Specialist, you will play a crucial role in our organization by ensuring the implementation of Data Protection Compliance with the DPDP Act. Your responsibilities will include developing and implementing data protection policies and procedures, conducting thorough risk assessments, collaborating with business stakeholders, and identifying potential compliance gaps for our customers. Your key responsibilities will involve developing and implementing data protection policies and procedures, conducting risk assessments including DPIA to identify privacy gaps, monitoring data processing activities for compliance with data protection laws, providing training on data protection best practices, designing and implementing data breaches and security incidents processes, managing data principal rights, collaborating with tech and compliance teams for GDPR and DPDP compliance, and conducting Privacy Workshops with customers. To excel in this role, you should have a Bachelor's degree in Information Technology, Management, Law, Computer Science, or a related field. Additionally, you should possess experience in information technology, data protection, or information security, along with a good understanding of data protection laws and regulations such as GDPR, CCPA, PIPEDA, and PDPA. Excellent communication skills, the ability to work independently and collaboratively, openness to travel as required, attention to detail, and the capacity to handle confidential information with discretion are also essential qualifications for this position. If you are a dedicated and knowledgeable Data Protection Specialist seeking to contribute to a dynamic team, we invite you to apply for this exciting opportunity by sending your resume to careers@dpdpconsultants.com.,
Posted 1 week ago
8.0 - 10.0 years
6 - 10 Lacs
Hyderabad
Work from Office
">Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients most complex digital transformation needs. Leveraging our holistic portfolio of capabilities in consulting, design, engineering, and operations, we help clients realize their > GRC Risk management Detailed JD: Seeking a highly motivated and detail-oriented IT Risk & Cybersecurity Specialist to join our team. The ideal candidate will be responsible for designing IT controls, conducting control testing and validation, assessing risks, managing issues, validating cybersecurity policies and standards, draft cybersecurity policies, procedures and standards. Key Responsibilities: IT Control Design:Develop IT controls inventory aligned with industry standards, regulatory requirements and clients security standards.Control Testing & Validation:Perform control testing and validation of IT and cybersecurity controls to ensure effectiveness and compliance.Risk Management, Risk Assessment & Issue Management:Develop strategies, frameworks for risk and issue management. Conduct risk assessments, identify control gaps, and manage remediation efforts.Cybersecurity standards validation:Review and validate cybersecurity policies, procedures, and standards against applications to ensure compliance.Stakeholder Engagement:Collaborate independently with client stakeholders to drive the initiatives.Audits and Assessments: Conduct audits against clients security standards and report the findings to the management Experience: 8 to 10 years min experience in Governance, Risk and Compliance. Skills: 1.Knowledge of relevant regulations (SOX, GDPR, DORA, PCI) and industry standards. 2.Ability to work independently and as part of a team. 3.Knowledge of risk management frameworks and methodologies (e.g.,, ISO 31000). 5.Knowledge of NIST-CSF, NIST 800-53 6.Strong analytical and problem-solving skills. 7.Excellent communication, interpersonal skills and presentation skills 8.Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint). Mandatory Skills: GRC Consulting. Experience:8-10 Years.
Posted 2 weeks ago
10.0 - 15.0 years
13 - 18 Lacs
Bengaluru
Work from Office
Project description The project is focused on ensuring data privacy and compliance in the client environment by implementing and managing data masking solutions using the Delphix platform. This role involves collaboration with cross-functional teams to secure sensitive data while maintaining data integrity for development, testing, and analytics. Responsibilities Key Responsibilities Design and Implementation Develop and implement robust data masking solutions using the Delphix platform. Analyze data sets to identify sensitive information that requires masking. Create and maintain masking rules, algorithms, and templates for various data environments. Data Security & Compliance -Ensure sensitive data complies with regulatory requirements, such as GDPR, HIPAA, PCI-DSS, and CCPA. -Collaborate with security and compliance teams to establish masking policies and standards. Testing & Validation Conduct thorough testing to validate the effectiveness of masking solutions. Troubleshoot and resolve issues related to data masking processes. Collaboration & Support Work closely with database administrators, developers, and QA teams to integrate masking into workflows. Provide training and documentation on the Delphix platform and data masking techniques. Monitoring & Optimization Continuously monitor and optimize data masking performance. Stay updated on the latest trends and updates in data masking technologies. Skills Must have Required Skills and Qualifications -Bachelor's degree in Computer Science, Information Technology, or a related field. -10+ years of experience in mainframe environments with expertise of 1 year in Hogan applications. -Strong knowledge of COBOL, JCL, VSAM, DB2, and CICS. Knowledge of ---IMS is an added advantage. -Experience with Hogan modules such as IDS, CIS, or Loans. -Familiarity with banking processes and financial services. -Excellent problem-solving, debugging, and analytical skills. -Strong communication skills, with the ability to collaborate across technical and business teams. Nice to have Preferred Qualifications -Experience with mainframe modernization or migration projects. -Knowledge of automation tools for mainframe systems. -Familiarity with Agile and DevOps methodologies in a mainframe environment. -Certification in mainframe technologies and Hogan systems.
