30 Sep
|
Impetus
|
Chennai
About The Role
We are hiring a Senior Data Privacy Engineer to own data privacy and access governance across an enterprise data landscape. The role brings together privacy, security and data governance. You will make sure the right people have the right level of access to the right data, that personal data is identified, classified and protected, and that privacy obligations are met in day-to-day operations.
The scope covers reviewing and governing access requests, rolling out least-privilege and role-based access models, maintaining the enterprise PII inventory, automating subject access request handling, and authoring the policies that govern data retention, access, quality and AI usage.
Experience & Exposure Required
- 8–10 years in data privacy, data protection, access governance or data security within large enterprise environments.
- Hands-on experience governing data access, including reviewing security group and entitlement requests, validating least-privilege and running periodic access recertification.
- Practical experience supporting RBAC and ABAC implementations on enterprise data platforms, working alongside platform and security engineering teams.
- Robust working knowledge of GDPR, CCPA/CPRA, DPDPA and ISO 27701, and the ability to translate these into operational controls.
- Experience building and maintaining a PII inventory, covering personal data discovery, data mapping, classification, records of processing and third-party data flows.
- Experience handling data subject and data principal rights requests (SAR/DSAR), including workflow design and automation to reduce manual effort and meet regulatory turnaround times.
- Proven experience authoring and maintaining enterprise data policies for data retention, data access, data quality and AI governance.
- Working knowledge of privacy assessments such as PIA/DPIA, transfer impact assessments and vendor or third-party privacy risk reviews.
- Strong SQL and working Python skills to query data assets, validate controls and automate privacy and access governance workflows.
- Experience building privacy and access dashboards that report exposure, coverage, open requests and compliance posture to leadership.
- Solid stakeholder management skills, with the ability to work across legal, security, platform engineering and business teams and hold a clear position on risk.
Good to Have
- Exposure to AI governance and responsible AI controls, including assessment of AI and GenAI use cases against privacy and emerging AI regulation.
- Familiarity with data catalog and classification tooling such as Alation, Collibra or Microsoft Purview, and how classification drives access policy.
- Experience with cloud data platforms and their native security and access control models.
- Privacy or security certifications such as CIPP, CIPM, CIPT or ISO 27701 lead implementer/auditor.
Data Privacy,SQL , Pythonm, Gdpr, Cipp
Access Governance
- Review and govern security group and data access requests,
validating business justification and applying least-privilege as the default.
- Support the design and rollout of RBAC and ABAC access models across enterprise data assets, working with platform and security engineering teams.
- Run periodic access reviews and recertification cycles, and drive remediation of excessive, dormant or orphaned access.
- Define and maintain the standards for how access is requested, approved, provisioned and revoked across the data landscape.
Data Privacy Operations
- Build and maintain the enterprise PII inventory, covering where personal data resides, how it flows, how it is classified and how long it is retained.
- Automate subject access request workflows from intake through discovery, fulfilment and closure so regulatory timelines are met consistently.
- Conduct privacy impact assessments for new initiatives and data sharing arrangements, and track agreed mitigations to closure.
- Support audit and regulatory readiness by maintaining evidence, records of processing and control documentation.
Policy, Reporting & Collaboration
- Develop and maintain enterprise policies for data retention, data access, data quality and AI governance, and keep them current as regulation and platforms evolve.
- Build privacy and access governance dashboards covering PII coverage, classification status, open SARs, access exceptions and policy compliance.
- Partner with legal, security, data governance and business teams to build privacy-by-design into new data and AI initiatives.
- Run awareness and enablement sessions so that data owners, stewards and engineering teams understand and apply privacy and access obligations.
📌 Senior Data Privacy Engineer (Chennai)
🏢 Impetus
📍 Chennai