Job Title: Associate Director – Data Privacy
Location: Mumbai / Bangalore / Gurgaon (WFO)
Travel: Frequent travel to Middle East (project-based)
Experience Required: Minimum 10 years
Employment Type: Full-Time
Notice Period: Immediate to 30 days preferred
Role Overview:
We are seeking a dynamic and experienced Associate Director – Data Privacy to lead and manage data privacy and protection engagements across India and the Middle East. The ideal candidate should have a strong understanding of global privacy laws, practical implementation experience, and the ability to manage complex client relationships. This role involves managing large-scale privacy transformation projects, conducting privacy assessments, and helping organizations align with applicable regulatory frameworks (GDPR, DPDPA, PDPL, etc.).
Key Responsibilities:
- Lead Data Privacy and Protection engagements including strategy, compliance assessments, privacy impact assessments (PIAs), and data lifecycle mapping.
- Interpret and implement privacy regulations such as GDPR, India DPDPA 2023, UAE PDPL, Bahrain PDPL, Saudi PDPL, and others.
- Develop and drive privacy transformation programs including policies, procedures, awareness, and consent management.
- Advise clients on cross-border data transfers, third-party risk, and privacy-by-design principles.
- Collaborate with clients legal, compliance, IT, and security teams to deliver end-to-end solutions.
- Assist in building and enhancing Privacy Operating Models aligned with regulatory and industry expectations.
- Lead and mentor junior consultants in the privacy team.
- Contribute to business development activities including proposals, client pitches, and thought leadership.
- Engage with Middle East clients for regional privacy regulatory compliance initiatives.
Required Skills & Qualifications:
- 10+ years of experience in Data Privacy, Information Security, or Risk Advisory.
- Strong knowledge of global privacy laws: GDPR, DPDPA, PDPL (UAE, Saudi, Bahrain) etc.
- Proven experience in privacy governance frameworks, data classification, DPIA/PIA, RoPA, and privacy risk management.
- Certifications such as CIPM / CIPP-E / CIPP-M / CIPT / ISO 27701 / CDPSE preferred.
- Strong client-facing, stakeholder management, and project management skills.
- Ability to travel across the Middle East for project engagements (as required).
- Excellent verbal and written communication skills.
Preferred Industry Background:
- Consulting firms (Big 4 or mid-sized)
- IT/ITES or BFSI sector exposure is a plus
- Exposure to Middle East regulatory landscape is an advantage