Data Protection Officer
Nayara Energy Ltd
Apply on company website
Data Protection Officer
Nayara Energy Ltd
Mumbai/Bombay
Not disclosed
Job Details
Job Description
Data Protection Officer
ACCOUNTABILITIESACTIVITIES1- Overall responsibility for monitoring compliance with Data Protection and Privacy Policy.
- Development and review of the Data Protection Policy under the directions of Chief Compliance and Security Officer.
- Liaison with IT to collect Data Leakage Prevention (DLP) reports and analyse them. Identify and monitor data processors whilst at work, ensuring that they handle data in accordance with key data protection principles. Investigate any anomalies or indicators of potential data breaches, and coordinate with relevant stakeholders to mitigate risks and implement corrective actions.
- Advise Head – Information Security on the provisions of the Data Protection Act.
- To build understanding and awareness of data privacy issues throughout the organization, the DPO must have excellent communication and presentation skills
- Develop and maintain a knowledge base for privacy and data protection laws as applicable to Nayara Energy
- Implement Data Protection Policy across the enterprise.
- Setup processes to monitor compliance
- Provide organizational compliance and conformance reports on privacy and data protection to the top management.
- Provide guidance to delivery and support functions on processing of personal data.
- Conduct Assessments, Review processes, identify gaps, and suggest mitigation and follow-up on the closure of identified gaps.
- Maintain data flow maps for the process where personal data is processed.
- Undertake data protection and privacy compliance audits in accordance with applicable requirements
- Keep track of changes in the relevant legislations related to Privacy and the Data Protection Acts, interpret, convert these requirements into controls and provide guidance to all stakeholders
- Development and update a comprehensive privacy awareness training program and promote awareness across the company
- Overall responsibility for monitoring compliance with Data Protection and Privacy Policy.
- Development and review of the Data Protection Policy under the directions of Chief Compliance and Security Officer.
- Liaison with IT to collect Data Leakage Prevention (DLP) reports and analyse them. Identify and monitor data processors whilst at work, ensuring that they handle data in accordance with key data protection principles. Investigate any anomalies or indicators of potential data breaches, and coordinate with relevant stakeholders to mitigate risks and implement corrective actions.
- Advise Head – Information Security on the provisions of the Data Protection Act.
- To build understanding and awareness of data privacy issues throughout the organization, the DPO must have excellent communication and presentation skills
- Develop and maintain a knowledge base for privacy and data protection laws as applicable to Nayara Energy
- Implement Data Protection Policy across the enterprise.
- Setup processes to monitor compliance
- Provide organizational compliance and conformance reports on privacy and data protection to the top management.
- Provide guidance to delivery and support functions on processing of personal data.
- Conduct Assessments, Review processes, identify gaps, and suggest mitigation and follow-up on the closure of identified gaps.
- Maintain data flow maps for the process where personal data is processed.
- Undertake data protection and privacy compliance audits in accordance with applicable requirements
- Keep track of changes in the relevant legislations related to Privacy and the Data Protection Acts, interpret, convert these requirements into controls and provide guidance to all stakeholders
- Development and update a comprehensive privacy awareness training program and promote awareness across the company
- SKILLS & KNOWLEDGE
- Educational Qualifications & Allied Skills:
- Bachelor's or master's degree in computer science, information systems, or equivalent work experience. An M.B.A. or M.S. in information security is preferred.
- Experience with Big 4 firms or leading consulting organizations is preferred.
- Around 3-5 years' experience in managing privacy and data protection program for a company or providing privacy and data protection consulting services.
- Around 12-15 years of overall experience in the area of privacy and Information Security.
- Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate privacy, security and risk-related concepts to technical and nontechnical audiences.
- Knowledge and understanding of relevant legal and regulatory requirements, such as IT Act 2000, GDPR, BS10012, Data Protection Bill of India and other Data Protection standards
- Exhibit excellent analytical skills, the ability to manage multiple projects under strict timelines, as well as the ability to work well in a demanding, dynamic environment and meet overall objectives
- Project management skills: scheduling and resource management
- Professional privacy engagement certification, such as a Certified Information Privacy Professional (CIPP) or other similar credentials in Data Privacy, is desired
- Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT and ones from NIST
Job role
Work location
Mumbai, Maharashtra, India
Department
IT & Information Security
Role / Category
IT Security
Employment type
Full Time
Shift
Day Shift
Job requirements
Experience
Min. 3 years
About company
Name
Nayara Energy Ltd
Job posted by Nayara Energy Ltd
Apply on company website