Consultant | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft

Mumbai

On-site

INR 900,000 - 1,300,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Deloitte Touche Tohmatsu India LLP in Mumbai is seeking a Consultant in Governance and Policy Development to support privacy and vendor risk engagements. You will help implement privacy controls, conduct assessments, and contribute to regulatory compliance efforts.

The role requires 2–4 years of experience in Third-Party Risk Management and a solid understanding of data privacy principles, GRC concepts, and strong analytical and communication skills. Bachelor's degree is required.

Qualifications

  • Experience with privacy and vendor risk engagements.
  • Knowledge of DPDPA, GDPR, and risk management.
  • Understanding of GRC concepts and data privacy principles.

Responsibilities

  • Support privacy and vendor risk consulting engagements.
  • Assist in DPIAs, BIAs, RoPA, and data flow mapping.
  • Develop privacy policies and governance documentation.
  • Review vendor questionnaires and evidence.
  • Prepare assessment reports and client deliverables.
  • Participate in client workshops and meetings.

Skills

Privacy principles
TPRM
GRC concepts
Data flow mapping
DPIA
Policy development
Vendor risk
Contract reviews

Education

Bachelor’s degree

Job description

Consultant | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation
Job requisition ID : 111169
Location: Mumbai
Entity: Deloitte Touche Tohmatsu India LLP

The Team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks.Learn moreaboutCybersecurity

Your Work Profile

We are looking for a motivated and detail-oriented Consultant with 2–4 years of experience Third-Party Risk Management (TPRM). The candidate will support the delivery of privacy and vendor risk consulting engagements, assist clients in implementing privacy and risk management frameworks, and contribute to compliance with applicable regulatory and industry standards.

The ideal candidate should possess a good understanding of data privacy principles, third-party risk management processes, and governance, risk, and compliance (GRC) concepts, along with strong analytical and communication skills.

Key Required Skills:
  • Support DPDPA, GDPR, and other data privacy compliance and implementation engagements.
  • Conduct Applicability Assessments, Gap Assessments, and Privacy Maturity Assessments.
  • Assist in conducting Data Protection Impact Assessments (DPIAs), Business Impact Assessments (BIAs), Data Flow Mapping, and Records of Processing Activities (RoPA).
  • Review business processes to identify personal data processing activities and privacy risks.
  • Assist in developing privacy policies, standards, procedures, notices, and governance documentation.
  • Support implementation of consent management, data retention, data classification, and data subject rights processes.
  • Track remediation activities and assist in preparing privacy compliance reports. Third-Party Risk Management (TPRM)
  • Support the implementation and enhancement of Third-Party Risk Management (TPRM) frameworks.
  • Conduct vendor due diligence and third-party security/privacy assessments.
  • Review vendor questionnaires and supporting evidence.
  • Assist in evaluating vendor risks and recommending mitigation measures.
  • Support contract reviews from an information security and privacy perspective.
  • Track third-party risk remediation activities and maintain assessment records. Governance, Risk & Compliance (GRC)
  • Assist in compliance assessments against DPDPA, ISO/IEC 27001, ISO/IEC 27701, and other applicable regulatory requirements.
  • Support the development and review of governance documents, policies, and standards.
  • Perform control assessments and identify compliance gaps.
  • Prepare assessment reports, presentations, and client deliverables.
  • Participate in client workshops, interviews, and stakeholder discussions.
  • Gather and analyze business and technical information.
  • Prepare project documentation, meeting minutes, trackers, and status reports.
  • Support project planning and timely delivery of assigned workstreams.
  • Collaborate with cross-functional teams to ensure high-quality project execution.
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or related field.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Security Manager (SaaS background) - Reports to CTO - General Insurance
Data Security Manager (SaaS background) - Reports to CTO - General Insurance

datavruti • Chennai

On-site
INR 1,800,000 - 2,500,000
Consultant | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Consultant | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 900,000 - 1,300,000
T&T | Cyber - CST | Deputy Manager | Delhi | TPRM
T&T | Cyber - CST | Deputy Manager | Delhi | TPRM

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Delhi

On-site
INR 1,800,000 - 2,600,000
Sr Consultant - Tech Consulting - National - CNS - TC - Cyber Security
Sr Consultant - Tech Consulting - National - CNS - TC - Cyber Security

EY • New Delhi

On-site
INR 1,400,000 - 2,100,000
T&T | Cyber - DTP | Deputy Manager | Data Privacy | Delhi
T&T | Cyber - DTP | Deputy Manager | Data Privacy | Delhi

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Delhi

On-site
INR 1,500,000 - 2,100,000
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 1,500,000 - 2,100,000
Senior Analyst | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation
Senior Analyst | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Mumbai

On-site
INR 900,000 - 1,500,000
Cyber - DPT | Assistant Manager | Data Privacy
Cyber - DPT | Assistant Manager | Data Privacy

Embarkgcc Services • Bengaluru

On-site
INR 1,500,000 - 2,600,000
T&T | Cyber - CST | Consultant | Bangalore | TPRM
T&T | Cyber - CST | Consultant | Bangalore | TPRM

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Assistant Manager | CISA | Mumbai | Cyber Strategy & Transformation
Assistant Manager | CISA | Mumbai | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Mumbai

On-site
INR 1,500,000 - 2,200,000