Cybernara
Website:
cybernara.com
Job details:
We are looking for a DPDP Compliance Lead with hands-on experience in DPDP / DPDPA gap assessment and implementation.
This is an oversight and validation role. The selected candidate will review their work, validate findings, identify missed areas, and guide teams wherever required.
The candidate should be able to check whether the DPDP gap assessment is complete, whether all departments and data flows are covered, and whether implementation actions are practical and properly closed with evidence.
Key Responsibilities:
- Oversee DPDP gap assessment and implementation activities.
- Review consultant methodology, findings, trackers, and deliverables.
- Validate department-wise data inventories and data flow details.
- Check coverage of personal data collection, storage, access, sharing, retention, deletion, and vendor involvement.
- Identify missed gaps, weak observations, or incomplete assessment areas.
- Review consent, privacy notice, grievance, Data Principal rights, and data retention processes.
- Work with Legal, IT, HR, Finance, Marketing, Operations, and business teams.
- Guide internal teams on required inputs and closure actions.
- Validate implementation evidence before marking gaps as closed.
- Review policy, SOP, vendor, IT control, and audit-readiness documents.
- Track risks, dependencies, and critical gaps.
- Escalate delays, weak closures, or major privacy risks to leadership.
- Ensure consultant outputs are aligned with business reality and DPDP requirements.
Mandatory Skills:
- Hands-on experience in DPDP / DPDPA, privacy compliance, or data protection implementation.
- Experience in privacy gap assessment or compliance gap assessment.
- Strong understanding of personal data lifecycle.
- Knowledge of consent, notice, retention, Data Principal rights, grievance handling, breach response, and vendor data sharing.
- Ability to review and challenge consultant deliverables.
- Ability to identify gaps in business processes, systems, vendors, and documentation.
- Experience working with Legal, IT, business, and compliance teams.
- Strong written and verbal communication skills.
Good to Have:
- Experience working with external consulting firms or Big 4 teams.
- Experience in GDPR, ISO 27001, SOC 2, privacy audit, GRC, or risk management.
- Experience reviewing IT/security controls related to personal data.
- Certifications in privacy, ISO 27001, DPO, GDPR, or compliance will be an advantage.
This role is not suitable for:
- Candidates with only theoretical DPDP knowledge.
- Candidates who have only attended DPDP training or webinars.
- Candidates with only generic project coordination experience.
- Candidates who cannot review consultant work or identify implementation gaps.
Application Note:
Please apply only if you have practical experience in DPDP / DPDPA, privacy gap assessment, data protection implementation, GDPR, ISO 27001, or similar compliance programs.
Click on Apply to know more.