Implement retention & disposal controls (schedules, holds, verification of deletion) and align backups/archives with policy.
Assess third-party and SaaS data risks (contracts, DPAs, data flow reviews) and track remediation with vendors and owners.
Produce dashboards and KPIs/KRIs (coverage, data classification completeness, DLP precision, access review closure, incident MTTR).
Create and maintain documentation & training (standards, playbooks, runbooks, onboarding materials) and brief stakeholders regularly.
Requirements
Bachelors in computer science, Information Security, IT and equivalent hands‑on experience.
Certifications : ISO/IEC 27701 Lead Implementer/Auditor , CISSP, CIPM and any relevant certifications
Clear written and verbal communication
4+ years in information security with at least 2 years focused on data security/privacy (data discovery, classification/taxonomy, DLP, masking/tokenization, retention/disposal, DPIA/PIA, RoPA).