🔒 Data Privacy Team
leading · fast-growing Co-operative Bank
✦ We are inviting applications from ambitious resources for the following location & cadres to participate in our progression journey.
A. Privacy Manager (Minimum 1 no.)
Job Title: Privacy Officer | Department: Data Privacy | Reporting To: Data Protection Officer / AVP Privacy
Role Purpose
The Privacy Officer is responsible for leading the bank's data privacy program and ensuring compliance with the Digital Personal Data Protection Act (DPDPA), 2023, applicable RBI regulations, and the bank's internal privacy governance framework. The role drives the implementation of privacy-by-design principles, oversees privacy risk management, supports business initiatives involving personal data, and ensures effective governance of personal data throughout its lifecycle. The Privacy Officer partners with business, information technology, information security, legal, compliance, and operational teams to establish and maintain an effective privacy management program that protects customer, employee, and third-party personal data while enabling business growth and digital transformation.
Key Responsibilities
- Privacy Governance
- • Develop, implement, and continuously improve the bank's enterprise privacy governance framework.
- • Establish privacy policies, standards, procedures, and operating guidelines aligned with DPDPA and RBI regulatory expectations.
- • Define privacy controls, accountability mechanisms, and governance processes across business functions.
- • Present privacy updates, compliance status, and key risks to senior management and governance committees.
- Regulatory Compliance
- • Lead the implementation and monitoring of compliance with the Digital Personal Data Protection Act (DPDPA), 2023.
- • Assess the impact of new privacy regulations, regulatory guidance, and industry developments on the bank.
- • Coordinate regulatory examinations, audits, and compliance reviews relating to data privacy.
- • Ensure implementation of corrective actions arising from audits and regulatory observations.
- Privacy Risk Management
- • Establish and maintain the privacy risk assessment methodology.
- • Lead Privacy Impact Assessments (PIAs) and privacy reviews for new products, digital initiatives, business processes, and technology implementations.
- • Identify privacy risks and ensure appropriate mitigation plans are implemented.
- • Integrate privacy risk management into enterprise risk management processes.
- Data Governance & Data Lifecycle Management
- • Oversee the maintenance of Records of Processing Activities (RoPA) and enterprise data inventories.
- • Ensure appropriate data classification, retention, archival, and deletion practices are implemented.
- • Promote data minimization, purpose limitation, storage limitation, and accuracy principles.
- • Collaborate with data governance teams to improve personal data management practices.
- Consent & Data Principal Rights
- • Establish governance for consent management processes.
- • Oversee the operational handling of Data Principal rights requests, including: Access requests, Correction and updating of personal data, Erasure requests, Consent withdrawal.
- • Monitor service levels and ensure statutory timelines are achieved.
- • Ensure appropriate documentation and audit trails are maintained.
- Privacy by Design
- • Ensure privacy requirements are integrated into system development lifecycle (SDLC), cloud adoption, AI initiatives, and digital transformation programs.
- • Review architecture, business requirements, and solution designs from a privacy perspective.
- • Promote privacy-by-design and privacy-by-default principles across projects.
- Third-Party Privacy Risk Management
- • Establish privacy requirements for vendor onboarding and procurement.
- • Review contracts and data processing agreements to ensure adequate privacy protections.
- • Lead privacy due diligence for third-party service providers.
- • Monitor vendor compliance with contractual privacy obligations.
- Privacy Incident & Breach Management
- • Lead the privacy response process for personal data breaches.
- • Coordinate with Information Security, Legal, Compliance, and business teams during investigations.
- • Assess breach impact and support regulatory reporting and customer communication where applicable.
- • Track corrective and preventive actions to closure.
- Awareness & Training
- • Develop and execute the bank's enterprise privacy awareness program.
- • Conduct training sessions for employees, management, and business stakeholders.
- • Promote a culture of accountability and responsible handling of personal data.
- Monitoring, Reporting & Continuous Improvement
- • Define and monitor privacy Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs).
- • Prepare periodic reports for senior management, Board committees, and regulators.
- • Monitor privacy control effectiveness and drive continuous improvement initiatives.
Required Qualifications
- • Bachelor's degree in Information Technology, Computer Science, Cyber Security, Law, Business Administration, or a related discipline.
Experience
- • 8-12 years of experience in Privacy, Information Security, Risk Management, Compliance, or Governance.
- • Minimum 3-5 years of experience leading privacy or compliance initiatives.
- • Experience in the Banking, Financial Services, and Insurance (BFSI) sector is strongly preferred.
Required Knowledge
- • Strong knowledge of the Digital Personal Data Protection Act (DPDPA), 2023, and associated rules/guidance.
- • Good understanding of RBI regulations relating to information security, outsourcing, IT governance, digital banking, and operational risk.
- • Knowledge of privacy principles, consent management, and data lifecycle management.
