Source description
About the role
Job Title: Data Security Lead Role Summary: We are seeking an experienced and technically proficient Data Security Lead to design, implement, and govern data protec8on strategies across the enterprise. This role involves securing data across its lifecyclecrea8on, storage, transmission, and destruc8onwhile ensuring compliance with data privacy laws (DPDP, GDPR, etc.), internal policies, and global security frameworks. Technical Responsibili:es: Cloud & Data Security Architecture: - Architect security controls for AWS, Azure, and GCP focusing on DPDP-compliant data handling. - Implement cloud-na8ve encryp8on using customer-managed keys (CMKs) and enable key rota:on and access audit logging per DPDP accountability guidelines. - Design data residency and localiza:on controls in alignment with DPDP storage requirements. Data Privacy & Protec:on: - Create and maintain data classifica:on and sensi:vity labelling models based on DPDP categories (Personal Data vs. Sensi8ve Personal Data). - Implement Privacy by Design and Privacy by Default principles into cloud-na8ve data workflows. - Opera8onalize data subject rights management enable discoverability, consent tracking, and erasure workflows via APIs and orchestra8on tools. - Integrate Consent Management PlaHorms (CMP) with CASB, DLP, and analy8cs pipelines to enforce lawful processing under DPDP Sec8on 5 & 7. - Ensure DPIA (Data Protec:on Impact Assessment) is conducted for all high-risk cloud-hosted personal data processing use cases. Compliance, Audit, and Governance: - Build and maintain security controls and technical safeguards to comply with DPDP, GDPR, HIPAA, or industry-specific standards. - Implement technical support for: - Data Subject Rights Management (access, erasure, consent withdrawal). - Data Reten:on & Minimiza:on Policies. - Consent Capture & Audit Logging. - Lead or support Data Protec:on Impact Assessments (DPIAs) and privacy threat modelling. IAM & Access Control for Data: - Define aNribute-based access control (ABAC) or role-based access control (RBAC) models for sensi8ve data repositories. - Integrate iden8ty governance tools (e.g., SailPoint, Saviynt) to manage and monitor privileged data access. - Implement Just-in-Time access, segrega:on of du:es, and mul:-approval workflows for highsensi 8vity datasets. Technical Tools & Frameworks (DPDP Relevant): - Data Protec:on: Netskope DLP, Netskope CASB, Titus, Microso\ AIP - Privacy Tech: Go Trust, OneTrust, Securi8.ai for automated data discovery and consent management - Compliance-as-Code: OPA/Gatekeeper policies for ensuring DPDP-aligned deployments Required Experience: - 8-12 years in cybersecurity with 5 years in data protec:on and cloud security. - Proven track record implemen8ng privacy-enhancing technologies and security automa:on in cloud-na8ve environments. Cer:fica:ons (Preferred): - Security: AWS Security Specialty, Azure Security Engineer, CCSP, CISSP - Privacy: CIPT, CIPP/IT, or DPDP Prac::oner Training (e.g., DSCI Cer:fied Privacy Skilled) - Compliance: ISO/IEC 27018, ISO 27701 (op8onal but preferred) Job Title: Data Security Lead Role Summary: We are seeking an experienced and technically proficient Data Security Lead to design, implement, and govern data protec8on strategies across the enterprise. This role involves securing data across its lifecyclecrea8on, storage, transmission, and destruc8onwhile ensuring compliance with data privacy laws (DPDP, GDPR, etc.), internal policies, and global security frameworks. Technical Responsibili:es: Cloud & Data Security Architecture: - Architect security controls for AWS, Azure, and GCP focusing on DPDP-compliant data handling. - Implement cloud-na8ve encryp8on using customer-managed keys (CMKs) and enable key rota:on and access audit logging per DPDP accountability guidelines. - Design data residency and localiza:on controls in alignment with DPDP storage requirements. Data Privacy & Protec:on: - Create and maintain data classifica:on and sensi:vity labelling models based on DPDP categories (Personal Data vs. Sensi8ve Personal Data). - Implement Privacy by Design and Privacy by Default principles into cloud-na8ve data workflows. - Opera8onalize data subject rights management enable discoverability, consent tracking, and erasure workflows via APIs and orchestra8on tools. - Integrate Consent Management PlaHorms (CMP) with CASB, DLP, and analy8cs pipelines to enforce lawful processing under DPDP Sec8on 5 & 7. - Ensure DPIA (Data Protec:on Impact Assessment) is conducted for all high-risk cloud-hosted personal data processing use cases. Compliance, Audit, and Governance: - Build and maintain security controls and technical safeguards to comply with DPDP, GDPR, HIPAA, or industry-specific standards. - Implement technical support for: - Data Subject Rights Management (access, erasure, consent withdrawal). - Data Reten:on & Minimiza:on Policies. - Consent Capture & Audit Logging.
More at Skyleaf Consultants
Related open roles
Power BI Developer Strategic automation and insights partner
Delhi NCR
Solution Architect Feedback excellence service provider
Delhi NCR
Senior ML Engineer (Noida)
Delhi NCR
Engagement Lead Innovative consulting firm for change
Delhi NCR
Qlik Developer Data and Analytics Diverse global solutions provider corp
Mumbai
Data Security lead
Mumbai