I am a strategic professional with over 8 years of experience building and automating enterprise-grade privacy programs for global organizations. My career is defined by a mission to bridge the gap between complex global regulations—like GDPR, CCPA, and the Indian DPDPA—and practical business innovation.
"For me, success is not just about achievements but about the impact we create, the knowledge we share, and the connections we build. I strive to leave a legacy that goes beyond job roles – one that empowers, inspires, and transforms."
Corporate Experience
HCLSoftware
Lead – Data Privacy Jan 2025 – Present
Managed end-to-end enterprise privacy operations, executing 250+ contract reviews, RFP/RFI assessments, and 40+ Privacy Risk Assessments (PRAs) for product releases and AI integrations, ensuring 100% SLA adherence and zero regulatory escalations
Architected and launched a centralised Internal Privacy Portal, creating a self-service compliance ecosystem that reduced ad-hoc operational dependency by 40% and accelerated organisation-wide compliance maturity.
Transformed privacy operations by designing a standardised Vendor & AI Intake Framework and a KPI-driven metrics model, enabling data-driven decision-making across all business units.
Led AI Privacy Readiness: Initiating Privacy Risk Assessments (PRAs) specifically for GenAI integrations (ChatGPT, Gemini), ensuring "Privacy by Design" was embedded before product release.
Designed AI Governance Frameworks: Improved internal policies for the secure use of LLMs (Claude, Perplexity), mitigating risks related to data leakage and model training.
Directed incident response and forensic investigations for high-impact privacy incidents (10,000+ records affected), implementing containment and remediation strategies that resulted in zero regulatory escalations.
Spearheaded ISO 27701 (PIMS) readiness and enhanced AI-specific privacy governance frameworks, aligning organisational practices with evolving global regulations and responsible AI principles.
Acted as strategic privacy advisor and cross-functional leader, collaborating with HCLTech and internal stakeholders to embed Privacy by Design and promote a privacy-first culture via executive communications and newsletters.
KPMG Global Services Pvt. Ltd.
Consultant May 2024 – Dec 2024
Guided the design and deployment of a Privacy Operations framework for a financial-sector client, scoping and delivering 7 end-to-end business processes aligned with regulatory requirements.
Deployed a full privacy ecosystem via Securiti AI, covering 4 critical processes: Data Subject Rights, Data Mapping, Cookie Management, and Universal Consent, accelerating client time-to-compliance.
Expanded strategic pitch decks and proposals for TPRM and Privacy Managed Services engagements, directly supporting business development and revenue pipeline growth.
Collaborated with cross-functional client and delivery teams to ensure seamless transition from discovery to implementation, managing stakeholder expectations and milestone tracking throughout.
Wipro Ltd. (Blackstone Account)
Senior Analyst May 2021 – May 2024
Built and scaled a privacy programme from zero, partnering with the DPO to establish governance structures, processes, and a team of 12 privacy analysts delivering full operational readiness within 6 months.
Led training and awareness initiatives for 150+ stakeholders across GDPR/CCPA regulations, internal SOPs, and privacy processes, achieving measurable uplift in organisation-wide compliance culture.
Oversaw PIA/DPIA/ROPA and Data Mapping assessments for 200+ third-party processes and in-built technologies, maintaining live risk reports and driving risk mitigation across all critical workflows.
Negotiated and drafted 50+ Data Processing Agreements (DPAs) and Standard Contractual Clauses (SCCs), ensuring global data transfer compliance and reducing legal exposure.
Evaluated and deployed Securiti AI, OneTrust, and Process Unity, directly influencing the development of a customised internal privacy tool that optimised workflows and reduced manual effort by ~30%.
Infosys BPM Pvt. Ltd. Sep 2020 – May 2021
Associate Analyst
Managed end-to-end privacy operations for internal and external vendor dealings as part of the DPO office, handling RFP responses and cross-stakeholder communication to define service scope and compliance requirements for over 50 internal assignments..
Drafted and negotiated DPAs and executed SCC remediation across Master Service Agreements (MSAs), strengthening contractual data protection standards across the vendor portfolio.
Innodata India Private Limited Dec 2018 – Sep 2020
Lead Associate
Designed and developed a proprietary data model tool to extract and analyse key Terms of Service and Privacy Policy clauses, improving GDPR/CCPA compliance review efficiency for international clients.
Developed a centralised Contract Database for international clients, ensuring ongoing compliance of privacy notices with GDPR/CCPA obligations and governing law requirements, giving 80% accuracy.
Expert in architecting Privacy-by-Design frameworks, conducting high-stakes DPIA/PIA/ROPA assessments, and managing global regulatory standards including GDPR, CCPA, and DPDPA
Specialized in Generative AI Governance, AI Risk Frameworks (DPIA-AI), and prompt engineering for tools like ChatGPT, Gemini, and Claude.
Proven ability to lead high-performing teams of 12+, manage enterprise-wide privacy operations, and handle complex incident responses involving 10,000+ records
CPOS (Certified Privacy Operations Specialist): Delivered structured privacy training.to enable professionals to become industry-ready in privacy awareness
Lead Trainer
Created Udemy courses to train students/professionals globally on compliance and privacy culture at a global scale.
Privacy Tech & Automation: Hands-on proficiency in industry-leading tools such as Securiti AI, OneTrust, and Process Unity to automate DSR/DSAR workflows and cookie consent management.
Contractual & Legal Strategy: Skilled in negotiating Data Processing Agreements (DPAs) and Standard Contractual Clauses (SCCs), as well as supporting sales through RFP/RFI assessments
Privacy Professional Certification | OneTrust | 2023
Expert – PIA & DPIA Automation | OneTrust | 2023
Securiti Fundamentals Certified | Securiti AI | 2024
PrivacyOps Academy Certified | Securiti AI | 2023
Decode the Indian DPDP Act, 2023 | Udemy | 2023
DSARs Made Simple for Compliance Professionals | Udemy
I am actively advancing through the IAPP curriculum to remain at the forefront of global regulatory evolution and AI ethics.
CIPP/E (Certified Information Privacy Professional/Europe) – Exam Eligible / Applied Knowledge
CIPM (Certified Information Privacy Manager) – Exam Eligible / Applied Knowledge
AIGP (AI Governance Professional) – Exam Eligible / Applied Knowledge
Building the legal and analytical mindset behind my privacy leadership.
2013 – 2018 | CGPA: 8.76
Specialization: Developed a rigorous foundation in Corporate Law, Information Technology Law, and Regulatory Compliance.
Focused on the intersection of technology and law. Sharpening the analytical skills for high-stakes risk assessments and contract negotiations
Seth Anandram Jaipuria School, Kanpur
ISC (Class 12) - Science: Focused on logical reasoning and scientific methodology, achieving 76.4%.
ICSE (Class 10): Completed broad academic curriculum with a score of 78.6%.
Find my Resume/CV here.......