Manager - Data Privacy Risk

TerraPay · Bengaluru

  • Experience5–8 yrs
  • SalaryNot disclosed
  • Work modeonsite
  • Levelsenior
  • Posted18 Sept 2026

About TerraPay

TerraPay is hiring in Bengaluru in financial services. This role looks for around 5+ years of experience.

Skills

  • privacy governance
  • GDPR
  • UK GDPR
  • India's DPDP Act
  • privacy risk management
  • Privacy Impact Assessments
  • Data Protection Impact Assessments
  • regulatory compliance
  • data protection compliance

The role

A data privacy risk manager at a global payments infrastructure company establishes privacy governance, manages GDPR and data protection compliance, and conducts privacy risk assessments. The role also oversees regulatory compliance and stakeholder advisory across regulated financial services operations.

Full job description

About TerraPay

TerraPay is a leading global payments infrastructure company connecting banks, fintechs, digital wallets, money transfer operators, and businesses through a secure and scalable global payments network. Operating across 150+ markets, TerraPay enables seamless cross-border money movement through innovative payment solutions and robust financial infrastructure. As TerraPay continues to scale globally, we are looking for a highly driven Data Privacy Risk Manager to establish and lead our data privacy function.

Role Overview

We are seeking a highly motivated Manager - Data Privacy Risk who can establish, own, and mature TerraPay's data privacy framework. This role will operate as an Individual Contributor initially and will be responsible for driving privacy governance, regulatory compliance, privacy risk management, and stakeholder engagement across the organization.This is a unique opportunity to build the privacy function from the ground up in a fast-growing global fintech environment.

Requirements

Data Privacy Governance & Compliance

Establish, maintain, and continuously enhance the organization's Data Privacy Management FrameworkDevelop and implement privacy policies, procedures, standards, and governance controlsEnsure compliance with GDPR, UK GDPR, India's DPDP Act, and other applicable global privacy regulationsMonitor regulatory developments and assess their impact on business operationsMaintain privacy documentation, governance records, and compliance evidence

Privacy Risk Management

Identify, assess, monitor, and mitigate privacy and data protection risks across the organizationConduct Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs)Evaluate privacy risks associated with new products, services, technology implementations, and third-party engagementsRecommend practical risk mitigation strategies and oversee remediation effortsDevelop privacy risk reporting and monitoring mechanisms for leadership review

Data Protection Operations

Manage Data Subject Rights Requests (DSARs), ensuring timely and compliant responsesLead investigations involving privacy incidents and personal data breachesCoordinate root cause analysis, corrective actions, and regulatory reporting requirements where applicableMaintain Records of Processing Activities (ROPAs) and other privacy compliance artifacts

Stakeholder Management & Advisory

Partner closely with Legal, Compliance, Risk, Information Security, Product, Technology, Operations, HR, and Business teamsAct as a trusted advisor on privacy and data protection mattersProvide clear, practical, and risk-based guidance to internal stakeholdersBuild strong working relationships across functions to drive privacy initiatives effectivelySupport discussions with auditors, regulators, and external compliance stakeholders

Privacy Awareness & Training

Develop and deliver privacy awareness and training programsPromote a strong culture of privacy and responsible data handlingSupport ongoing education initiatives to improve organizational understanding of privacy obligations

Program Development & Continuous Improvement

Build and mature TerraPay's privacy operating model from the ground upEstablish governance forums, reporting dashboards, and privacy metricsChampion privacy-by-design and privacy-by-default principles across business and technology initiativesDrive continuous improvement and transformation initiatives to strengthen privacy controls and governance

Required Qualifications

Bachelor's degree in Law, Compliance, Information Security, Risk Management, Business Administration, or a related discipline5-8 years of experience in Data Privacy, Data Protection, Privacy Risk Management, Information Governance, Compliance, or related functionsStrong knowledge of GDPR, UK GDPR, DPDP Act, and global privacy frameworksExperience conducting DPIAs, privacy risk assessments, compliance reviews, and governance activitiesStrong understanding of privacy risk management and regulatory compliance requirementsExperience working within highly regulated industries such as fintech, payments, banking, financial services, or consultingExcellent stakeholder management, communication, and influencing skillsAbility to work independently and build a function from scratchStrong analytical, problem-solving, and decision-making capabilities

Preferred Qualifications

Professional certifications such as CIPP/E, CIPM, CIPT, CDPSE, or equivalentExperience supporting privacy programs within fintech, banking, payments, investment banking, or consulting organizationsExperience interacting with regulators, auditors, and external compliance stakeholdersFamiliarity with privacy management and governance platforms such as OneTrust, TrustArc, Archer, ServiceNow GRC, or similar toolsExposure to operational resilience, third-party risk management, and information governance frameworksExperience operating within global and multi-jurisdictional regulatory environments

What Success Looks Like

Establishment of a scalable and sustainable Data Privacy Governance FrameworkEffective identification, assessment, and mitigation of privacy risks across the organizationStrong compliance with applicable global privacy regulationsIncreased privacy awareness and accountability across business and technology functionsSuccessful integration of privacy-by-design principles into products, services, and operational processesTrusted advisor status among senior leadership and key stakeholdersMeaningful contribution to TerraPay's governance, risk management, and growth objectives. Experience implementing or operationalising privacy frameworks from inception is highly desirable

Benefits

Competitive compensation packageOpportunity to work with a truly global payments company operating across 150+ marketsExposure to leading banks, fintechs, stablecoin issuers, and payment ecosystems worldwide25 days annual leave plus public holidays and birthday leaveComprehensive healthcare benefitsCareer development opportunities within a fast-growing global fintech organisation