•Conduct gap assessments against global and regional regulations including GDPR, DPDPA, CCPA, EU AI Act, NIST frameworks, ISO standards, and other regulatory requirements.
•Support the assessment, design, implementation, and monitoring of Digital Trust programs for enterprise clients.
•Perform privacy assessments, governance reviews, and compliance evaluations.
•Execute Data Protection Impact Assessments (DPIA), AI Impact Assessments (AIIA), and Privacy by Design (PbD) reviews.
•Participate in Responsible AI assessments including bias, fairness, explainability, transparency, and accountability evaluations.
•Develop and review privacy notices, cookie policies, data retention policies, AI governance policies, and compliance procedures.
•Map business and system data flows across enterprise applications and platforms.
•Prepare and maintain Records of Processing Activities (RoPA).
•Support consent management and preference management initiatives.
•Assist in privacy operations, compliance reporting, and governance activities.
•Identify privacy risks and compliance gaps across business processes and technology environments.
•Support implementation of privacy controls across applications, databases, cloud platforms, and AI systems.
•Work with privacy management platforms such as OneTrust, TrustArc, Securiti.ai, and similar solutions.
•Utilize GRC platforms such as Archer, LogicGate, and related governance tools.
•Support the implementation and configuration of risk, privacy, compliance, and governance workflows.
•Participate in vendor risk assessments, third-party risk management, and due diligence exercises.
•Assist in developing compliance monitoring dashboards and reporting frameworks.
•Support automation of assessment, governance, and compliance processes.
•Collaborate with Legal, Compliance, Security, Risk, Product Engineering, Data Governance, and Business teams.
•Gather stakeholder requirements and translate them into practical compliance controls and governance processes.
•Facilitate workshops, training sessions, review meetings, and awareness programs.
•Track project deliverables, action items, risks, and dependencies.
•Support client presentations, reporting activities, and executive-level communications.
Expertise You'll Bring:
•4-10 years of experience in Data Privacy, Digital Trust, GRC, Risk Management, Compliance, Cybersecurity, or related domains.
•Strong understanding of Data Privacy principles and regulatory frameworks.
•Hands-on knowledge of DPDPA, GDPR, CCPA, and other privacy regulations.
•Experience with Governance, Risk & Compliance (GRC) programs and frameworks.
•Understanding of Responsible AI principles and AI governance requirements.
•Experience conducting privacy assessments, compliance reviews, and control evaluations.
•Knowledge of Data Protection Impact Assessments (DPIA) and Privacy by Design methodologies.
•Experience with data mapping, data inventories, and Records of Processing Activities (RoPA).
•Familiarity with consent management and privacy operations processes.
•Understanding of vendor risk management and third-party risk assessments.
•Knowledge of cloud technologies, enterprise applications, databases, and AI systems.
•Experience working with privacy management platforms such as OneTrust, TrustArc, Securiti.ai, or similar solutions.
•Familiarity with GRC platforms such as Archer, LogicGate, or equivalent tools.
•Ability to translate regulatory requirements into technical, operational, and business controls.
•Strong analytical, problem-solving, and risk assessment skills.
•Excellent report writing, documentation, and presentation capabilities.
•Strong communication and stakeholder management skills.
•Ability to manage multiple projects and work in dynamic consulting environments.
•High level of professionalism, integrity, and attention to detail.