Posted 2 weeks ago
15.0 - 20.0 years
13 - 17 Lacs
Bengaluru
Work from Office
About The Role Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Palo Alto Networks Firewalls Good to have skills : NAMinimum 3 year(s) of experience is required Educational Qualification : 15 years full time education Summary :We are seeking a highly skilled WAF and Firewall Security Expert to manage Web Application Firewalls (WAF) and network perimeter security. The ideal candidate will have in-depth knowledge of Akamai, Cloudflare, and similar WAF/CDN platforms, along with a strong grasp of application layer (Layer 7) attacks, web security vulnerabilities, and real-world mitigation strategies.You will play a key role in defending critical applications from threats such as SQL injection, XSS, CSRF, RCE, API abuse, bot attacks, and more ensuring the security and resilience of our digital platforms. Roles & Responsibilities:- WAF Policy Management:Administer Web Application Firewall (WAF) rule sets and policies using industry-leading platforms such as Akamai Kona Site Defender, Cloudflare WAF, AWS WAF, or similar solutions.- Application Layer Defense:Analyze, detect, and defend against a wide range of OWASP Top 10 and other Layer 7 threats, including:- SQL Injection (SQLi)- Cross-Site Scripting (XSS)- Remote Code Execution (RCE)- Cross-Site Request Forgery (CSRF)- HTTP protocol abuse- Malicious bot traffic and API abuse- Firewall & Network Security:Deploy and manage network firewalls and integrate them with other security technologies including Intrusion Detection/Prevention Systems (IDS/IPS) and DDoS mitigation tools.- Bot Protection Expertise:Strong understanding of automated bot attacks, with hands-on experience in detection and defense strategies using behavioral analytics, CAPTCHA, rate limiting, and JavaScript challenges.- Threat Monitoring & Incident Response:Proactively monitor and respond to threats across both application and network layers, leveraging SIEM tools and real-time alerting systems.- Cross-Functional Collaboration:Work in close partnership with DevOps, development, and security teams to enforce secure deployment practices and ensure robust application configurations.- WAF Tuning & Optimization:Perform continual WAF tuning, including signature refinement and custom rule development, to ensure an optimal balance between security coverage and application functionality.- Threat Intelligence & Research:Stay current on emerging application-layer attack vectors, tools, and adversary tactics to inform proactive defense measures.- Incident Handling:Participate in incident response, including threat hunting, forensic analysis, and contributing to post-mortem investigations to enhance organizational resilience. Professional & Technical Skills: - Must To Have Skills: Proficiency in Palo Alto Networks Firewalls.- Strong understanding of cloud security principles and best practices.- Experience with security architecture frameworks and methodologies.- Familiarity with compliance standards such as ISO 27001, NIST, and GDPR.- Ability to analyze and mitigate security risks in cloud environments. Additional Information:- The candidate should have minimum 5 years of experience in Palo Alto Networks Firewalls.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education
Posted 2 weeks ago
2.0 - 6.0 years
2 - 3 Lacs
Navi Mumbai, Mumbai (All Areas)
Work from Office
New requirement - Associate , Analyst - GRC Work Location : Jui Nagar, Navi Mumbai Job Description : Assist in conducting audit engagements to ensure compliance with standards and frameworks such as ISO 27001, PCI DSS, SOC 2, CISA and GDPR. Support the planning, execution, and reporting of audits under the supervision of senior auditors. Gather and analyze evidence to evaluate client compliance and provide initial recommendations. Detailed Responsibilities : Conduct audits based on defined standards, collecting and verifying evidence. Perform control testing, evaluate processes, and identify compliance gaps. Assist in evaluating policies, procedures, and systems for compliance Draft sections of audit reports with findings, observations, and initial recommendations. Maintain accuracy and completeness in audit documentation, following the organization's standards. Support in preparing final audit deliverables for senior review Communicate with client representatives during evidence collection. Participate in meetings to discuss audit findings and recommendations. Assist in tracking client remediation actions. Professional Skills : Basic understanding of audit standards and regulatory frameworks (e.g., ISO 27001, SOC 2, CISA). Competency in using audit tools and software (e.g., spreadsheets, document management systems). Strong analytical skills for evidence evaluation and compliance assessment. Personal Skills : Attention to detail and accuracy in documenting findings. Good communication skills for interacting with team members and clients. Willingness to learn and adapt to new standards and regulations Knowledge/Competency Requirements : Basic knowledge of auditing principles, risk assessment, and compliance. Understanding of industry standards relevant to information security and data privacy. Competency in basic project management tasks, such as tracking timelines and deliverables Please go through our website - www.qrcsolutionz.com
Posted 2 weeks ago
8.0 - 12.0 years
10 - 20 Lacs
Chennai
Work from Office
About role : We're seeking a skilled Manager/Senior Manager of Data & Cloud Platform Operations to lead our teams and promote architectural excellence. This key role involves driving the strategy and execution of Data Engineering on the Cloud. An ideal candidate would have 8-12 years of experience in IT consulting focused on AI & Analytics on Microsoft Azure. Responsibilities Lead and manage teams responsible for design, development, and operational excellence of scalable data pipelines and data warehouses. Drive the maturity and adoption of advanced DevOps practices, including CI/CD, Infrastructure as Code (IaC), automation, comprehensive monitoring, and Site Reliability Engineering (SRE) for all cloud services. Establish and enforce stringent Security and Compliance standards across all cloud infrastructure, data operations, and applications, ensuring adherence to industry regulations and best practices. Oversee the strategic planning, deployment, and lifecycle management of Azure Infrastructure, optimizing for performance, cost, resilience, and high availability. Collaborate closely with software engineering and data science teams to ensure seamless integration and operational readiness of AI & Analytics solutions. Mentor, coach, and develop a high-performing team of DevOps engineers, data engineers, and cloud architects. Qualifications Bachelor's or Master's degree in Computer Science, or a related field. 8-12 years of experience in IT operations, data engineering, or cloud infrastructure roles, with at least 3-5 years in a Manager/Architect role. Extensive hands-on experience with Microsoft Azure services, including IaaS, PaaS, networking, security, and data services. Proven expertise in designing and managing Data Engineering Pipelines and Data Warehouses , with strong practical experience using PySpark and Kafka . Proven ability to design High-Level Architecture and create Low-Level System Designs Deep understanding and practical experience with DevOps methodologies and tools (e.g., Azure DevOps, Terraform, Ansible, Kubernetes). Strong knowledge of Security and Compliance frameworks (e.g., ISO 27001, GDPR, HIPAA) and their implementation in cloud environments. Demonstrable experience in leading platform Scaling and Cloud Cost Optimization initiatives. Advanced proficiency in SQL and Python for operational and data engineering tasks. Azure certifications (e.g., Azure Solutions Architect Expert) are highly desirable. Exceptional analytical, problem-solving, and communication skills.
Posted 2 weeks ago
5.0 - 10.0 years
12 - 24 Lacs
Pune
Work from Office
Responsibilities: * Design, implement & optimize cloud infrastructure using AWS/Azure Cloud. * Collaborate with DevOps team on CI/CD pipelines & compliance frameworks. * Ensure HIPAA, SOC & GDPR adherence through automation.
