Job description
Job Description: Data Privacy Auditor (GDPR)
Location: Pune
Contract: 6 Months (Possible Full-Time Hire)
Urgent Requirement
We are looking for an experienced Data Privacy Auditor with strong expertise in GDPR and Information Security Compliance. The candidate will be responsible for conducting comprehensive audits across applications, APIs, and IT infrastructure to ensure adherence to regulatory standards and internal security policies.
Key Responsibilities
- Conduct end-to-end security and privacy compliance audits for applications, APIs, and supporting infrastructure.
- Evaluate system configurations, access controls, encryption mechanisms, data flows, and hosting environments.
- Review SDLC processes, secure coding practices, and change management workflows.
- Assess compliance with key standards including GDPR, ISO 27001, NIST, NESA, PCI-DSS, and internal IS policies.
- Identify control weaknesses, non-compliance areas, and potential risks.
- Prepare detailed audit reports with findings, risk ratings, and recommended corrective actions.
- Provide clear, prioritized remediation guidance to technical and business teams.
- Collaborate with IT, development, and application owners to validate observations and drive resolution.
- Track remediation progress and ensure closure of action items with all stakeholders.