Privacy Incident Response Handler and Privacy

1 week ago


Mumbai Maharashtra, India WTW Full time

a. Works as part of the Privacy/Legal Team, providing management support on certain reported fraud-related incidents, ensuring that requisite teams are engaged on an incident and following up where necessary to ensure that all appropriate steps are followed. This will include intake and triage, end-to-end coordination and management of reported security incidents throughout the life cycle of an incident.
- Provide operational support for the incident process, including escalation of incidents where a response is required within a specified timeframe;
- Provide input of incident details to designated IT systems. Produce periodic and ad-hoc reports for the use of the team

The role interacts directly with users from our business, and liaise with specialist teams such as legal, privacy, business information security officers, and cyber major incident response where needed to resolve incidents. The role is not a hands-on technical cyber security role, but you will be interacting on a daily basis with specialist teams.

2.a. Works with the Privacy Team, providing general administrative support for the privacy software platform, OneTrust. Tasks may include providing user access to the software, maintaining the organizational structure within the software, and organizing the modules into a coherent folder structure;
b. Maintain the registers of activities within the OneTrust modules and provide escalation where a response is required within a specified timeframe.

c. After adequate training and orientation, is able to provide support within specified SLAs (to be determined) for the OneTrust modules which WTW has purchased, for example: input/update privacy notices into the Privacy Notice Management module, input/create new assessments in the Assessment Module, derive metrics and utilization statistics across the entire platform.

We are looking for a collaborative team player, with brilliant coordination and communication skills who likes to work in a fast pace environment. They will contribute to and work as part of a global multi-disciplined privacy and legal community with clear vision and direction, and top-down support across the business.

**The Role**

Responsibility:

- Receive and provide triage reports for security incidents from across the business including:

- Making a record of the incident and undertake triage to determine the severity of the incident
- Coordinate the Legal Lead engagement of the incident, as well as engagement of any other known stakeholders (such as Treasury, HR, etc), including scheduling calls, issuing, and tracking actions, collection of evidence
- Provide timely escalation of severe incidents or non-compliance to agreed SLAs for incident progression
- Identify underlying trends through the production of reports, and potential control gaps
- Ensure all incident handling and response best practices, guidelines and standards are followed
- Ensure accurate and clear communication with all stakeholders

Ensure the timely production of reports for the team, using Excel and PowerBI software tools2.Provide administrative support for the Privacy function software platform, OneTrust:

- Maintain control of privilege access of users to the software environment
- Review and maintain the WTW organization structure used by the software
- Review and maintain the folder structure within the modules, to effectively control access to the relevant data files for users
- Provide timely escalation of active tasks to ensure their completion, including but not limited to DPIAs, Notices and Cookie implementations, assessments, etc.
- Ensure reports are generated for the team, from within the OneTrust environment
- Demonstrable track record of:

- Working with other teams and disciplines towards a common goal
- Problem solving and maintaining SLAs in a highly available environment
- Working to deadlines and maintaining a high degree of organization to your work
- Highly computer literate
- Communicating clearly
- Beneficial but not essential:

- An understanding of Cyber Security
- An understanding of privacy regulations (e.g., GDPR, CCPA and other U.S. and global privacy
laws)

Beneficial qualifications include:

- BSc or equivalent experience in an Information Security field
- Privacy certification(s)



  • Mumbai, Maharashtra, India Privacy Pillar Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    Company DescriptionPrivacy Pillar provides cutting-edge consumer data privacy solutions aimed at enhancing trust and ensuring legal compliance for organizations. With innovative and user-friendly tools, Privacy Pillar helps businesses manage data protection, mitigate risks, and comply with global regulations like GDPR, CCPA, and DPDPA. The company's platform...


  • Mumbai, Maharashtra, India Privacy Pillar Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Location – BangaloreExperience – 03 to 04 yearsSeeking a skilled Data Protection Consultant to design and implement privacy programs, conduct risk assessments and ensure compliance with global laws and leading frameworks.Design & implement privacy and data protection programsConduct risk assessments, gap analysis, audits, and compliance...

  • Data Privacy

    2 weeks ago


    Mumbai, Maharashtra, India Acura Solution Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description:Key Responsibilities:Develop and maintain a comprehensive data privacy program framework including data Privacy Policies, Procedure, Templates & Process documentsEnsure that the practices in the Bank are in compliance with DPDP Act, GDPR and other applicable regulations.Play a consulting role for Business Team on all privacy related queries...


  • Pune, Maharashtra, India Barclays Full time

    Join us as a "Security Incident Response Handler" at Barclays, where you'll spearhead the evolution of our digital landscape, driving innovation and excellence. You'll harness cutting-edge technology to revolutionise our digital offerings, ensuring unapparelled customer experiences. You may be assessed on the key critical skills relevant for success in role,...


  • Mumbai, India ShieldByte Infosec Pvt Ltd Full time

    **Responsibility**: - Basic knowledge of data privacy compliance requirements like GDPR, CCPA, PDPA is required - Drafting and negotiating contracts with third parties (professional services agreements, - technology services agreements, hosting agreements, SaaS agreements) - Working collaboratively with internal compliance team for data privacy compliance -...


  • Navi Mumbai, Mumbai City, Mumbai, India KPMG Assurance and Consulting Services LLP Full time

    Job Description As a Manager in the Digital Trust team at KPMG, you will be responsible for providing strategic guidance and expertise in data privacy and ethics. You will play a crucial role in assisting clients in navigating the complex landscape of data protection laws, regulations, and ethical considerations. You will work closely with clients to assess...

  • Data Privacy

    4 days ago


    Gurugram, Mumbai, India d6c94464-03dc-4df0-94ec-dfaa17618eee Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job Description & Summary: Data Privacy (Privacy Maturity Assessment, Data Privacy Impact Assessment, Data Privacy Frameworks, ISO 27701 reviews, Managed Privacy ServicesJob Position Title:Senior Associate _Data Privacy _ITRA_ Advisory_ Mumbai & GurgaonResponsibilities:Strong understanding of privacy regulations such as GDPR, CCPA, Draft India Data...


  • Mumbai, Maharashtra, India pentacube Full time ₹ 5,00,000 - ₹ 25,00,000 per year

    We are seeking a Information Security and Privacy consultant to help our clients design, implement, and manage privacy frameworks aligned with the Digital Personal Data Protection (DPDP) Act, 2023 and ISO/IEC 27701 standards. The consultant will be responsible for assessing privacy risks, advising on compliance requirements, and supporting implementation of...


  • Mumbai, Maharashtra, , India Tsaaro Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    About Us: Tsaaro is dedicated to Data Privacy and Security as its core focus. Our team comprises specialized data privacy consultants, information security experts, and penetration testers, all working to empower our clients with seamless and highly efficient security solutions. Our approach is centered around customization, understanding the unique needs of...


  • Mumbai, India FlexibleIR Full time

    A very interesting and responsible role to defend India's largest Critical Infrastructure companies against major Cyber attacks and overall Crisis Management in general for the organisation !!! Company Description FlexibleIR helps organizations be prepared for cyber attacks by providing a process-centered approach to building strong cyber Incident Response...