GAIN - Central IT - Data Protection Officer
This is Gain Ltd
Job Title:
Data Protection Officer
Location:
Mumbai
Reports to:
Primary Purpose
To own, maintain and improve our data protection and privacy compliance framework, ensuring lawful, fair and transparent processing of personal data across our processing sites in the UK, EU, India, Philippines, US and Canada.
Main Responsibilities:
The Data Protection Officer is responsible for proactively managing and improving our data protection compliance framework, driving privacy accountability and lawful processing across the organisation, partnering with IT, Operations, Engineering, HR, Procurement and business stakeholders to embed practical data protection controls and support compliant growth.
- Own and maintain the data protection governance framework, including policies, standards, procedures and supporting documentation.
- Maintain and manage the Record of Processing Activities (ROPA), ensuring processing activities, data flows, systems, suppliers and international transfers are accurately documented and kept up to date.
- Lead and produce Data Protection Impact Assessments (DPIAs), Legitimate Interest Assessments (LIAs), EU Standard Contract Clauses (SCC) and other privacy risk assessments for new and changed processing activities and transfers.
- Review, negotiate and advise on client and supplier data processing agreements (DPAs), privacy clauses and international data transfer provisions.
- Monitor compliance with applicable privacy and data protection legislation across our processing sites in the UK, EU, India, Philippines, US and Canada, escalating gaps and driving remediation actions.
- Provide practical guidance on lawful bases for processing, data subject rights, retention, minimisation, privacy by design and cross-border transfers.
- Support the management of personal data breaches, including triage, risk assessment, notification decision-making, client communications and post-incident review.
- Work with supplier owners and procurement teams to assess third-party privacy risk and ensure appropriate due diligence and contractual controls are in place.
- Develop and deliver data protection training and awareness to employees and support responses to client privacy questionnaires, audits and compliance requests.
- Define and report privacy KPIs, incidents, risks, audit findings and action plans to senior leadership, while working with IT, Operations, Engineering and wider business units to identify risks and scale good practice.
Professional skills/ experience:
- 5+ years in data protection, privacy compliance or information governance with hands-on responsibility for operational privacy activities.
- Proven experience reviewing and negotiating client and supplier DPAs and advising on practical contractual privacy requirements.
- Strong experience producing DPIAs, maintaining ROPAs and supporting data subject rights, retention and international transfer compliance.
- Working knowledge of UK GDPR, EU GDPR and broader international privacy requirements across the UK, EU, India, Philippines, US and Canada.
- Professional certification such as CIPP/E, CIPM, EU GDPR Practitioner or equivalent privacy qualification desirable.
- Able to translate privacy risk into business impact and influence stakeholders at all levels.
Personal Qualities
- Problem solver.
- Great with people, can build trust and rapport across the entire organisation.
- Good communicator with clients and internally.
- Team Player commitment and flexible.
- Ability to prioritise and quickly resolve issues.
- Attention to detail.
- ...strengthen and oversee the organization’s information security, data protection, audit readiness, and compliance posture across all entities. The... ...Risk Remediation & Stakeholder Coordination Coordinate with IT, business, and audit teams for timely issue resolution. Reduce...Suggested
- ...Unlimited is looking for a highly skilled and proactive IT Security Manager to establish, implement, monitor, and... ...This role will lead the implementation and management of centralized security systems, endpoint protection, access management, device monitoring, and software...SuggestedFull timeRemote job
- ...asset management. As an Associate in HR Data Privacy you will help shape and execute... ...centered initiatives that strengthen data protection regulatory compliance and a strong data security... ...on ICO (Information Commissioners Office) escalations owning the end-to-end resolution...SuggestedFull timeWork at office
- ...branch environments.- Implement and tune Security policies, NAT rules, QoS, and Threat Prevention profiles.- Administer Panorama for centralized firewall management, policy deployment, and logging.- Deploy and manage Palo Alto GlobalProtect VPN for remote access and Zero...SuggestedFull timeHybrid workRemote jobFlexible hours
- ...triage and escalation of security incidents across the organizations IT environment. The L1 analyst works closely with SOC L2/L3 IR teams... ...neurodivergence disability status or any other characteristic protected by local laws. Brandtech has set ambitious environmental goals...SuggestedFull timeLocal areaWorldwideShift work
- ..., 04/20/2026 - 06:40JOB DESCRIPTION Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible... ..., pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career...
- ...the effort to design, implement, operate, support, and maintain the security infrastructure and supporting tools that are necessary to protect internal and external assets on networks that support our corporate infrastructure and applications. You'll be the SME and primary...
- ...- Plan and execute successful deployments of network and security products, including firewalls, secure access solutions, endpoint protection, and security management systems. - Provide advanced troubleshooting and technical support for network and security issues, both remotely...Remote job
- We are looking for a competent and experienced security professional to join our expanding Crisis and Security Consulting practice in India. The role will involve working on various security-led projects across the South-east Asia region by providing support to Control Risks...Full timeLocal area
- ...investors include Benchmark General Catalyst Peter Thiel Adam DAngelo Larry Summers and Jack Dorsey . Position: Red Team Data Expert Type: Full-time or Part-time Contract Work Compensation: $14/hour Location: Remote...Hourly payWeekly payFull timeContract workPart timeFor contractorsSummer workRemote job
- ...seeking a Sr. Agentic AI Engineer to join the Cyber Analytics and Data Science team. This role focuses on designing building and operationalizing... ...role partners closely with key stakeholders across Cybersecurity IT and Data Engineering to accelerate the adoption of multi-agent...Full time
- ...: Simulate ransomware attacks to test recovery capabilities and data resiliency.- Ethical Hacking : Perform ethical hacking exercises... ...access using roles (Admin, Developer, Read-Only).- Enforce branch protection rules for PR reviews.- Secure sensitive data using Bitbucket...
- ...vulnerability detection compliance checks and runtime protection for Kubernetes and cloud workloads.... ...Required: ~ Minimum of 5 years of IT experience ~ At least 3 years of specialization... ...trust in capital markets. Enabled by data AI and advanced technology EY teams help...Full timeShift work
- ...deliver reliable high-performance systems aligned with business goals data security standards and industry best practices. Software... ...orientation race ethnicity disabled or veteran status or any other characteristic protected by law . Required Experience: IC...Full timeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GAIN - Central IT - Data Protection Officer. Be the first to apply!

