24 Aug
|
National Payments Corporation Of India (NPCI)
|
Mumbai
24 Aug
National Payments Corporation Of India (NPCI)
Mumbai
Role & responsibilities
- Design, implement, and continuously enhance enterprise-wide privacy controls, policies, standards, and compliance frameworks.
- Lead and drive implementation initiatives related to GDPR, Digital Personal Data Protection (DPDP) Act, and other applicable privacy regulations.
- Manage and oversee the operational activities of the Data Protection Officer (DPO) Office, including governance, reporting, compliance monitoring, and stakeholder engagement.
- Integrate privacy-by-design and privacy-by-default principles into products, technologies, business processes, and AI-enabled solutions. Collaborate with Engineering, Information Security, Product Management, Risk, Compliance, and Legal teams to implement practical and scalable privacy controls.
- Conduct privacy assessments, data mapping, privacy impact assessments (PIAs), and risk assessments across systems and applications.
- Evaluate, monitor, and address emerging privacy, security, and governance risks associated with frontier AI models, machine learning systems, and advanced data processing technologies.
- Drive adoption and implementation of Privacy Enhancing Technologies (PETs) such as anonymization, pseudonymization, differential privacy, federated learning, and secure data-sharing techniques.
- Establish privacy governance mechanisms for handling personal data throughout its lifecycle, including collection, processing, storage, sharing, and disposal.
- Support internal and external audits, regulatory inspections, and compliance reviews.
- Provide leadership, guidance,
and awareness programs to strengthen the organization's privacy culture and data protection maturity.
- Engage with senior management and regulatory stakeholders on privacy strategy, compliance posture, and risk mitigation initiatives.
Requirements
- 7 to 11 years of overall qualified experience, with a minimum of 4 years of deep, hands-on experience in privacy control implementation and privacy program management.
- Strong Information Security knowledge with the ability to understand and translate technical risks into privacy controls and governance requirements.
- Proven experience in implementing and operationalizing GDPR and DPDP compliance frameworks.
- Solid understanding of privacy risk management, data governance, consent management, data subject rights, cross-border data transfers, and breach management processes.
- Working knowledge of frontier AI models and the associated privacy, governance, ethical, and regulatory challenges.
- Hands-on experience with Privacy Enhancing Technologies (PETs) and modern privacy engineering concepts.
- Engineering or technology background preferred, with the ability to engage effectively with technical teams.
- Experience in the Banking, Financial Services, and Insurance (BFSI) sector is mandatory.
- Strong understanding of banking operations, digital payments ecosystems, payment products, and regulatory expectations in the financial sector.
- Excellent stakeholder management, communication, and leadership skills.
Professional certifications such as CISSP, CIPP, CIPM, AIGP, or equivalent privacy and security credentials will be highly preferred.
📌 Data Privacy Officer (Mumbai)
🏢 National Payments Corporation Of India (NPCI)
📍 Mumbai