Data Security Consultant

Unthinkable Solutions

Gurugram District

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

UNTHINKABLE SOLUTIONS LLP in New Delhi / Remote is seeking a Cybersecurity & Compliance Lead to establish and govern information security and data protection practices across the organisation. The role focuses on ISO 27001, DPAs, privacy regulations, and client security assurance.

This governance-focused position will work with leadership to raise security maturity, conduct audits, manage risk, and coordinate responses while engaging clients and vendors.

Qualifications

  • 5+ years in Information Security, Compliance, Risk, or Privacy Governance
  • Experience with software development companies or SaaS organisations
  • Familiarity with SDLC, cloud environments (AWS / Azure / GCP) and modern dev practices
  • Certifications preferred: ISO 27001 Lead Implementer / Auditor, CISM, CISA, CISSP, CDPSE, CIPM

Responsibilities

  • ISO 27001 Compliance Enforcement: ensure teams adhere to policies and continuously improve ISMS
  • DPA Review & Client Engagement: review DPAs and coordinate with clients on changes
  • DPO: single POC for privacy and security communications with clients
  • Project Security Audits: conduct audits across active projects and close gaps
  • Security Awareness & Training: run workshops on secure practices and data handling
  • Ongoing Cybersecurity Advisory: assess security posture and recommend improvements
  • Cyber Insurance Support: assist with insurer questionnaires and evidence gathering

Skills

ISO 27001
DPA review
Privacy regs
DPO
Audits & compliance
Policies & SOPs
Awareness training
Vendor & client compliance

Education

Certifications: ISO 27001 Lead Implementer/Auditor; CISM; CISA; CISSP; CDPSE; CIPM

Job description

UNTHINKABLE SOLUTIONS LLP OPEN ROLE
Cybersecurity & Compliance Lead

ISO 27001 Data Protection Client Assurance Security Governance

Full-Time Contract / Fractional 5+ Years Experience New Delhi / Remote

PROFILE OVERVIEW

We are a custom software development company delivering enterprise-grade web, mobile, desktop, cloud, and AI-enabled solutions to clients across multiple industries. In addition to custom software development, we maintain a portfolio of SaaS products. We are looking for an experienced Cybersecurity & Compliance professional who can establish, govern, and continuously improve our organisation's information security and data protection practices. The ideal candidate should possess strong expertise in ISO 27001, Data Protection Agreements (DPA), privacy regulations, client security compliance, and organisational security governance.

The role is primarily focused on governance, compliance, risk management, and client assurance rather than hands-on penetration testing or security operations.

SKILLS REQUIRED
  • ISO 27001 ISMS governance and implementation
  • Data Protection Agreement (DPA) review and negotiation
  • GDPR, DPDP Act (India) and privacy regulation fluency
  • Acting as Data Protection Officer (DPO)
  • Security audit and compliance assessment
  • Security policy and SOP drafting
  • Awareness training and employee education
  • Vendor and client compliance management Cyber insurance questionnaire support Client-facing communication and documentation
ROLES & RESPONSIBILITIES
  • ISO 27001 Compliance Enforcement Ensure all teams adhere to our ISO 27001 policies and controls. Continuously review and improve the ISMS, identify compliance gaps, and drive corrective actions across the organisation.
  • DPA Review & Client Engagement Review all Data Protection Agreements shared by clients, flag conditions that are not applicable or need modification, and engage clients directly with suggested changes. Ensure project teams comply with all agreed contractual security obligations throughout delivery.
  • Data Protection Officer (DPO) Serve as the single point of contact for all privacy and security communications from clients. Handle inquiries, security questionnaires, audit requests, and coordinate response in the event of any incident or breach.
  • Project Security Audits Conduct regular audits across active projects to verify adherence to security and data protection policies. Identify missing controls and ensure new additions are incorporated on an ongoing basis.
  • Security Awareness & Training Plan and run regular cybersecurity awareness workshops for all employees covering secure development practices, phishing, data handling, password hygiene, and policy updates. Maintain attendance records and training evidence for client audit purposes.
  • Ongoing Cybersecurity Advisory Continuously assess our security posture and recommend improvements to policies, tools, and operational practices. Work with leadership to raise security maturity over time.
  • Cyber Insurance Support Assist during procurement and renewal of cybersecurity insurance. Respond to insurer questionnaires and coordinate the collection of compliance evidence required by insurers.
DESIRED EXPERIENCE
  • 5+ years in Information Security, Compliance, Risk Management, or Privacy Governance
  • Prior experience with software development companies or SaaS organisations
  • Familiarity with SDLC, cloud environments (AWS / Azure / GCP), and modern dev practices
  • Certifications preferred: ISO 27001 Lead Implementer / Auditor, CISM, CISA, CISSP, CDPSE, CIPM, or equivalent
ENGAGEMENT MODELS

We are open to multiple engagement structures. Whether you are looking for a full-time role or a flexible contractual arrangement, we are happy to discuss what works for your situation as long as you are reachable during our standard business hours for meetings, client communications, and any time-sensitive compliance matters.

  • Full-Time Standard employment Full availability
  • Part-Time / Hourly ~3 hrs/day or fixed hours per week
  • Monthly Retainer Fixed hours per month advisory basis

Compensation is structured on an hourly, monthly retainer, or annual CTC basis depending on the model agreed. Business-hours availability is mandatory across all engagement types.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Consultant - Data Protection
Senior Consultant - Data Protection

Meta Infotech • Mumbai

On-site
INR 1,200,000 - 1,800,000
Information Security Manager
Information Security Manager

Shell Infotech • Hyderabad

On-site
INR 180,000 - 300,000
Data Security & Protection Analyst - Digital IT
Data Security & Protection Analyst - Digital IT

Egon Zehnder • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Health Benefits
Accident Insurance
Personal development and training
+3
Senior Data Protection Consultant
Senior Data Protection Consultant

Tsaaro Solutions Pvt. Ltd. • Dadri

On-site
INR 1,800,000 - 2,800,000
Competitive salary
Bonuses based on performance
Training & Certifications
+1
Data Security Manager (SaaS background) - Reports to CTO - General Insurance
Data Security Manager (SaaS background) - Reports to CTO - General Insurance

datavruti • Chennai

On-site
INR 1,800,000 - 2,500,000
Hiring | Data Privacy Consultant - PAN INDIA
Hiring | Data Privacy Consultant - PAN INDIA

2COMS Consulting Pvt. Ltd. • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Data Privacy Consultant / Assistant Manager / Manager
Data Privacy Consultant / Assistant Manager / Manager

Cubical Operations LLP • Mumbai

On-site
INR 600,000 - 1,000,000
Consultant
Consultant

Uniqus Consultech Inc. • Bengaluru

On-site
INR 600,000 - 900,000
Hiring Data Privacy Consultant - PAN INDIA
Hiring Data Privacy Consultant - PAN INDIA

2coms • Bengaluru

On-site
INR 1,200,000 - 2,000,000
IN_Manager_ IT Risk– GCC–Advisory- Bangalore
IN_Manager_ IT Risk– GCC–Advisory- Bangalore

PwC India • Bengaluru

On-site
INR 3,000,000 - 5,200,000