Data Privacy & GRC Analyst Max Healthcare

  • company name Max Healthcare
  • working location Office Location
  • job type Full Time

Experience: 12 - 12 years required

Pay:

Salary Information not included

Type: Full Time

Location: Haryana

Skills: Data Privacy, GRC, Compliance, Risk management, Regulatory Compliance, data mapping, Communication skills, Privacy Impact Assessments, Vendor Risk Assessments, Internal Audits, Privacy Awareness Training, ThirdParty Risk Management

About Max Healthcare

Job Description

We are seeking a dedicated and meticulous Data Privacy & GRC Analyst with 12 years of experience to contribute to our data protection, governance, risk, and compliance initiatives. Your role will involve aiding in the establishment of privacy and GRC frameworks, ensuring adherence to regulations such as GDPR and CCPA, and supporting risk evaluations and internal audits. This position presents a valuable opportunity to advance your career in privacy, risk, and compliance, collaborating closely with seasoned privacy experts and cross-functional teams. Your responsibilities will include assisting in the deployment and supervision of data privacy policies and compliance schemes, backing privacy impact assessments (PIAs/DPIAs) and vendor risk evaluations, managing documentation like Records of Processing Activities (RoPA), staying abreast of regulatory changes, and aiding in policy enhancements. Additionally, you will play a role in addressing Data Subject Access Requests (DSARs), participating in internal audits and compliance assessments related to privacy and risk controls, crafting and delivering privacy training and internal communications, and engaging with Legal, IT, Security, and HR teams on privacy-related issues. Qualifications: - A Bachelor's degree in Law, Computer Science, Information Systems, Business, or a related field. - Minimum of 12 years of experience in a privacy, GRC, compliance, or IT security support capacity. - Fundamental knowledge of data protection regulations such as GDPR and CCPA. - Familiarity with data mapping, classification, and third-party risk principles. - Exceptional attention to detail, effective communication abilities, and a proactive learning attitude. Preferred Skills: - Exposure to GRC tools like OneTrust, TrustArc, or ServiceNow GRC. - Familiarity with privacy frameworks or security standards such as ISO 27001 and NIST. - Certifications like IAPP CIPP/E, CIPM, or ISO 27001 Foundation would be advantageous.,