Position Summary

Job title: Data Privacy – Consultant

About

At Deloitte, we do not offer you just a job, but a career in the highly sought-after risk Management field. We are one of the business leaders in the risk market. We work with a vision to make the world more prosperous, trustworthy, and safe. Deloitte’s clients, primarily based outside of India, are large, complex organizations that constantly evolve and innovate to build better products and services. In the process, they encounter various risks and the work we do to help them address these risks is increasingly important to their success—and to the strength of the economy and public security. By joining us, you will get to work with diverse teams of professionals who design, manage, and implement risk-centric solutions across a variety of domains. In the process, you will gain exposure to the risk-centric challenges faced in today’s world by organizations across a range of industry sectors and become subject matter experts in those areas. Our Risk and Financial Advisory services professionals help organizations effectively navigate business risks and opportunities—from strategic, reputation, and financial risks to operational, cyber, and regulatory risks—to gain competitive advantage. We apply our experience in ongoing business operations and corporate lifecycle events to help clients become stronger and more resilient. Our market-leading teams help clients embrace complexity to accelerate performance, disrupt through innovation, and lead in their industries. We use cutting-edge technology like AI/ML techniques, analytics, and RPA to solve Deloitte’s clients‘ most complex issues. Working in Risk and Financial Advisory at Deloitte US-India offices has the power to redefine your ambitions.

The Team

Cyber & Strategic Risk

We help organizations create a cyber-minded culture, reimagine risk to uncover strategic opportunities, and become faster, more innovative, and more resilient in the face of ever-changing threats. We provide intelligence and acuity that dynamically reframes risk, transcending a manual, reactive paradigm.
Cyber Risk Services (CRS) group is part of the wider Technology Risk Service line within Advisory practice in Deloitte. We help “Fortune 500” clients solve business issues related to risk management, cyber threats, privacy, governance, business resilience & process improvements. Learn more about our Cyber Risk Services practice.
Deloitte’s Cyber Strategy and Governance practice is focused on helping our clients to design and implement transformational programs to reduce and manage cyber threats. We help our
clients to define their overall cyber strategy, design global, pan-enterprise programs that focus on mitigating threats, evaluate their objectives, priorities, strengths and weaknesses and roll out large scale organizational changes to achieve goals.

Work you’ll do

Key responsibilities will be to:
  • Proactively identify and evaluate implementation of privacy initiatives through monitoring and testing. The role will undertake data protection & privacy impact assessments for relevant projects and with various functions and advise on mitigations to identified privacy risks.
  • Work with operations and functional teams to ensure data protection and privacy initiatives are understood and implemented
  • Pro-actively analyze existing operations policies, processes, systems, controls and training material to assess areas for improvement in respect of data protection and make recommendations for change
  • Work with legal team to identify regulatory requirements across jurisdictions related to privacy and data protection.
  • Work with legal and other teams to translate regulatory requirements to process improvements and initiatives and drive through completion
  • Develop and support frameworks for monitoring and reporting ongoing compliance with regulation and standards
  • Support internal privacy and compliance audits
  • Review privacy impact assessments completed by the businesses
  • Manage day-to-day privacy issues, such as data security incident responses, data protection agreement consultation, privacy complaints and resolution, subject access requests, management of Regulatory notifications and International Data Transfers.
  • Research and analysis on developments in privacy law
  • Support in assessing and implementing privacy and/or data protection enhancements and automation tools and providers
  • Undertake privacy and/or data protection implementation and transformation projects and guide clients on their privacy compliance journey
  • Key stakeholder in the development and ongoing management of privacy program across geographies, including the Governance Framework, Policy set, compliance risks, compliance roadmap, training, retention, audit and reporting requirements.
  • Remain up to date with the requirements of legislation and conduct necessary gap analysis processes to identify and help build remedial work programs and highlight ongoing program risks.

Qualifications and Experience
Required:
  • Work experience: 3 to 5 years.
  • Experience in specific industry verticals is preferred and a thorough understandingof privacy and data protection specific compliance requirements within thoseverticals.
  • Understanding and knowledge of industry standards and industry frameworks(e.g., AICPA/GAPP, PCI, OECD, FIPP, APEC Privacy Framework Etc).
  • Understanding of security and privacy laws and regulations both US and Global(e.g., GDPR, MCCs, BCRs, HIPAA, GLBA, PCI, CCPA, CPRA).
  • Experience in performing data privacy risk assessments/privacy impact assessments(PIAs).
  • Experience in developing data protection and privacy strategies and roadmaps.
  • Experience in planning and implementation of data protection and privacy controls.
  • Experience in developing data protection and privacy policies, standards, andprocedures.
  • Experience on Privacy Enhancement and Automation tools such as OneTrust, BigID
  • Experience in creating data privacy notice and consent forms, third party/vendor contracts.
  • Excellent documentation and communication skills.

Preferred
  • B.Tech/B.E/MS/MBA
  • Experience on operating and implementing Privacy Enhancement and Automation toolssuch as OneTrust, BigID
  • Professional certifications related to GDPR, Privacy (e.g., CIPP) or others such as CISA /ISO27001 LA etc are preferable
  • CIPP/CISSP
  • Functional and nonfunctional privacy requirements definition and documentation experience.

#CA-TD
#CA-RR
#CA-KS1
#CA-GS 
Recruiting tips

From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits

At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture

Our diverse, equitable, and inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our client most complex challenges. This makes Deloitte one of the most rewarding places to work. Learn more about our inclusive culture.
Our purpose

Deloitte’s purpose is to make an impact that matters for our clients, our people, and in our communities. We are creating trust and confidence in a more equitable society. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. We are focusing our collective efforts to advance sustainability, equity, and trust that come to life through our core commitments. Learn more about Deloitte's purpose, commitments, and impact.
Professional development

From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.

Requisition code: 181502