Required Skills & Competencies
Robust understanding of Governance, Risk, Compliance (GRC), Information Security, and Data Privacy principles, TPRM.
Hands-on experience implementing frameworks such as ISO 27001, ISO 27701, NIST, PCI DSS, SOC 2, and related regulatory requirements.
Solid knowledge of the Digital Personal Data Protection (DPDP) Act, 2023, DPDP Rules, GDPR, and global privacy regulations.
Experience conducting DPDPA implementation projects, privacy assessments, DPIAs, privacy governance initiatives, and compliance reviews.