Fynd is India’s largest omnichannel platform and multi-platform tech company with expertise in retail tech and products in AI, ML, big data ops, gaming+crypto, image editing and learning space. Founded in 2012 by 3 IIT Bombay alumni: Farooq Adam, Harsh Shah and Sreeraman MG. We are headquartered in Mumbai and have 1000+ brands under management, more than 10k stores and servicing 23k + pin codes.
What will you do at Fynd ?
1. Governance, Risk, and Compliance (GRC):
- Develop, implement, and maintain GRC frameworks to align with regulatory and industry standards.
- Establish risk assessment methodologies and ensure mitigation strategies are in place.
- Conduct IT General Controls (ITGC) assessments to ensure effective security controls and processes.
- Oversee third-party risk assessments, ensuring vendors comply with security policies.
2. Data Protection & Privacy Compliance:
- Implement and oversee compliance with DPDP (Digital Personal Data Protection Act, India) and GDPR regulations.
- Act as the point of contact for data protection authorities and internal privacy matters.
- Conduct Data Protection Impact Assessments (DPIAs) and privacy risk assessments.
- Develop and enforce privacy policies, data retention, and protection measures.
3. Information Security Compliance & Certifications:
- Lead and maintain compliance with ISO 27001, ensuring policies and controls meet certification requirements.
- Manage SOC 2 compliance efforts, including security, availability, processing integrity, confidentiality, and privacy principles.
- Oversee PCI-DSS compliance for handling cardholder data securely.
- Ensure alignment with NIST security frameworks for risk management and cybersecurity resilience.
4. Business Continuity & Incident Management:
- Develop and maintain a Business Continuity Management (BCM) program, including disaster recovery plans.
- Lead security incident response and investigations to mitigate data breaches and cybersecurity threats.
- Conduct regular
📌 Data Protection Officer (Mumbai)
🏢 Fynd
📍 Mumbai