
10+
Years in privacy
Privacy and cybersecurity, from advisory into product.
120
Engagements
Client engagements delivered at Ernst and Young, KPMG and Deloitte.
10+
Countries
Milestone privacy projects across India, the UAE, Switzerland, Brazil, Spain, Germany, France, the USA, Canada and the UK.
What we build
IQWorks is an AI-native platform for privacy, compliance and cyber governance. It finds personal data across an enterprise estate, classifies it, and runs the compliance work that follows.
The short version
I spent over ten years in privacy and cyber strategy consulting, most recently as an Associate Director at Deloitte, and before that at KPMG and EY. Around 120 client engagements, and milestone privacy projects in more than ten countries. It was the same problem seen from the advisory side: help an enterprise understand what it is obliged to do, map where its data actually sits, write the programme, and then watch how much of it survived contact with everyone's day job.
One gap kept repeating. A RoPA that was accurate on the day it was signed off and stale a quarter later. A consent notice that matched the law but never quite matched the website. A DPDP readiness plan that needed a dozen people to keep current. The advice was rarely the weak part. The operating model underneath it could not carry the advice.
IQWorks is where I stopped writing the recommendation and started selling the thing that runs it. I lead business and go-to-market: the consulting firms and system integrators who deliver privacy programmes on our platform, and the enterprise accounts we serve directly across India and the Gulf. Computer science first, then an MBA, which turns out to be a useful combination when the buyer sits in legal and the blocker sits in engineering.
Certifications
- ISO 27701:2019 Lead Auditor, Privacy Information Management
- ISO 27001:2013 Lead Auditor, Information Security Management
- ISO 22301:2019 Lead Auditor, Business Continuity Management
What I spend my time on
Partnerships and alliances
Consulting firms, system integrators and advisory practices who deliver privacy programmes and want a platform underneath them instead of another spreadsheet. I came from that side, so I know what a delivery team needs.
Enterprise accounts
Privacy, legal and security teams from the first conversation through to a deployment that is genuinely in use, across India and the Gulf. DPDP here, PDPL there, GDPR wherever the customers are.
Evidence an auditor accepts
Lead Auditor certified across privacy, security and continuity management. Most programmes come apart on what can be shown, so I push that question early.
Where to go next
Three ways forward, in order of how much of your time they cost.