Posted 2 weeks ago
6.0 - 8.0 years
13 - 17 Lacs
Gurugram
Work from Office
About The Role Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Compliance Management Good to have skills : Security Architecture DesignMinimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :Seeking an experienced Security Architect/ Security Compliance Professional to lead and support the design, implementation, and maintenance of security governance, risk, and compliance (GRC) frameworks. This role ensures that the organization complies with industry standards and regulations such as ISO/IEC 27001, PCIDSS, NIST CSF, SOC 2, TISAX, and others. The candidate will work cross-functionally to manage audits, assess risks, and drive continuous improvement in the security posture of the organization. Your typical day will involve collaborating with various teams to document the implementation of cloud security controls and facilitating the transition to cloud security managed operations, ensuring that all security measures align with organizational standards and compliance requirements. You will also engage in continuous improvement initiatives to enhance the security posture of the organization. Roles & Responsibilities:Expected to perform independently and become an SME or manage a team of GRC professional. Required active participation/contribution in client discussions. Contribute in providing solutions to compliance related complex situations Conduct regular assessments of security framework based or cloud security controls to ensure compliance with established standards. Collaborate with cross-functional teams to identify and mitigate potential security risks. Professional & Technical Skills: Proficient in Information Security, Cyber Security and Governance, Risk, and Compliance (GRC).Has significant exposure to evolving landscape of security compliance requirementsLead and manage security compliance initiatives across the organization.Manage/ Conduct gap assessments and implement controls in alignment with compliance standards (e.g., ISO 27001, PCIDSS, NIST, SOC 2, GDPR and other relevant frameworks).Coordinate and support internal and external security audits, including evidence collection and remediation planning.Partner with business, IT, and legal teams to ensure compliance requirements are understood and implemented.Develop and maintain security policies, procedures, and documentation in line with regulatory needs.Monitor compliance status and prepare reports and metrics for leadership.Educate teams on compliance requirements and drive a culture of security awareness.Relevant certifications :ISO27001LA/LI, ISO3100 or CISA, CISM, CRISC, or equivalent. Additional Information:The candidate should have 6-8 years of relevant experience in Information Security Governance, Risk and Compliance (GRC).A 15 years of full time education is required.This position is based at our Gurgaon/ Bangalore and Other Accenture locations Qualification 15 years full time education
Posted 2 weeks ago
3.0 - 8.0 years
13 - 17 Lacs
Bengaluru
Work from Office
About The Role Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Managed Cloud Security Services Good to have skills : NAMinimum 3 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a CSPM WIZ Administrator and analyst, you will be responsible for overseeing the security posture of cloud environments, ensuring compliance with industry standards, and implementing best practices to mitigate risks. Your role will involve configuring and managing CSPM tools, conducting regular assessments, and collaborating with cross-functional teams to enhance cloud security.Key Responsibilities- CSPM WIZ Tool Management:Configure, deploy, and maintain CSPM solutions to monitor and secure cloud resources.- Security Assessments:Conduct regular security posture assessments to identify vulnerabilities and misconfigurations.- Compliance Monitoring:Ensure adherence to compliance frameworks such as ISO 27001, NIST, and GDPR.- Incident Response:Collaborate with security teams to respond to and remediate security incidents.- Automation:Implement automation scripts to streamline security processes and reduce manual efforts.- Documentation:Maintain detailed records of security configurations, assessments, and incidents. Professional & Technical Skills: - Must To Have Skills: Proficiency in Managed Cloud Security Services.- Experience with cloud security frameworks such as NIST, ISO 27001, or CIS.- Strong understanding of cloud service models (IaaS, PaaS, SaaS) and their security implications.- Familiarity with security tools and technologies for cloud environments, including firewalls, intrusion detection systems, and encryption solutions. Additional Information:- The candidate should have minimum 3 years of experience in Managed Cloud Security Services.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education
Posted 2 weeks ago
7.0 - 12.0 years
13 - 17 Lacs
Mumbai
Work from Office
The Data Architect is to support the work for ensuring that systems are designed, upgraded, managed, de-commissioned and archived in compliance with data policy across the full data life cycle. This includes complying with the data strategy and undertaking the design of data models and supporting the management of metadata. The Data Architect mission will integrate a focus on GDPR law, with the contribution to the privacy impact assessment and Record of Process & Activities relating to personal Data. The scope is CIB EMEA and CIB ASIA Responsibilities Direct Responsibilities Engage with key business stakeholders to assist with establishing fundamental data governance processes Define key data quality metrics and indicators and facilitate the development and implementation of supporting standards Help to identify and deploy enterprise data best practices such as data scoping, metadata standardization, data lineage, data deduplication, mapping and transformation and business validation Structures the information in the Information System (any data modelling tool like Abacus), i.e. the way information is grouped, as well as the navigation methods and the terminology used within the Information Systems of the entity, as defined by the lead data architects. Creates and manages data models (Business Flows of Personal Data with process involved) in all their forms, including conceptual models, functional database designs, message models and others in compliance with the data framework policy Allows people to step logically through the Information System (be able to train them to use tools like Abacus) Contribute and enrich the Data Architecture framework through the material collected during analysis, projects and IT validations Update all records in Abacus collected from stakeholder interviews/ meetings. Skill Area Expected Communicating between the technical and the non-technical Is able to communicate effectively across organisational, technical and political boundaries, understanding the context. Makes complex and technical information and language simple and accessible for non- technical audiences. Is able to advocate and communicate what a team does to create trust and authenticity, and can respond to challenge. Able to effectively translate and accurately communicate across technical and non- technical stakeholders as well as facilitating discussions within a multidisciplinary team, with potentially difficult dynamics. Data Modelling (Business Flows of Data in Abacus) Produces data models and understands where to use different types of data models. Understands different tools and is able to compare between different data models. Able to reverse engineer a data model from a live system. Understands industry recognized data modelling patterns and standards. Understands the concepts and principles of data modelling and is able to produce, maintain and update relevant data models for specific business