Technical Skills
- • Enterprise Privacy Governance
- • Privacy Risk Assessments
- • Privacy Impact Assessments (PIAs)
- • Data Mapping and Records of Processing Activities (RoPA)
- • Data Retention and Deletion Governance
- • Third-party Privacy Risk Management
Preferred Certifications
- • Certified DPO (DPDPA) from recognized institute / organization
- • Certified Information Privacy Manager (CIPM)
- • Certified Information Privacy Professional (CIPP/A, CIPP/E, or equivalent)
- • Certified Information Systems Security Professional (CISSP)
- • Certified Information Security Manager (CISM)
B. Privacy Analyst (Minimum 3 nos.)
Job Title: Privacy Analyst | Department: Data Privacy | Reporting To: Privacy Manager / AVP Privacy
Role Purpose
The Privacy Analyst is responsible for supporting the bank's privacy governance framework and ensuring compliance with the Digital Personal Data Protection Act (DPDPA), 2023, along with applicable regulatory requirements issued by the Reserve Bank of India (RBI) and internal data protection policies. The role involves identifying privacy risks, conducting privacy assessments, supporting data subject rights management, monitoring compliance, and promoting a privacy-by-design culture across the bank. The Privacy Analyst partners with business, information technology, information security, legal, compliance, and operational teams to establish and maintain an effective privacy management program that protects customer, employee, and third-party personal data while enabling business growth and digital transformation.
Key Responsibilities
- Privacy Compliance
- • Support implementation and ongoing compliance with the Digital Personal Data Protection Act (DPDPA), 2023.
- • Monitor changes in privacy laws, RBI guidelines, and industry best practices, and assess their impact on the bank.
- • Assist in developing, reviewing, and maintaining privacy policies, standards, procedures, and operational guidelines.
- • Support periodic compliance assessments and internal privacy audits.
- Data Inventory & Governance
- • Maintain and update Records of Processing Activities (RoPA) and personal data inventories.
- • Assist business units in identifying personal data flows, processing activities, and lawful purposes for processing.
- • Support data classification and data lifecycle management initiatives.
- Privacy Impact Assessments
- • Conduct Privacy Impact Assessments (PIAs) and support privacy reviews for new products, applications, digital initiatives, and third-party engagements.
- • Identify privacy risks and recommend appropriate mitigation measures.
- • Ensure privacy-by-design and privacy-by-default principles are incorporated into projects.
- Consent & Data Principal Rights
- • Support implementation and monitoring of consent management processes.
- • Coordinate responses to Data Principal requests, including: Access requests, Correction and updating of personal data, Erasure requests, Consent withdrawal.
- • Track request timelines and maintain appropriate records.
- Third-Party Privacy Risk Management
- • Review vendor privacy controls and contractual privacy clauses.
- • Participate in third-party due diligence and privacy assessments.
- • Monitor compliance of outsourced service providers handling personal data.
- Incident & Breach Management
- • Support investigation of privacy incidents and personal data breaches.
- • Coordinate with Information Security, Legal, Compliance, and business teams during incident response.
- • Maintain privacy incident registers and assist in regulatory reporting where applicable.
- • Support post-incident root cause analysis and corrective action tracking.
- Awareness & Training
- • Deliver privacy awareness sessions for employees.
- • Prepare communication materials, guidance documents, FAQs, and training content.
- • Promote a culture of responsible data handling across the organization.
- Monitoring & Reporting
- • Develop privacy dashboards and compliance metrics.
- • Prepare periodic reports for management, Risk Committees, and governance forums.
- • Track remediation of privacy findings and action items.
Required Qualifications
- • Bachelor's degree in Information Technology, Computer Science, Cyber Security, Law, Business Administration, or a related discipline.
Experience
- • 3-7 years of experience in Privacy, Information Security, Risk Management, Compliance, or Governance.
- • Experience in the Banking, Financial Services, or Insurance (BFSI) sector is preferred.
Required Knowledge
- • Strong knowledge of the Digital Personal Data Protection Act (DPDPA), 2023, and associated rules/guidance.
- • Good understanding of RBI regulations relating to information security, outsourcing, IT governance, digital banking, and operational risk.
Technical Skills
- • Privacy Risk Assessments
- • Privacy Impact Assessments (PIAs)
- • Data Mapping and Records of Processing Activities (RoPA)
- • Data Retention and Deletion Governance
- • Microsoft Word, Microsoft Excel, PowerPoint, and documentation skills.
Preferred Certifications
- • Certified DPO (DPDPA) from recognized institute / organization
- • Certified Information Privacy Manager (CIPM)
- • Certified Information Privacy Professional (CIPP/A, CIPP/E, or equivalent)
- • Certified Information Systems Security Professional (CISSP)
- • Certified Information Security Manager (CISM)
- • ISO/IEC 27001 Lead Implementer or Lead Auditor
📩 How to Apply (Data Privacy Team)
Eligible Candidates who fulfill the above criteria can send their updated resume at: recruitment@cosmosbank.in with e-mail Subject as "Resume for Data Privacy"
For attending an Interview, no reimbursement will be made.
💻 Core Banking Solution - Finacle
leading · fast-growing Co-operative Bank
✦ We are inviting applications from ambitious resources for the following location & cadres to participate in our progression journey.
Finacle Customization - Development and Maintenance
Job Title: Finacle Developer | Department: I.T. Department | Reporting To: IT Head / Finacle Lead
Qualification
- • B.E., MCA, BCA
Age
- • 25 - 40 years
Experience
- • 2 to 6 Years - Finacle Customization
Key Skills Required
- • Core Banking Solution - Finacle Development
- • Finacle Customization and Maintenance
- • Banking Domain Knowledge
Click to view detailed job description (PDF)
📩 How to Apply
Eligible Candidates who fulfill the above criteria can send their updated resume at: anesh.nagwekar@cosmosbank.in / recruitment@cosmosbank.in
with e-mail Subject as "Resume for Finacle Customization"
📅 Apply on or before: 31.07.2026
For attending an Interview, no reimbursement will be made.