Get more replies from employers
Send a job-specific resume in minutes.
National Payments Corporation of India (NPCI) is seeking a Data Privacy professional to join our Goregaon team. You will drive compliance with ISO 27701:2019, DPDP Act, and GDPR, and shape our privacy program across Marketing Information Security.
The role demands 1–3 years of relevant experience and a strong foundation in privacy controls within a large enterprise. You’ll develop, implement, and audit privacy policies, mentor teams on privacy-by-design, and coordinate data inventories.
National Payments Corporation of India (NPCI) | Full Time
The National Payments Corporation of India (NPCI) is a pivotal institution in India's digital payments ecosystem, established by the Reserve Bank of India (RBI) and the Indian Banks’ Association (IBA). It operates under the Payment and Settlement Systems Act, 2007, and is incorporated as a “Not for Profit” company under Section 25 of the Companies Act 1956 (now Section 8 of the Companies Act 2013). NPCI is dedicated to building world-class digital payment infrastructure through innovative and efficient retail payment platforms. As an Equal Opportunity Employer, NPCI is committed to fostering an inclusive workplace culture, with zero tolerance for discrimination based on race, ethnicity, disability, gender identity, or sexual orientation, including support for the LGBTQ+ community.
Our Culture
TheNPCIWAY -OurGuidingPrinciples
At NPCI, we foster a culture of Inclusion, Innovation, and a High- Performance Workplace .
The NPCIWAY isnotjustaframework - it’sasharedcommitmentbyevery individual to align with our evolving business needs, dynamic market conditions, and workforce expectations.
FiveTenetsoftheNPCIWAY
Insurance&Wellness:
At NPCI, you’ll be part of a purpose-driven organization shaping the future of digital payments in India and beyond. NPCI offers a unique opportunity to work on cutting-edge projects that directly impact millions. We foster a culture of innovation, inclusion, and high performance, where every individual is empowered to lead with purpose and deliver with passion. With a strong focus on employee wellbeing, continuous learning, and collaborative success, NPCI is more than just a workplace - it’s a platform to grow, contribute, and make a meaningful difference.
National Payments Corporation of India (NPCI), an umbrella organization for retail payments in India, is an initiative of Reserve Bank of India (RBI) and Indian Banks’ Association (IBA) and is authorized under the provisions of the Payment and Settlement Systems Act, 2007 for providing payment and settlement systems in India. Considering the utility nature of NPCI, it has been incorporated as a “Not for Profit” Company under the provisions of Section 25 of Companies Act 1956 (now Section 8 of Companies Act 2013), with an intention to provide best in class digital payment infrastructure by creation of efficient and innovative retail payment platforms.
NPCI is an Equal Opportunity Employer. At NPCI, we are committed to fostering an inclusive workplace and have zero tolerance for any form of discrimination based on race, ethnicity, disability, gender identity, and the LGBTQ+ Community.
We are seeking a dedicated and knowledgeable Data Privacy professional to join our team at the Goregaon office. The ideal candidate will have a strong understanding of data privacy laws and standards, particularly ISO 27701:2019, the Digital Personal Data Protection Act (DPDPA), and the General Data Protection Regulation (GDPR). This role is crucial in ensuring our organization's compliance with data protection regulations and maintaining the highest standards of data privacy
Job details
Job Title: Data Privacy
Division: Marketing Information Security
Years of Experience : Minimum 1 - 3 years
Education : Bachelor’s degree in Information Technology, Computer Science, Law or a related field.
Full-time
Permanent Role
Key responsibilities-
1. Data Privacy Compliance:
Ensure compliance with ISO 27701:2019, DPDPA, GDPR, and other relevant data privacy laws and
regulations.
Assist in the development, implementation, and maintenance of data privacy policies and procedures.
Conduct regular audits and assessments to identify areas of non-compliance and recommend corrective
actions.
2. Technical Expertise:
Implement and manage encryption and data masking techniques to protect sensitive information.
Conduct technical privacy risk assessments to identify and address potential vulnerabilities.
Write Business Requirement Documents (BRDs) for the development and enhancement of privacy tools
and technologies.
Collaborate with IT and development teams to ensure privacy-by-design principles are integrated into
systems and applications.
Conduct privacy impact assessments (PIAs) and data protection impact assessments (DPIAs) for new
projects and initiatives.
Govern privacy settings for cloud environments and third-party applications.
Develop and maintain data inventories and data flow diagrams to map the movement of personal data
within the organization.
Utilize anonymization and pseudonymization techniques to protect personal data while enabling data
utility.
Ensure secure data transfer protocols are in place for data sharing and processing activities.
Identify and evaluate data privacy risks and provide recommendations to mitigate them.
Monitor data processing activities to ensure they comply with data protection requirements.
4. Data Subject Rights:
Manage and respond to data subject requests (DSRs) and other rights requests under GDPR and DPDPA.
Ensure timely and accurate responses in compliance with legal requirements.
5. Training and Awareness:
Develop and deliver training programs to raise awareness of data privacy requirements across the
organization.