needs. Data Standards (Rules defined to manage/ maintain Data) Develops and sets data standards for an organisation. Communicates the business benefit of data standards, championing and governing those standards across the organisation. Develops data standards for a specific component. Analyses where data standards have been applied or breached and undertakes an impact analysis of that breach. Metadata Management Understands a variety of metadata management tools. Designs and maintains the appropriate metadata repositories to enable the organization to understand their data assets. Works with metadata repositories to complete and Maintains it to ensure information remains accurate and up to date. The objective is to manage own learning and contribute to domain knowledge building Turning business problems into data design Works with business and technology stakeholders to translate business problems into data designs. Creates optimal designs through iterative processes, aligning user needs with organisational objectives and system requirements. Designs data architecture by dealing with specific business problems and aligning it to enterprise-wide standards and principles. Works within the context of well understood architecture and identifies appropriate patterns. Contributing Responsibilities It is expected that the data architect applies knowledge and experience of the capability, including tools and technique and adopts those that are more appropriate for the environment. The Data Architect needs to have the knowledge of: The Functional & Application Architecture, Enterprise Architecture and Architecture rules and principles The activities Global Market and/or Global Banking Market meta-models, taxonomies and ontologies (such as FpML, CDM, ISO2022) Skill Area Expected Data Communication Uses the most appropriate medium to visualise data to tell compelling and actionable stories relevant for business goals. Presents, communicates and disseminates data appropriately and with high impact. Able to create basic visuals and presentations. Data Governance Understands data governance and how it works in relation to other organisational governance structures. Participates in or delivers the assurance of a service. Understands what data governance is required and contribute to these data governance. Data Innovation Recognises and exploits business opportunities to ensure more efficient and effective performance of organisations. Explores new ways of conducting business and organisational processes Aware of opportunities for innovation with new tools and uses of data Technical & Behavioral Competencies 1. Able to effectively translate and accurately communicate across technical and non- technical stakeholders as well as facilitating discussions within a multidisciplinary team, with potentially difficult dynamics. 2. Able to create basic visuals and presentations. 3. Experience in working with Enterprise Tools (like Abacus, informatica, big data, collibra, etc) 4. Experience in working with BI Tools (Like Power BI) 5. Good understanding of Excel (formulas and Functions) Specific Qualifications (if required) Preferred: BE/ BTech, BSc-IT, BSc-Comp, MSc-IT, MSc Comp, MCA Skills Referential Behavioural Skills : Communication skills - oral & written Ability to collaborate / Teamwork Ability to deliver / Results driven Creativity & Innovation / Problem solving Transversal Skills: Analytical Ability Ability to understand, explain and support change Ability to develop and adapt a process Ability to anticipate business / strategic evolution Choose an item. Education Level: Bachelor Degree or equivalent Experience Level At least 7 years Other/Specific Qualifications (if required) 1. Experience in GDPR (General Data Protection Regulation) or in Privacy by Design would be preferred 2. DAMA Certified
Posted 2 weeks ago
5.0 - 10.0 years
6 - 10 Lacs
Bengaluru
Work from Office
This role will be responsible for supporting the Third-Party Technology Risk Management team in identifying and evaluating potential/ recognized risks related to Information Security, Business Continuity and Physical Security. The 3rd Party Security Risk Assessor, reporting to the Manager, Third Party Risk Management team that performs security assessments of vendors, service providers and 3rd party companies that manage systems or information for BNP Paribas Responsibilities Direct Responsibilities As a Third-Party Technology Risk Assessor, you will perform third-party information and cyber security assessment to identify, monitor, remediate, and manage third party risks across the third-party lifecycle. Risk Assessor role requires good risk experience technology expertise (areas of information and cyber security, business continuity, incident management, compliance, and human resource security) in accurately scoring the inherent risk profile of 3rd parties, making sure the risk assessments are completed on time with quality. In addition, the role requires the ability to prioritize and drive workload. Evaluating control effectiveness and review evidence of controls by applying audit, compliance, security, and regulatory framework knowledge and experience, including, but not limited to review of: ISO 27001, SIG (Shared Assessments), TruSight, SOC / equivalent reports, as well as knowledge of controls related to Privacy, Compliance, Business Resiliency, Cyber and other risk domains. Work with Line of business partners, by navigating them through the different stages of the risk assessment life cycle and making sure that they are being compliant to the organization requirements. Communicate assessment findings and recommendations to internal stakeholders, including senior management, legal, and compliance teams as applicable. Monitor and track the identified findings as part of the assessment lifecycle. Contributing Responsibilities Actively participate in identifying process gap and should be ready to own and update/ document relevant TPTRM policies and procedures Support Internal and external TPTRM audit requirements Compile and generate Weekly/Monthly/Quarterly dashboard on KPI Technical Behavioral Competencies Ideally in financial services with minimum of 5+ years of experience in TPRM or Risk management background. Bachelor's degree with professional certification in Information, Cyber, Network and Cloud Security. Experience with industry recognized standards for IT security controls and best practices like NIST, ISO27001, PCI DSS, COBIT, SOC 2 etc. Experience in one or more risk disciplines an advantage i.e., Information Security, Business Continuity, Data Privacy etc. Experience in Governance, Risk Compliance (GRC) tools an advantage. Experience in providing stakeholders with specialist risk knowledge and monitoring its execution. Strong self-motivated multi-tasker who can prioritize competing tasks and stakeholders. Ability to work independently in a fast adapting and agile work environment. Proactive and deliverable focused, with a dedication to delivering against hard deadlines. Excellent analysis skills with keen eye for detail. Strong capabilities in Microsoft Excel, PowerPoint, and Word. Familiarity with vendor management, procurement, and contract negotiation. Ability to communicate effectively with both technical and non-technical stakeholders. Strong analytical and problem-solving skills. Specific Qualifications (if required) Skills Referential Behavioural Skills : (Please select up to 4 skills) Ability to collaborate / Teamwork Communication skills - oral written Attention to detail / rigor Creativity Innovation / Problem solving Transversal Skills: Ability to develop and adapt a process Ability to understand, explain and support change Ability to develop others improve their skills Education Level: Bachelor Degree or equivalent Experience Level At least 5 years
Posted 2 weeks ago
7.0 - 12.0 years
17 - 22 Lacs
