Search Jobs

Search by job, company or skills

Data Protection and legal Manager

Data Protection and legal Manager

nms consultant
  • Posted 10 hours ago
  • Be among the first 10 applicants

Job Description

Job Description :

Role Summary :

The Sr. Executive / Assistant Manager – Data Protection will be responsible for supporting and implementing the organization's data protection and privacy framework, ensuring compliance with applicable data protection and privacy laws, including the Digital Personal Data Protection Act, 2023 (DPDP Act) and applicable rules.

The role will also provide legal support on data privacy, contractual matters, regulatory compliance, commercial agreements, and day-to-day legal advisory to various business functions within the pharmaceutical organization.

Key Responsibilities:

A. Data Protection & Privacy :

1. Assist in designing, implementing, maintaining, and monitoring the organization's data protection and privacy framework in accordance with the DPDP Act, 2023, and applicable rules.

2. Support the development and periodic review of privacy policies, data protection policies, consent notices, privacy notices, SOPs, guidelines, and data processing agreements.

3. Conduct and maintain data mapping and data inventories, identifying personal data collected, processed, stored, shared, and transferred by various business functions.

4. Maintain appropriate records of personal data processing activities and support periodic reviews of data processing practices.

5. Advise business and functional teams on:

o Consent management

o Personal data collection and processing

o Data retention and deletion

o Data sharing and disclosure

o Data subject/data principal rights

o Vendor and third-party data processing

o Cross-functional data protection requirements

6. Support the organization in establishing and maintaining appropriate data privacy controls, procedures, and governance mechanisms.

7. Assist in addressing data protection grievances, privacy complaints, and data breaches/incidents, including coordination with relevant internal stakeholders.

8. Support the development and implementation of data breach/incident response procedures, including assessment, documentation, escalation, and regulatory compliance requirements.

9. Coordinate data protection compliance audits, assessments, reviews, and remediation activities across relevant functions.

10. Monitor regulatory and legal developments relating to data protection and privacy and advise relevant stakeholders on necessary organizational changes.

What We Offer:

Free Gym Facility for employees

Subsidized Food Facility

Supportive and collaborative work environment

Opportunities for professional growth and learning

Opportunity to work closely with cross-functional business and leadership

Employee welfare and engagement initiatives

More Info

Key Skills

Vendor and third-party data processing

Consent management

Data sharing and disclosure

Data mapping and data inventories

Data breach incident response procedures

Data retention and deletion

About Company