Data Officer and Compliance Lead Information Security
IDfy · Mumbai, Maharashtra, India
Free to search · AI fit score against your CV · tailor your résumé in one click
IDfy · Mumbai, Maharashtra, India
10+ years in Information Security, with a strong focus on Governance, Risk, Compliance, Data Privacy, and Cloud Security. Deep, working knowledge ofISO 27001:2022, SOC 2 Type II, ISO 42001, ISO/IEC 27701, India's DPDPA, RBIregulations (e.g.,V-CIP, outsourcing guidelines), and sector-specific requirements like SAR reporting and data localization. Asolid understanding of cloud security including the ability to contribute to cloud architecture reviews and offer security design recommendations across multi-cloud environments (AWS, GCP). Working fluency in application security, SIEM/SOC,VAPT, security & privacy by design, leveragingAIfor security - enough to be a credible partnerto Engineering. Strong privacy program exposure - DPIAs, consent management, data subjectrights handling, breach notification, and privacy-by-design. Genuine comfort with client-facing security conversations articulating controls, handling auditor scrutiny, and building trust withBFSI,fintech, and enterprise customers. Confidence reviewing MSAs, DPAs, RFPs, TPRM, DPIA,AI questionnaires, and aligning contractual obligations with internal security practices. The judgmentto balance compliance rigor with business agility, and the ability to translate complex regulatory requirements into practical, actionable controls. Acollaborative, cross-functional style, and experience building and mentoring a team.