Bengaluru
Work from Office
Role Overview We are hiring a highly experienced L3 Web Application Firewall (WAF) Specialist to lead the planning, implementation, and optimization of WAF solutions across enterprise environments. This is a technical leadership role requiring deep understanding of application-layer security, strong hands-on experience with WAF technologies (especially F5 ASM or equivalent), and the ability to handle complex security incidents independently. You will act as the subject matter expert (SME) for WAF in client-facing and internal security engagements, guiding application protection strategies, overseeing advanced threat prevention, and mentoring L1/L2 engineers. Key Responsibilities Lead WAF Design & Deployment : Architect, configure, and deploy enterprise-grade WAF solutions across multi-tenant, multi-region environments using technologies like F5 ASM, Citrix, or Imperva. Incident Management & Escalation (L3 Level) : Handle high-priority WAF incidents, perform root cause analysis (RCA), implement custom mitigations, and ensure resolution within defined SLAs. Policy Tuning & Custom Rules : Develop and optimize custom WAF rules (iRules, regex, JSON filters) based on traffic analysis, threat signatures, and business use cases to minimize false positives and ensure maximum protection. Threat Intelligence Integration : Analyze logs and correlate WAF events with threat intelligence feeds and SIEM tools to proactively detect and respond to Layer 7 attacks (e.g., SQLi, XSS, RFI, LFI, bot traffic). Pre-Production Application Review : Collaborate with DevSecOps and App teams to assess applications prior to production rollout, ensuring adequate WAF protection is in place through rigorous policy simulations and tuning. Patch & Upgrade Planning : Plan and execute firmware upgrades, policy migrations, and security patching aligned with vendor lifecycle and enterprise security policies. Compliance & Audit Support : Align WAF posture with OWASP Top 10, PCI-DSS, GDPR, and internal compliance frameworks; prepare documentation and reports for audits and security assessments. Mentoring & Process Improvement : Mentor L1/L2 WAF engineers, define SOPs, standardize response playbooks, and drive automation initiatives where possible. Required Skills & Experience Minimum 7 years of hands-on experience managing Web Application Firewalls in enterprise or service provider environments. Deep expertise in WAF platforms such as F5 BIG-IP ASM , Citrix AppFirewall , Imperva , or Fortinet WAF. Strong knowledge of Layer 7 protocols , HTTP/HTTPS traffic analysis , TLS/SSL decryption , and web server architectures . Familiarity with protocols and technologies such as BGP, OSPF, VXLAN, or MP-BGP EVPN is a plus. Advanced understanding of application-layer threats , bot mitigation , credential stuffing , zero-day exploit patterns , and custom rule writing . Proven ability to manage complex security incidents independently and interface with customers, stakeholders, and internal security teams. Experience with configuration backup/recovery , version control , and multi-tenant policy management . Excellent documentation, troubleshooting, and stakeholder communication skills. Certifications (Mandatory) F5-301/F5-303/Other Industry leading OEM Professional level Certification Nice to Have Exposure to cloud-native WAFs (e.g., AWS WAF, Azure WAF, Cloudflare). Experience in ACI (Application Centric Infrastructure) and Software Defined Networking (SDN) for securing microservices or hybrid apps. Scripting or automation knowledge (Python, Bash, Ansible) to streamline monitoring and deployment tasks.
Posted 2 weeks ago
4.0 - 9.0 years
6 - 16 Lacs
Mumbai, Bengaluru
Work from Office
KPMG Advisory professionals provide advice and assistance to enable companies, intermediaries, and public sector bodies to mitigate risk, improve performance, and create value. KPMG firms provide a wide range of Risk Advisory and Financial Advisory Services that can help clients respond to immediate needs as well as put in place the strategies for the longer term. Role detail 4 to 8 years of experience in vendor/ supplier/ third party risk assessment Expertise in IT internal audit, Information Security/cybersecurity, IT SOX, Third Part Risk Assessment Reporting e.g., SOC1, SOC 2. Relevant expertise on CSA STAR requirements, ISO control, NIST Standards, PCI DSS and GDPR requirements. Experience in performing control testing, IT / infosec risk assessments. Knowledge of technical domains such as cloud security and application security. Certification: CISA, CISSP, CEH, ISO, PCI DSS, NIST.
Posted 2 weeks ago
3.0 - 8.0 years
10 - 20 Lacs
Hyderabad/Secunderabad
Hybrid
Position Summary We are looking for a proactive and detail-oriented Senior/ IT Security Analyst to lead and support enterprise-wide security initiatives. This role plays a critical part in advancing our Governance, Risk, and Compliance (GRC) maturity, enhancing operational security, and fostering a strong security culture across global teams. The ideal candidate will bring deep expertise in ISO 27001, NIS2 alignment, incident response, and modern security technologies. Required Qualifications Bachelors degree in Information Security, Computer Science, or a related field. Minimum 3-8 years of experience in IT security, with a strong background in GRC and operational security. Proven experience with ISO 27001, NIS2, and enterprise risk management frameworks. Hands-on expertise with SIEM, DLP, vulnerability management, and access control tools. Strong analytical, documentation, and stakeholder engagement skills. Key Responsibilities 1. Governance, Risk, and Compliance Excellence Maintain ISO 27001 certification through annual internal audits and timely reporting. Align the Information Security Management System (ISMS) and security policies with the NIS2 Directive in collaboration with Legal. Conduct quarterly Risk Analysis reviews and maintain an up-to-date Enterprise Risk Register. Coordinate external audits, ensuring zero major non-conformities. 2. Security Operations and Incident Response Monitor and respond to IT Security queries. Conduct quarterly firewall port and application access reviews for all critical systems. Complete annual security reviews for key applications and maintain updated exception handling processes. 3. Policy, Awareness, and Collaboration Lead annual global policy reviews, ensuring alignment with regulatory requirements. Organize Cybersecurity Awareness Month and publish monthly Knowledge Bytes in collaboration to foster security culture. 4. Strategic Security Initiatives and Capability Building Support SIEM implementation with full log integration from critical assets. Deploy DLP and other security stack with milestone-based tracking. Complete RFPs and vendor security questionnaires. Maintain and update the Project Security Manual quarterly. 5. Data Privacy and Protection Ensure compliance with GDPR, NIS2, and other applicable data protection regulations across all business units. Conduct Data Protection Impact Assessments (DPIAs) for new projects and systems handling personal data. Maintain and enforce the Data Processing Agreement (DPA) framework in collaboration with Legal and Procurement teams. Monitor and report on data privacy metrics, including incident trends, training completion, and audit findings. Preferred Qualifications Professional certifications such as ISO 27001 Lead Auditor/Implementor, CEH, Security+, SSCP or equivalent. Experience coordinating external audits and managing cross-regional compliance programs.
Posted 2 weeks ago
5.0 - 10.0 years
25 - 35 Lacs
Hyderabad
Work from Office
A seasoned data professional with 5+ years in data governance, stewardship, and DAMA DMBoK practices. Strong SQL, metadata management, regulatory compliance (e.g., GDPR) stakeholder engagement skills required. CDMP certification is a plus!
