Data Protection Officer

4 days ago


Mumbai Maharashtra, India Fynd Full time

Fynd is India’s largest omnichannel platform and multi-platform tech company with expertise in retail tech and products in AI, ML, big data ops, gaming+crypto, image editing and learning space. Founded in 2012 by 3 IIT Bombay alumni: Farooq Adam, Harsh Shah and Sreeraman MG. We are headquartered in Mumbai and have 1000+ brands under management, more than 10k stores and servicing 23k + pin codes.

**What will you do at Fynd ?**

1. Governance, Risk, and Compliance (GRC):

- Develop, implement, and maintain GRC frameworks to align with regulatory and industry standards.
- Establish risk assessment methodologies and ensure mitigation strategies are in place.
- Conduct IT General Controls (ITGC) assessments to ensure effective security controls and processes.
- Oversee third-party risk assessments, ensuring vendors comply with security policies.

2. Data Protection & Privacy Compliance:

- Implement and oversee compliance with DPDP (Digital Personal Data Protection Act, India) and GDPR regulations.
- Act as the point of contact for data protection authorities and internal privacy matters.
- Conduct Data Protection Impact Assessments (DPIAs) and privacy risk assessments.
- Develop and enforce privacy policies, data retention, and protection measures.

3. Information Security Compliance & Certifications:

- Lead and maintain compliance with ISO 27001, ensuring policies and controls meet certification requirements.
- Manage SOC 2 compliance efforts, including security, availability, processing integrity, confidentiality, and privacy principles.
- Oversee PCI-DSS compliance for handling cardholder data securely.
- Ensure alignment with NIST security frameworks for risk management and cybersecurity resilience.

4. Business Continuity & Incident Management:

- Develop and maintain a Business Continuity Management (BCM) program, including disaster recovery plans.
- Lead security incident response and investigations to mitigate data breaches and cybersecurity threats.
- Conduct regular tabletop exercises and audits to test resilience and readiness.

**Some Specific Requirements**
- Bachelor’s/Master’s degree in Information Security, Cybersecurity, Compliance, or a related field.
- Professional certifications such as CIPP/E, CIPM, CISSP, CISM, CISA, ISO 27001 Lead Auditor, or CRISC are highly preferred.
- 5+ years of experience in Data Protection, Compliance, GRC, or Cybersecurity roles.
- Strong knowledge of regulatory frameworks (SOC2, ISO27001, GDPR, DPDP, PCI-DSS, NIST, ITGC, Third-Party Risk Management).
- Experience in implementing GRC tools and automating compliance processes.
- Excellent stakeholder management skills with the ability to work cross-functionally.
- Strong analytical, problem-solving, and decision-making skills.

**What do we offer?**

**Growth**

Growth knows no bounds, as we foster an environment that encourages creativity, embraces challenges, and cultivates a culture of continuous expansion. We are looking at new product lines, international markets and brilliant people to grow even further. We teach, groom and nurture our people to become leaders. You get to grow with a company that is growing exponentially.

**Flex University**

Learning Wallet: You can also do an external course to upskill and grow, we reimburse it for you.

**Culture**

Community and Team building activities

Host weekly, quarterly and annual events/parties.

**Wellness**

Mediclaim policy for you + parents + spouse + kids

Experienced therapist for better mental health, improve productivity & work-life balance

We work from the office 5 days a week to promote collaboration and teamwork. Join us to make an impact in an engaging, in-person environment



  • Mumbai, Maharashtra, India RAK Ceramics Full time

    About the job Who We Are We help to create icons. We help to build marvels. Our products feature in some of the most iconic buildings in the world. RAK Ceramics is one of the largest ceramics brands globally, specializing in ceramic and gres porcelain wall and floor tiles, sanitaryware, faucets, and tableware. Headquartered in the United Arab Emirates, we...


  • Pune, Mumbai, Mumbai City, India beBeeDataProtection Full time

    Job DescriptionWe are seeking a skilled professional to lead our Data Protection efforts. The ideal candidate will have expertise in designing and developing framework for data privacy.Key ResponsibilitiesDevelop and implement robust data protection frameworks to ensure compliance with regulatory requirements such as GDPR, CCPA, HIPAA and other applicable...


  • Hyderabad, Telangana - Pune, Maharashtra, India beBeeDataProtection Full time ₹ 1,75,00,000 - ₹ 2,62,50,000

    We seek an experienced professional to lead our data protection strategy. This senior role will oversee data protection across the organization, ensuring regulatory compliance and best practices in a rapidly evolving threat landscape.Key Responsibilities Strategy: Define and maintain the capability strategy for data protection, supported by engineers,...


  • Mumbai, India Rentokil Initial Full time

    **Rentokil PCI **is the leading pest control service provider in India. A Rentokil Initial brand, Rentokil PCI was formed in 2017 through a joint venture (JV) between Pest Control India, the number one pest control company in India, and Rentokil, the world’s leading pest control brand. Rentokil PCI aims to set new standards for customer service with...


  • Mumbai, Maharashtra, India BNP Paribas Full time

    About BNP Paribas India Solutions: Established in 2005, BNP Paribas India Solutions is a wholly owned subsidiary of BNP Paribas SA, European Union’s leading bank with an international reach. With delivery centers located in Bengaluru, Chennai and Mumbai, we are a 24x7 global delivery center. India Solutions services three business lines: Corporate and...


  • Pune, Mumbai, India beBeeDataProtection Full time ₹ 9,00,000 - ₹ 12,00,000

    We are seeking a highly skilled cybersecurity expert to join our team as a Data Protection Specialist.Job Description:This is a 6-month contract role focused on designing and operationalizing data protection processes. The ideal candidate will possess excellent analytical, communication, and presentation skills.Data Protection Process Design: Develop...


  • Mumbai, India Pluxee Full time US$ 90,000 - US$ 1,20,000 per year

    Pluxee is a global player in employee benefits and engagement that operates in 31 countries. Pluxee helps companies attract, engage, and retain talent thanks to a broad range of solutions across Meal & Food, Wellbeing, Lifestyle, Reward & Recognition, and Public Benefits.Powered by leading technology and more than 5,000 engaged team members, Pluxee acts as a...


  • Mumbai, Maharashtra, India beBeeDataPrivacy Full time ₹ 1,20,00,000 - ₹ 1,80,00,000

    Senior Data Protection SpecialistThis role involves designing, implementing and managing data privacy policies that meet legal requirements and industry standards.


  • Mumbai, Mumbai City, Pune, India beBeeDataProtection Full time US$ 60,000 - US$ 1,20,000

    Senior Data Protection OfficerThe primary goal of our organization is to ensure the highest level of data security and compliance with relevant regulations.Job Description:As a Senior Data Protection Officer, you will play a vital role in designing and implementing data protection frameworks that meet industry standards. Your expertise will be crucial in...


  • Mumbai, Maharashtra, India beBeeDataPrivacy Full time ₹ 15,00,000 - ₹ 25,00,000

    This role is a pivotal opportunity for an accomplished professional to lead the development and implementation of comprehensive data privacy policies and frameworks. The ideal candidate will have a proven track record of advising senior stakeholders on complex data management issues, including transfers, retention, and destruction.Key...