About Us
JOB DESCRIPTION
SBI Card is a leading pure-play credit card issuer in India, offering a wide range of credit cards to cater to diverse customer needs. We are constantly innovating to meet the evolving financial needs of our customers, empowering them with digital currency for seamless payment experience and indulge in rewarding benefits. At SBI Card, the motto 'Make Life Simple' inspires every initiative, ensuring that customer convenience is at the forefront of all that we do. We are committed to building an environment where people can thrive and create a better future for everyone.
SBI Card is proud to be an equal opportunity & inclusive employer and welcome employees without any discrimination on the grounds of race, colour, gender, religion, creed, disability, sexual orientation, gender identity, marital status, caste etc. SBI Card is committed to fostering an inclusive and diverse workplace where all employees are treated equally with dignity and respect which makes it a promising place to work.
Join us to shape the future of digital payment in India and unlock your full potential.
What's In It For YOU
- SBI Card truly lives by the work-life balance philosophy. We offer a robust wellness and wellbeing program to support mental and physical health of our employees
- Admirable work deserves to be rewarded. We have a well curated bouquet of rewards and recognition program for the employees
- Dynamic, Inclusive and Diverse team culture
- Gender Neutral Policy
- Inclusive Health Benefits for all - Medical Insurance, Personal Accidental, Group Term Life Insurance and Annual Health Checkup, Dental and OPD benefits
- Commitment to the overall development of an employee through comprehensive learning & development framework
Role Purpose
Responsible for coordinating, embedding and monitoring of data protection and privacy compliance in accordance with SBI card polices and procedures and applicable regulations.
Role Accountability
Align business processes and operational practices, and support in preparation, maintenance and rollout data protection policies and procedures as per the Data Privacy act of India and any other Data Privacy law as applicableReview controls to inform, advise and issue recommendations to the business with regards to data protection, privacy including with data protection laws and internal policies and guidelinesFacilitate periodic data protection impact assessmentsSupport the data incident response and data breach notification proceduresSupport 1st line of defense (controllers / processors) and Data Privacy officer(DPO) regarding data protection and privacy management requirements and policies as well as for communication for both data subjects (e.g. customers) and the regulatory authoritiesPromote continuous training to maintain data protection awareness and feedback, and also include protectionOffer consultation once a data breach or other incident has occurred and must be involved in relevant issues in a timely manner and report directly to highest management levelParticipate and represent team in internal and External audits and assessmentsManage privacy related projects including stakeholder update and drive timely and quality deliverablesMonitor marketplace trends and latest experiences on security, audit and control issuesPerform process documentation and compliance adherenceMeasures of Success
Timely and accurate development and monitoring of the Data Privacy programSetup and Increase the maturity of overall Data Privacy ProgramTimely and in-budget completion of data privacy related projects & InitiativesTimely delivery of project plans, milestone updates, presentations, assessment reports etc. to relevant stakeholdersProcess Adherence as per MOUTechnical Skills / Experience / Certifications
Industry-standard certifications such DCPP (DSCI Certified Privacy Professional), DSCI Certified Privacy Lead Assessor (DCPLA),Understanding of regulatory data privacy compliance, Information security or audit background is mustUnderstanding of security controls from a people, process and technology perspectiveKnowledge of standard security processes and guidelinesPCI-DSS, ISO27001 and audit management experienceKnowledge of risk assessments and privacy frameworks such as - NIST, DSCI, ISO, PCI, GDPR, etc.Competencies critical to the role
Stakeholder ManagementTeamwork and CollaborationDetail OrientationMarket AwarenessProcess OrientationQualification
Graduate or advance course in Computer Science or Information Security related areas or any other relevant discipline
Preferred Industry
FSI
Skills Required
Gdpr, Iso27001, audit management, Information Security, nist