Posted 2 weeks ago
3.0 - 8.0 years
5 - 12 Lacs
Chandigarh
Work from Office
We are seeking a GRC Consultant to support risk assessments, compliance audit(ISO 27001, SOC 2, GDPR), and policy development. The candidate will have strong knowledge of regulatory frameworks, risk management, and hands-on experience with GRC tools.
Posted 2 weeks ago
6.0 - 8.0 years
10 - 16 Lacs
Pune
Hybrid
Role & responsibilities : Coordinate external audits and evidence collection related to SOC2, SOX, NIST Cyber Security Framework and other future frameworks. Perform vendor security evaluations of existing and new vendors. Manage and monitor the Risk Register. Collaborate with Engineering, Legal, and IT in maintaining and updating company security policies. Assist in completion of customer assurance activities, such as security questionnaires, RFIs or RFPs. Assist with Business Impact Assessments and Business Continuity Planning activities. Own our inventory initiatives regarding data storage and processing. Become a go to resource for being able to translate how the latest laws and regulations impact our technical teams. Preferred candidate profile : 6+ years of experience with security auditing and maintaining information security controls. Have 6+ years technical knowledge and understanding of networking, IaaS platforms, monitoring, auditing, alerting infrastructure, scripting. Have a working knowledge of SOC2 Trust Services Principles, SOX, GDPR, CCPA, NIST CSF, etc. Has already attained or interested in industry qualifications such as GRCP, GISF or CompTIA Security+ Have a passion for working in cyber security and governance, risk and compliance. Are experienced in evidence collection. Detail orientated and organised. Have experience completing customer security questionnaires in support of enterprise-level accounts. Are experienced in evaluating, leading and running business continuity and disaster recovery exercises. Working with tight deadlines and adept at multi-tasking. Seeks initiative and strives for continuous improvement.
Posted 2 weeks ago
3.0 - 7.0 years
0 Lacs
maharashtra
On-site
As a Legal Specialist at our organization, you will play a crucial role in the drafting, reviewing, and negotiating various commercial contracts and agreements. Your attention to detail and legal expertise will ensure that all contractual arrangements are precise, legally compliant, and in line with our strategic objectives. Your responsibilities will include drafting, reviewing, and revising a variety of commercial contracts such as SaaS Agreements, Master Services Agreements, Sales Personnel Agreement, Digital Marketing Agreements, Non-Disclosure Agreements, and Contractor Agreements. You will lead negotiations with internal and external stakeholders to secure favorable terms and ensure adherence to legal and organizational standards. Moreover, you will be responsible for ensuring that all contracts and agreements adhere to relevant laws and regulations, with a particular focus on data protection and privacy laws. In this role, you will be expected to identify potential risks in contracts and provide recommendations to mitigate them effectively. Additionally, you will be involved in drafting and reviewing Terms of Use and Privacy Policies to guarantee legal compliance and adherence to industry best practices. Collaboration with business teams to address contract-related issues and ensure alignment with company policies and objectives will also be a key aspect of your role. To qualify for this position, you should hold a Bachelor's degree in Law, Business Administration, or a related field. Your proven track record in drafting, reviewing, and negotiating commercial contracts will be essential. A deep understanding of data protection regulations such as GDPR, CCPA, HIPAA, Indian IT Act, and PDP Singapore is required. Strong analytical, communication, and negotiation skills are pivotal, along with the ability to handle multiple contracts and priorities concurrently. A keen eye for detail and a proactive problem-solving approach will also be beneficial. Preferred skills for this role include certification or advanced education in contract management or commercial law, as well as prior experience with SaaS and technology-related agreements.,
Posted 2 weeks ago
4.0 - 9.0 years
0 Lacs
maharashtra
On-site
As a Legal Lead based in Mumbai, you will be responsible for reviewing and drafting various software business contracts, which include RFPs, tender documents, Pos, MSAs, Service Agreements, and Vendor Agreements. You will also be involved in contract negotiations with internal teams, customers, vendors, and service providers. Ensuring contractual and regulatory compliance will be a key aspect of your role. Your expertise in Intellectual Property Rights (IPR) related to Trademarks, Copyrights, Patents, and Domain Names will be essential. You will be driving the contract lifecycle from drafting to completion of the negotiation process and contract execution. Knowledge of Data Protection Laws, GDPR, and Cyber laws will be advantageous. Maintaining the Contracts Repository and conducting legal research by reviewing case laws, Acts, Rules, Notifications, etc., will be part of your responsibilities. You should have excellent drafting, negotiation, and communication skills. Experience with Contract management systems and defining the Contract lifecycle process will be beneficial. To qualify for this position, you must have completed LL.B / LLM from reputed Universities/Institutions and possess 4 - 6 years of relevant non-litigation experience. Strong communication skills, global exposure, and corporate experience are required. If you meet the qualifications and are available to join within 15 days, we encourage you to send your resume to sayanti.roy1@learningmate.com.,
Posted 2 weeks ago
7.0 - 12.0 years
7 - 15 Lacs
Pune, Bengaluru, Mumbai (All Areas)
Work from Office
KEY ACCOUNTABILITIES/DELIVERABLES Develop and maintain a deep understanding of GGB/GRe business activities, as directed by the CPO Build and maintain strong working relationships with key stakeholders within GGB/GRe and Gallagher more broadly to gain insights to GGB/GRe and Gallaghers business and control environment Assist the CPO to implement the Global Data Privacy Framework (Tier 1) across GGB/GRe Assist the CPO to develop and implement any required GGB/GRe local Data Privacy Frameworks (Tier 2) to minimize privacy risks and drive risk reduction initiatives, including the creation and roll out of policies, standards, processes, playbooks and associated training Train GGB/GRe colleagues in the identification and management of privacy risks and provide coaching to Privacy Champions Complete and maintain GGB/GRe Privacy Risk Registers, with specific focus on inherent and residual risk Provide clear and concise privacy advice in an impactful manner using a wide range of communication channels. Perform privacy horizon scanning Conduct privacy risk assessments, AI impact assessments and personal data transfer impact assessments in respect of new or amended proposed processing activities Develop playbooks for managing and manage complex data subject rights requests including application of applicable exemptions and redactions where required Handle internal and third-party requests for access to GGB/GRe data Assess GGB/GRe personal and commercial data incidents using our