
Director - Data Privacy / Chief Data Privacy Officer
Location: Mumbai
Industry: Banking & Financial Services
About the Role:
Our client, a leading Financial Group is looking for a seasoned Head - Data Privacy to establish and lead the enterprise-wide data privacy and protection function. The role will be responsible for defining the Group's privacy strategy, ensuring compliance with applicable global and local data protection regulations, embedding privacy-by-design across business and technology initiatives, and advising the Board and Executive Management on privacy risks.
This is a strategic leadership role requiring deep expertise in banking regulations, data governance, cyber risk, technology, legal and compliance.
Key Responsibilities:
Strategic Leadership:
- Develop and execute the Group's enterprise-wide Data Privacy Strategy aligned with business objectives.
- Serve as the Group's designated Data Privacy Officer where required by regulation.
- Build and lead a high-performing Data Privacy function across all business units and geographies.
- Advise the Board, Executive Management and Risk Committees on emerging privacy risks and regulatory developments.
- Drive a culture where privacy is embedded into every product, process and customer interaction.
Governance & Regulatory Compliance:
- Establish and maintain the Group's Data Privacy Governance Framework.
- Ensure compliance with applicable privacy regulations including India's Digital Personal Data Protection (DPDP) Act and GDPR.
- Lead regulatory inspections, audits and supervisory engagements related to data privacy.
- Develop enterprise privacy policies, standards and operating procedures.
Risk Management:
- Identify, assess and mitigate enterprise privacy risks.
- Oversee Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
- Establish governance for cross-border data transfers.
- Drive third-party privacy risk management.
- Lead response to privacy incidents, regulatory reporting and remediation.
Data Governance & Technology:
- Partner with Technology, Cyber Security and Data Governance teams to implement privacy-by-design.
- Drive data classification, data lifecycle management, retention and deletion strategies.
- Oversee consent management, customer rights management and data sharing controls.
- Ensure privacy controls are integrated into cloud, AI, analytics and digital transformation initiatives.
Stakeholder Management:
- Partner with Legal, Compliance, Risk, Information Security, Internal Audit, HR and Business Heads.
- Represent the Bank before regulators, industry forums and external auditors.
- Build strong relationships with global privacy regulators and industry bodies where applicable.
Leadership:
- Build and mentor a high-performing privacy organization.
- Develop enterprise privacy awareness programmes.
- Drive continuous improvement and adoption of global best practices.
Experience:
- 18 - 25 years of progressive experience in Data Privacy, Information Security, Legal, Compliance, Operational Risk or Data Governance.
- Minimum 8 - 10 years leading enterprise privacy programmes.
- Strong experience within Large Banks, Global Financial Institutions, Digital Banks, Payments, FinTech and Financial Services.
Didn’t find the job appropriate? Report this Job