Job Description
This role is for one of the Weekday's clients
Min Experience: 3+ years
Location: Chennai, Tamil Nadu, India
JobType: full-time
We are looking for a knowledgeable and detail-oriented Data Protection Consultant to join our growing team. As a consumer data privacy solutions company, our mission is to empower consumers with greater control over their personal information while enabling businesses to build trust, remain compliant, and grow responsibly. In this role, you will work closely with clients and internal stakeholders to design, implement, and enhance data protection and privacy programs that align with evolving global regulations and industry best practices.
The ideal candidate has hands-on experience in data privacy consulting, regulatory compliance, risk assessment, and privacy governance. You should be passionate about helping organizations strengthen their privacy posture while balancing business objectives and regulatory requirements.
Requirements
Key Responsibilities
- Assess organizational data processing activities to identify privacy risks and compliance gaps.
- Develop, implement, and maintain data protection frameworks, privacy policies, standards, and operating procedures.
- Advise clients on compliance with global data privacy regulations such as GDPR, CCPA/CPRA, DPDP Act, and other applicable privacy laws.
- Conduct Privacy Impact Assessments (PIAs), Data Protection Impact Assessments (DPIAs), and vendor privacy assessments.
- Collaborate with legal, security, product, engineering, and business teams to embed privacy-by-design principles into products and business processes.
- Review contracts, data processing agreements, and third-party vendor documentation for privacy compliance.
- Assist in designing and implementing consent management, data retention, and data subject rights processes.
- Support incident response teams by providing guidance on privacy implications of security incidents and data breaches.
- Deliver privacy awareness sessions and training programs to internal teams and clients.
- Stay updated with emerging privacy regulations, enforcement actions, and industry trends to provide proactive recommendations.
Required Qualifications
- Bachelor's degree in Law, Information Security, Computer Science, Information Technology, Business, or a related field.
- 3–7 years of professional experience in data protection, privacy consulting, governance, risk, or compliance.
- Strong understanding of international data privacy regulations and compliance frameworks.
- Experience conducting privacy assessments, audits, and regulatory gap analyses.
- Familiarity with data lifecycle management, data classification, records management, and information governance.
- Strong analytical and problem-solving skills with the ability to interpret regulatory requirements and translate them into practical business solutions.
- Excellent communication, stakeholder management, and presentation skills.
- Ability to manage multiple client engagements and deliver projects within deadlines.
Good-to-Have Skills
- Data Privacy
- Privacy program implementation and governance
- GDPR, CCPA/CPRA, DPDP Act, HIPAA, or similar regulatory frameworks
- ISO 27701, ISO 27001, NIST Privacy Framework
- Privacy Impact Assessments (PIA) and Data Protection Impact Assessments (DPIA)
- Vendor risk management
- Consent and preference management platforms
- Privacy-by-Design principles
- OneTrust, TrustArc, or similar privacy management tools
- Certifications such as CIPP/E, CIPP/US, CIPM, CIPT, ISO 27701 Lead Implementer, or ISO 27001 Lead Auditor