playbooks and provide advice and guidance for their containment, mitigation and regulatory reporting obligations Assess privacy risks in relation to GGB/GRes supply chain, working closely with colleagues in security, IT, legal and procurement. Handle GGB/GRe privacy related complaints Provide privacy practitioner advice in relation to GGB/GRe related data protection contractual terms Prepare regular GGB/GRe reports and management information as required. Support the GGB/GRe M&A Privacy Lead(s) in respect of mergers and acquisitions and their future integration or divestiture Assist in the maintenance of GGB/GRes Records of Processing activities Monitor privacy compliance across GGB/GRe as directed by the CPO Carry out duties following internal policies and procedures in accordance with applicable laws, rules, regulations, good governance and Gallaghers shared values putting clients at the heart of our business. Qualifications Min 3+ years demonstrable experience in an operational / consultative privacy role providing hands on privacy advice and support in the identification, assessment, management and monitoring of privacy risks including independently conducting privacy risk assessments and transfer impact assessments as well as advising on complex data subject rights requests Privacy qualifications / certificates e.g. CIPP/E/Asia, CIPM, data protection practitioner certifications (preferred) Technical Knowledge Good practical knowledge of APAC, UK and European data protection laws and regulations such as Singapores Personal Data Protection Act, the UK Data Protection Act 2018, the General Data Protection Regulations 2016. Proven track record of providing hands on privacy advice in line with Data Protection Laws Knowledge of the insurance broking or insurance sector a significant advantage but not essential Knowledge of IT and/or Security an advantage but not essential Experience Experienced in: Working with a broad range of local and global stakeholders Working in a fast-paced environment, to challenging deadlines Being a strong team player with evidenced skills in supporting colleagues and supporting a strong team culture The assessment of and provision of advice and guidance in respect of data incidents Managing and handling data subject rights requests and third-party requests for data including redaction and application of exemptions Conducting privacy risk assessments and transfer impact assessments Assessment of supply chain privacy risks Handling privacy related complaints Creation of data protection policies, standards, procedures, playbooks and training material Working effectively with multi-national teams and stakeholders Working effectively in shared mailboxes Skills/other Strong communicator (oral and written) and capable of robust dialogue Confidence to challenge views and opinions in a sensitive way
Posted 2 weeks ago
8.0 - 10.0 years
20 - 35 Lacs
Bengaluru
Work from Office
Information Security Compliance Manager Location: Embassy Tech Village, Bangalore, India Experience: 5 – 7 Years Work Mode: Full-time, Work from Office About the Role: As an Information Security Compliance Manager at Swiggy, you will be a key driver in ensuring that our security, privacy, and regulatory compliance posture remains robust and aligned with industry standards. This role requires a hands-on candidate who can deliver compliance frameworks, manage compliance reviews and risk assessments, and collaborate across teams to embed security best practices in everyday business operations. You will work closely with internal stakeholders and external auditors to safeguard our environment and keep Swiggy compliant with applicable regulations and standards. What You’ll Do: Compliance Leadership & Program Management Lead and manage the organization’s information security and privacy compliance programs, including data protection, regulatory risk management, and compliance testing. Own remediation efforts, providing clear guidance and tracking to ensure timely closure of compliance gaps. Continuously assess and improve existing compliance policies, controls, and processes. Compliance Reporting & Risk Assessments Plan, coordinate, and execute internal compliance reviews and risk assessments aligned with ISO 27001, ISO 27701, PCI-DSS, and other relevant frameworks. Develop and maintain framework and tools that enable effective measurement of compliance maturity. Conduct security risk assessments and compliance checks across IT systems and business processes. Governance & Reporting Collect, analyze, and deliver detailed compliance reports to senior management and relevant stakeholders. Investigate and document compliance issues, security incidents, and audit findings. Facilitate cross-functional communication to ensure compliance risks are understood and mitigated. Training & Awareness Design and deliver information security and privacy training sessions for new employees and ongoing awareness campaigns for existing staff. Develop materials that clearly articulate compliance requirements and promote a culture of security. Operational Controls & Reviews Conduct periodic reviews of critical systems including Active Directory, HRMS, privileged access, firewall rules, and patch management controls. Collaborate with IT and business teams to ensure compliance-related controls are implemented and effective. Org Certifications & Audits Collaborate with external auditors and stakeholders to maintain org certifications and facilitate external audits What We’re Looking For: Qualifications & Experience: Graduate with 5 to 7 years in information security compliance, governance, risk management, or related roles. Hands-on experience with compliance standards and frameworks including ISO 27001, ISO 27701, PCI-DSS, and data privacy regulations. Proven track record of managing audit processes, compliance testing, and remediation programs. Experience collaborating across technical and business functions to embed compliance in organizational culture. Technical & Professional Skills: Strong knowledge of security frameworks and best practices (NIST, ISO, PCI-DSS, GDPR, etc.). Ability to interpret and apply regulatory requirements and industry standards. Excellent communication skills to present complex compliance topics clearly to diverse audiences. Strong project management skills with the ability to prioritize and drive multiple initiatives. Demonstrated leadership and negotiation skills to influence stakeholders and build consensus. Preferred Certifications: ISO 27001 Lead Auditor or Lead Implementer ISO 27701 Lead Auditor or Lead Implementer Certified Information Security Auditor (CISA) Certified Information Security Manager (CISM) CompTIA Security+ Nice to Have: Knowledge of ITIL processes, PCI-DSS specifics, and Personal Data Protection regulations. Familiarity with cloud security compliance (AWS, Azure, GCP). Experience with governance, risk, and compliance (GRC) tools and exposure to using AI. Visit our tech blogs to learn more about some the challenges we deal with: https://bytes.swiggy.com/the-swiggy-delivery-challenge-part-one-6a2abb4f82f6 https://bytes.swiggy.com/swiggy-distance-service-9868dcf613f4 https://bytes.swiggy.com/the-tech-that-brings-you-your-food-1a7926229886 We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, colour, religion, sex, disability status, or any other characteristic protected by the law.
