Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
Work Availability
Timeline
Generic
Anuj Suman

Anuj Suman

Data Privacy Consultant
Bengaluru

Summary

With over four years of dedicated experience as a Data Privacy Consultant, I possess a deep understanding of privacy governance, risk, and compliance across various industries. My expertise is backed by prestigious certifications such as CIPP/E, ISO 27701 PIMS Lead Implementer, and OneTrust Fellow of Information Privacy (FIP), highlighting my unwavering dedication to the field. My technical skills are showcased through my adeptness in Privacy Risk Assessments, PIA/DPIA, Data Mapping, and Cookie Consent Management. Additionally, I am proficient in TPRM, Technology Risk & Compliance, Consent & Preference Management, Privacy Rights Automation, and Policy/Notice Management. I excel in leading projects, developing tailored solutions for clients, and engaging with executive-level stakeholders to align business objectives with rigorous global data protection regulations.

Overview

8
8
years of professional experience
3
3
Certifications

Work History

Senior Associate

Grant Thornton
01.2023 - Current
  • Designed and implemented an end-to-end PIA/DPIA process for an insurance client, including attributes, inventory records, templates, conditional logic, risk library, workflows, stakeholder notifications, and Power BI insights dashboards.
  • Assessed over 600 domains (insurance and healthcare clients) for cookie compliance (GDPR/CCPA), covering banners, preference centers, tag management, geolocation, and consent verification; delivered remediation summaries and automated reports via Power BI.
  • Developed a Consent and Preference Management solution for a healthcare client to track and record user consent in compliance with regulations.
  • Conducted privacy program audits for a cybersecurity client across cookie, consent, and PIA/DPIA workstreams.
  • Strengthened privacy posture for a healthcare client through Third-Party Risk Management (TPRM) and Third-Party Due Diligence assessments.
  • Contributed to business growth through proposals and GTM decks.
  • Led privacy training and onboarding programs, upskilling team members, and new recruits.
  • Drove team engagement via Blended Brew Breaks and a monthly GPTW newsletter.
  • Created knowledge playbooks, automated website assessments (Python and Postman API), and developed a capability tracker for resource utilization and performance.

Consultant

Ernst & Young
05.2021 - 12.2022
  • Delivered data mapping, DPIAs, ISO 27001 audits, and GRC assessments, enhancing client compliance.
  • Led PDPA readiness mapping in OneTrust, aligning services with regulatory standards.
  • Assessed privacy posture via manual data discovery in OneTrust, documenting risks and remediation.
  • Trained stakeholders on compliance practices, improving risk awareness. Updated privacy policies for an NBFC, closing RBI compliance gaps.
  • Advised a data analytics firm on GDPR breach response roles and responsibilities.

Intern

Unacdemy
06.2020 - 02.2021
  • Executed classroom learning programs for MBA aspirants, managing content, speakers, and schedules.
  • Delivered virtual sessions tailored to audience needs, ensuring impactful engagement.
  • Collaborated on content strategy, including titles, descriptions, and formats suited to target profiles.
  • Promoted session highlights on social media, boosting visibility, and audience reach.

Transaction Risk Investigator

Amazon
07.2017 - 01.2018
  • Validated transactions on Amazon.com within the Buyer Risk domain to determine customer legitimacy.
  • Created risk analysis reports, mapping transactions against defined risk metrics.
  • Performed continuous monitoring to detect incidents such as unauthorized transactions and fraudulent account creation.
  • Ensured protection of customer personal and sensitive data, strengthening account security and compliance.

Education

MBA - Digital And Telecom Management

Symbiosis Institute of Digital And Telecom Management
Pune, India
04.2001 -

Bachelors of Engineering - Information Technology

CMRIT
Bengaluru, India
04.2001 -

Skills

Data Privacy & Compliance: GDPR, CCPA, PDPA, ISO 27701, Data Governance, Regulatory Gap Assessments, Privacy Risk Assessments

Certification

CIPP/E

Accomplishments

  • Collaborated with team of 4 in the development of Website Assessment Automation Process
  • Achieved Collaboration award through effectively helping with delivering quality client enagements.

Work Availability

monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Senior Associate

Grant Thornton
01.2023 - Current

Consultant

Ernst & Young
05.2021 - 12.2022

Intern

Unacdemy
06.2020 - 02.2021

Transaction Risk Investigator

Amazon
07.2017 - 01.2018

MBA - Digital And Telecom Management

Symbiosis Institute of Digital And Telecom Management
04.2001 -

Bachelors of Engineering - Information Technology

CMRIT
04.2001 -
Anuj SumanData Privacy Consultant