29 Aug
|
SRS Solutions
|
Navi Mumbai
29 Aug
SRS Solutions
Navi Mumbai
Job Title: Compliance Senior Engineer - Cyber Security & Privacy
Reporting Structure: Reports to DPO/AVP –CyberSecurity - CSEAP
Education
University graduate or post graduate degree with specialisation in the field of Cyber Law, Privacy, Computer Science/IT or Engineering Graduate/PG in CS/IT.
Experience/ Qualifications A Minimum 3–5 years in data privacy, legal compliance, or information security, ideally within the BFSI or IT/ITES sectors.
Basic understanding of IT infrastructure, Cyber Security Standards/Frameworks (ISO 27001/NIST), Application Security (OWASP, SANS, and MITRE) and data security controls (Access Control, Data Classification, DLP, Data Discovery, Masking & Encryption etc.).
Working knowledge of the DPDP Act 2023 and Rules 2025, with the ability to translate requirements into actionable workflows.
Exposure of Privacy Implementation in line with DPDP Act such as Privacy Policy Drafting, ROPA, DPIA, Consent Management, Privacy by Design etc.
Exposure of GDPR or other privacy compliance laws preferred.
Familiarity with parallel global frameworks (like GDPR) or local regulations is preferrable.
Excellent verbal and written communication skills is mandatory with management or stakeholder interaction exposure to bridge technical, legal, and regulatory requirements.
Strong problem-solving abilities and should prioritize tasks effectively
Comfortable working in a fast-paced setting and able to adapt to changing priorities
Industry experience preferred
Software & Application Development | BFSI | Product
Role & Responsibilities
Actively assist in designing, deploying,
and maintaining the internal compliance framework to align all business operations with the DPDP Act mandates.
Assist DPO to oversee the secure and lawful processing of personal data, ensuring absolute compliance with India’s DPDP Act and preparing the organization for other global privacy laws such as the EU GDPR.
Conduct regular internal audits and Data Protection Impact Assessments (DPIAs) for high-risk processing activities.
Assist Privacy CoE in Evaluation of Privacy Enhancing Technologies and co-ordinate for selection and implementation of it.
Contribute to Privacy related standards and best practices adoption such as ISO 27701.
Align with sectoral regulators (e.g., RBI) on Cyber Security and data handling regimes.
Collaborate with Business Teams, IT and Cyber Security teams to implement procedural and technical safeguards like encryption, anonymization, and access controls.
Support to do vendor due diligence from Privacy Compliance perspective.
Provide support in privacy breach incident investigation and response to personal data breaches, ensuring mandatory notifications to regulators and affected individuals within statutory timelines (e.g., 72 hours).
Advises management of critical issues that may affect the overall compliance and risk posture of organization.
Stay up to date on emerging compliance requirements, and trends in technology security and apply that knowledge.
Provide training and guidance to staff on privacy compliance & security with the best practices and procedures.
Preferred Certifications
Undertaken a course aligned with DPDP Act 2023 requirements.
PIMS/ISO 27701 LA / LI preferred
📌 Compliance Senior Engineer – Cyber Security & Privacy (Navi Mumbai)
🏢 SRS Solutions
📍 Navi Mumbai