Essential Functions
- Privacy Program Management
- Review and contribute to the development of the privacy program framework on an ongoing basis ensuring it meets regulatory and industry standards
- Manage and maintain data mapping and data flow across existing and new entities
- Maintain an updated data inventory in line with the companys data classification requirements including review/update of the current guidelines
- Assess group level privacy program requirements/new initiatives and ensure the program development at EXL meets all the requirements
Implementation and Monitoring
- Continually and closely engage with technology and business stakeholders to ensure privacy by design is considered at every stage of the product development service offering and thirdparty engagement
- On ongoing basis conduct audits for implementation of policies and procedures across applications and business functions
- Conduct Privacy Program Reviews on a quarterly basis with gap analysis
- Ensure remediation plans are in place and implemented with regular followups with stakeholders
- Conduct Data Protection Impact Assessments on various products and services
- Perform due diligence on contracts working closely with the legal team
- Monitor Privacy by Design requirements across EXLs products and services meeting Risk Assessment and Monitoring requirements laid down at the group level
- Actively support other teams during regulatory inspections and reviews interactions with government and all other regulatory bodies on privacy matters
- Provide regular reports and updates on the state of privacy highlighting risks and actions undertaken and planned
- Review privacy training implementation on an ongoing basis
- Manage endtoend implementation and management of privacy tool at the group level
Training
- Design awareness and training materials for business stakeholders regarding data privacy requirements applicable to EXLs products and business lines
Advisory
- Advise business stakeholders on Privacy by Design visavis the legal requirements
- Work closely with legal to advice on existing and upcoming regulatory requirements
Skills
- Deep knowledge of data privacy control including protection strategy internal controls data visibility and access rights
Should have handon experience in implementation of privacy by design and by default controls
- Graduate in IT with knowledge of law data privacy with excellent academic credentials
- Work experience must include 5 years of experience implementing managing and monitoring a privacy program the technical controls conducting risk assessments privacy compliance audits designing/developing solutions for privacy issues including consumer and employee privacy
- Demonstrated experience of developing privacy compliant with products and services especially of EXL.
- Global privacyrelated certifications including but not limited to CIPM CIPT CIPP/E CIPP/E CIPP/T certifications
- Should be able to independently manage business stakeholders and team members
- Ability to multitask and work to provide business solutions at speed
Excellent command of spoken and written English
Work Experience Requirements
4 to 10 year of experience and 3 years in Data Privacy
Graduate/Post Graduate with certification CIPP or CDPSE