Data Protection Officer

Nayara Energy Ltd

Mumbai/Bombay

Not disclosed

Work from Office

Full Time

Min. 3 years

Job Details

Job Description

Data Protection Officer

ACCOUNTABILITIESACTIVITIES1  
  • Overall responsibility for monitoring compliance with Data Protection and Privacy Policy.
  • Development and review of the Data Protection Policy under the directions of Chief Compliance and Security Officer. 
  • Liaison with IT to collect Data Leakage Prevention (DLP) reports and analyse them. Identify and monitor data processors whilst at work, ensuring that they handle data in accordance with key data protection principles. Investigate any anomalies or indicators of potential data breaches, and coordinate with relevant stakeholders to mitigate risks and implement corrective actions.
  • Advise Head – Information Security on the provisions of the Data Protection Act.
  • To build understanding and awareness of data privacy issues throughout the organization, the DPO must have excellent communication and presentation skills
  • Develop and maintain a knowledge base for privacy and data protection laws as applicable to Nayara Energy
  • Implement Data Protection Policy across the enterprise.
  • Setup processes to monitor compliance
  • Provide organizational compliance and conformance reports on privacy and data protection to the top management.
  • Provide guidance to delivery and support functions on processing of personal data.
  • Conduct Assessments, Review processes, identify gaps, and suggest mitigation and follow-up on the closure of identified gaps.
  • Maintain data flow maps for the process where personal data is processed.
  • Undertake data protection and privacy compliance audits in accordance with applicable requirements
  • Keep track of changes in the relevant legislations related to Privacy and the Data Protection Acts, interpret, convert these requirements into controls and provide guidance to all stakeholders
  • Development and update a comprehensive privacy awareness training program and promote awareness across the company
  ACCOUNTABILITIESACTIVITIES1  
  • Overall responsibility for monitoring compliance with Data Protection and Privacy Policy.
  • Development and review of the Data Protection Policy under the directions of Chief Compliance and Security Officer. 
  • Liaison with IT to collect Data Leakage Prevention (DLP) reports and analyse them. Identify and monitor data processors whilst at work, ensuring that they handle data in accordance with key data protection principles. Investigate any anomalies or indicators of potential data breaches, and coordinate with relevant stakeholders to mitigate risks and implement corrective actions.
  • Advise Head – Information Security on the provisions of the Data Protection Act.
  • To build understanding and awareness of data privacy issues throughout the organization, the DPO must have excellent communication and presentation skills
  • Develop and maintain a knowledge base for privacy and data protection laws as applicable to Nayara Energy
  • Implement Data Protection Policy across the enterprise.
  • Setup processes to monitor compliance
  • Provide organizational compliance and conformance reports on privacy and data protection to the top management.
  • Provide guidance to delivery and support functions on processing of personal data.
  • Conduct Assessments, Review processes, identify gaps, and suggest mitigation and follow-up on the closure of identified gaps.
  • Maintain data flow maps for the process where personal data is processed.
  • Undertake data protection and privacy compliance audits in accordance with applicable requirements
  • Keep track of changes in the relevant legislations related to Privacy and the Data Protection Acts, interpret, convert these requirements into controls and provide guidance to all stakeholders
  • Development and update a comprehensive privacy awareness training program and promote awareness across the company
  1. SKILLS & KNOWLEDGE
  1. Educational Qualifications & Allied Skills:
  • Bachelor's or master's degree in computer science, information systems, or equivalent work experience. An M.B.A. or M.S. in information security is preferred.
  • Experience with Big 4 firms or leading consulting organizations is preferred.
  • Around 3-5 years' experience in managing privacy and data protection program for a company or providing privacy and data protection consulting services.
  • Around 12-15 years of overall experience in the area of privacy and Information Security. 
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate privacy, security and risk-related concepts to technical and nontechnical audiences.
  • Knowledge and understanding of relevant legal and regulatory requirements, such as IT Act 2000, GDPR, BS10012, Data Protection Bill of India and other Data Protection standards
  • Exhibit excellent analytical skills, the ability to manage multiple projects under strict timelines, as well as the ability to work well in a demanding, dynamic environment and meet overall objectives
  • Project management skills: scheduling and resource management
  • Professional privacy engagement certification, such as a Certified Information Privacy Professional (CIPP) or other similar credentials in Data Privacy, is desired
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT and ones from NIST

Job role

Work location

Mumbai, Maharashtra, India

Department

IT & Information Security

Role / Category

IT Security

Employment type

Full Time

Shift

Day Shift

Job requirements

Experience

Min. 3 years

About company

Name

Nayara Energy Ltd

Job posted by Nayara Energy Ltd

Apply on company website