Posted 2 weeks ago
2.0 - 4.0 years
8 - 9 Lacs
Gurugram
Work from Office
A Senior Compliance Executive in a technology department plays a crucial role in ensuring that the organization adheres to various legal, regulatory, and industry-specific standards related to Information Technology and data management such as GDPR, ISO 27001, ISO 27701, SoC2 Type 2, ISO 9001. 1. Regulatory Compliance Monitoring: o Ensure the technology department complies with relevant laws and regulations, such as GDPR, ISO 27001, ISO 27701, SoC2 Type 2, ISO 9001 and other data protection or cybersecurity laws. o Stay updated on new or changing regulations that impact the tech landscape. 2. Policy Development & Enforcement: o Develop and implement internal policies and procedures to ensure compliance with external regulations and internal standards. o Regularly review and update policies to ensure they remain aligned with changing regulations and industry best practices. 3. Risk Management: o Assess risks related to technology operations, particularly data privacy and cybersecurity risks. o Ensure that the tech department implements appropriate security measures to mitigate potential threats and risks. o Conduct regular audits and reviews of IT systems to ensure they meet compliance standards. 4. Training & Awareness: o Educate and train technology teams and other employees on compliance-related matters, such as data security, privacy policies, and risk mitigation strategies. o Promote awareness of compliance issues, helping staff understand their responsibilities in maintaining compliance. 5. Audit & Reporting: o Prepare reports for management, regulators, or auditors, demonstrating compliance with relevant regulations and policies. o Coordinate internal and external audits related to technology compliance. o Implement corrective actions where necessary to address non-compliance findings. 6. Data Privacy Management: o Oversee data protection strategies and ensure proper handling of sensitive information, including encryption, access control, and data retention policies. o Manage consent collection and user privacy preferences in accordance with privacy regulations. 7. Incident Management: o Oversee the handling of data breaches or other incidents that might affect compliance, ensuring timely reporting and response in accordance with regulatory requirements. o Coordinate with relevant authorities if there is a need to disclose any breaches or security incidents.
Posted 2 weeks ago
4.0 - 6.0 years
12 - 16 Lacs
Bengaluru
Work from Office
Associate Manager - Data Privacy : We are seeking a highly motivated and detail-oriented Associate Manager to join our DataPrivacy team. This role involves assisting in the development, implementation, and maintenanceof our data privacy program. As an Associate Manager - Data Privacy, you will help driveprivacy initiatives and ensure organizational compliance with applicable data protectionregulations, including Indias Digital Personal Data Protection Act (DPDPA). The ideal candidatewill have a strong understanding of data privacy laws, regulations and best practices, coupledwith excellent communication, critical thinking, and analytical skills. On a day-to-day basis, youwill be expected to leverage your expertise in privacy laws, concepts, and industry standards tounderstand and navigate complex environments and ensure robust privacy practices. LocationBangalore, HQ, full-time Reports toSenior Manager - Data Privacy FunctionData Privacy, Data Governance, and Data Ethics | Compliance Key Responsibilities: Assist in the development and implementation of privacy program components, includingdrafting and refining policies, procedures, and templates; assist in DPDPAimplementation efforts Collaborate with business and product teams to assess and understand theorganizations use of personal data; serve as the key privacy advisor and point ofcontact for internal stakeholders, guiding privacy-related decisions. Research and monitor evolving privacy laws, regulations, and industry practices / trends,and analyse their impact on our business. Conduct Data Protection Impact Assessments (DPIAs) and risk assessments toproactively address and mitigate privacy risks. Enhance the organizations existing consent management framework in alignment withlegal and regulatory requirements, ensuring seamless integration across functions. Review privacy clauses in vendor contracts and ensure compliance with data protectionrequirements; provide assistance on the third party risk management process to mitigateprivacy risks. Help investigate and manage privacy incidents, including support with reporting andresolution. Support in handling data principle requests and ensure timely responses; assist inaddressing queries related to data privacy rights and data protection practices. Assist with continuous monitoring and testing of existing privacy controls implementedacross businesses, identify gaps, and initiate corrective measures. Assist data discovery activities across the enterprise; ensure maintenance of personaldata inventory. Assist design and delivery of mandatory privacy training and role-specific awarenessprograms to increase privacy awareness. Qualifications and : Bachelors / Masters Degree in Computer Science, Law, Information Security, Privacy,or related fields 4-6 years of overall experience working in the Privacy domain In-depth knowledge of global privacy laws and frameworks, including GDPR, DPDPA,CCPA, Information Technology Act, and regulations from RBI, SEBI, IRDAI and otherregulators Strong documentation and communication skills and proficiency with frameworkdevelopment, assessments, and policy and procedure documentation; advancedworking knowledge of MS Office applications Team player; ability to interface and build relationships with stakeholders Strong bias for action with exceptional problem solving skills Good to have: Professional certifications such as DCPP, DCPLA, CIPP/E, CIPM, CIPT, or equivalentare desirable Experience working in the FinTech industry and understanding of various products andservices PhonePe Full Time Employee Benefits (Not applicable for Intern or Contract Roles) Insurance Benefits - Medical Insurance, Critical Illness Insurance, Accidental Insurance, Life Insurance Wellness Program - Employee Assistance Program, Onsite Medical Center, Emergency Support System Parental Support - Maternity Benefit, Paternity Benefit Program, Adoption Assistance Program, Day-care Support Program Mobility Benefits - Relocation benefits, Transfer Support Policy, Travel Policy Retirement Benefits - Employee PF Contribution, Flexible PF Contribution, Gratuity, NPS, Leave Encashment Other Benefits - Higher Education Assistance, Car Lease, Salary Advance Policy Working at PhonePe is a rewarding experience! Great people, a work environment that thrives on creativity, the opportunity to take on roles beyond a defined job description are just some of the reasons you should work with us. Read more about PhonePe on our blog. Life at PhonePe PhonePe in the news
Posted 2 weeks ago
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Accenture
31458 Jobs | Dublin
Wipro
16542 Jobs | Bengaluru
EY
10788 Jobs | London
Accenture in India
10711 Jobs | Dublin 2
Amazon
8660 Jobs | Seattle,WA
Uplers
8559 Jobs | Ahmedabad
IBM
7988 Jobs | Armonk
Oracle
7535 Jobs | Redwood City
Muthoot FinCorp (MFL)
6170 Jobs | New Delhi
Capgemini
6091 Jobs | Paris,France