
Location - Karur,Tamil Nadu
Job Purpose
To coordinate, implement, monitor, and continuously improve compliance with the Digital Personal Data Protection Act, 2023 and applicable rules across the Bank. To serve as the central point of coordination for all the stakeholders on all the operational aspects of personal data governance.
1. Implementation & Governance
- Ensure periodic review of privacy policies, notices, and consent mechanisms.
- Coordinate with respective bodies / authorities to track regulatory developments and recommend policy updates.
- Conduct periodic privacy compliance reviews in coordination with respective stakeholders.
- Support internal audit and regulatory inspections and ensure closure of audit observations.
- Prepare management dashboards.
2. Data Lifecycle Management
- Ensure compliance throughout the lifecycle (Collection, Processing, Storage, Sharing, Usage & Deletion) of personal data
- Validate lawful purpose and necessity of personal data collected.
- Monitor adherence to approved policy and SOPs.
3. Privacy Risk Assessment
- Conduct privacy impact assessments for new products and projects.
- Review privacy risks arising from new technologies.
- Recommend mitigation measures.
4. Data Principal Rights & Consent Management
- Coordinate handling of requests relating to Access, Correction, Updation, Retrieval and Deletion with the agreed timelines and within regulatory requirements.
- Ensure consent notices comply with statutory requirements.
- Coordinate implementation of consent withdrawal mechanisms.
- Monitor consent records and audit trails.
5. Personal Data Breach Management
- Coordinate investigation of suspected personal data breaches.
- Work with Information Security for root cause analysis and implementation of necessary mechanism.
6. Vendor Compliance
- Review vendor privacy obligations and ensure vendor assessments are periodically conducted.
- Coordinate privacy due diligence for service providers and monitor contractual compliance relating to
handling of personal data.
7. Awareness & Capability Building
- Work closely with HR to design and deliver privacy awareness programs.
- Coordinate annual certification by employees.
Desired Profile
- Certified Information Privacy Manager (CIPM)
- ISO/IEC 27701 or ISO/IEC 27001
Didn’t find the job appropriate? Report this Job