Governance, Compliance & Risk Manager
Shape the legal, regulatory, and governance foundations of the company and its products. Translate the DPDP Act 2023 and DPDP Rules 2025 into product design, internal controls, customer commitments, and contractual frameworks.
Where law, product, and accountability meet.
Operate at the intersection of law, compliance, and systems design
Partner with founders, product, and external legal counsel
Build governance frameworks that scale with the company
Convert regulation into practical product requirements
What you'll actually do.
Regulatory & product compliance
- Interpret and apply DPDP Act 2023 and Rules 2025 across products and workflows
- Translate privacy, consent, notice, retention, and breach-response requirements into platform design
- Define compliance requirements for consent management, grievance handling, data principal rights
- Build internal governance mechanisms and review checkpoints for product launches
Governance & risk management
- Build governance frameworks, risk registers, and internal policies
- Identify legal, operational, and reputational risks and drive mitigation
- Support incident-readiness and escalation frameworks for breach response
- Institutionalise disciplined governance practices
Contracts & legal coordination
- Draft and review partnership agreements, customer and vendor contracts, NDAs, T&Cs, privacy notices
- Align contractual commitments with product capability and risk appetite
- Identify high-risk clauses, fallback positions, and governance concerns for negotiation
- Maintain version control, review notes, and contract governance records
Internal counsel coordination
- Primary internal coordinator for legal and compliance matters
- Prepare issue notes, legal summaries, and structured briefs for leadership
- Build discipline around when legal review is required and how advice translates into execution
Policy, documentation & enablement
- Draft internal policies, governance documents, legal templates, compliance checklists
- Prepare customer-facing compliance documentation and DDQ responses
- Improve awareness of privacy, compliance, and contractual obligations across teams
You'll thrive here if this sounds like you.
Strong grasp of data protection, compliance, governance, and contract review
Familiarity with DPDP Act 2023 and Rules 2025 — notice, consent, rights, retention, breach response
Able to convert laws into product requirements and operational documentation
Strong drafting ability across contracts, legal notes, internal policies
Comfortable in early-stage environments where governance structures are still being built
Law degree, compliance background, or privacy certification preferred
Tell us about yourself.
Share a few details and your CV. We read every application — typical response within two weeks.
BUILD THE SYSTEMS
THAT ENABLE PROGRESS.
Partner with ASCENRA to create infrastructure designed for long-term growth.