Mekhala Gangurde
Mekhala Gangurde

Privacy and Technology Lawyer

Actively looking · Member since 16 Sep 2026
Message
Location
Dublin, Ireland
Desired salary
Unspecified
Work preference
Remote Only
Experience level
Mid

About

Professional summary

I am a privacy and technology lawyer with experience advising clients and technology-driven organisations on global data protection, GDPR, ePrivacy, technology contracts, AI governance, and regulatory risk.

I translate complex privacy and digital-regulation requirements into practical policies, contractual protections, compliance processes, and risk mitigations. I work closely with legal, product, technology, security, HR, and business stakeholders.

I have hands-on experience with DPIAs, TIAs, LIAs, RoPAs, data mapping, DSARs, privacy risk assessments, vendor due diligence, Privacy by Design, DPAs, and SCCs. I also support privacy programme development, governance documentation, audit readiness, and incident response.

My work includes advising on AI governance, responsible AI, the EU AI Act, data governance, and technology-related regulatory developments. I conduct legal and comparative regulatory research and turn findings into commercially focused recommendations.

I have supported organisations across multiple jurisdictions and industries, including technology, digital-platform, and data-driven businesses. I am particularly interested in global privacy law and SaaS and technology environments.

I am completing an LL.M. in Intellectual Property and IT Law and am preparing to sit the IAPP CIPP/E examination in 2026.

Skills

20 capabilities

Experience

Career history

Data Protection Analyst HewardMills Global DPO

I provide client-facing privacy and data protection advisory services across multiple industries and more than 70 jurisdictions. I partner with legal, technology, security, HR, and business stakeholders to convert privacy obligations into practical compliance solutions.

I conduct and support DPIAs, TIAs, LIAs, privacy risk assessments, RoPA reviews, and data-mapping exercises. I review DPAs, SCCs, supplier privacy provisions, and technical and organisational measures, identifying contractual and third-party risks and supporting mitigation.

I help embed Privacy by Design and Privacy by Default into technologies, systems, products, and business processes. I also maintain privacy policies, procedures, playbooks, data inventories, and governance documentation.

My work includes DSAR support, personal data breach and incident response, AI governance and data-use assessments, AI inventories, and monitoring GDPR, EDPB, ePrivacy, and international privacy developments.

Data Protection & Privacy Trainee HewardMills Global DPO

I supported privacy advisory and compliance programmes through data mapping, RoPA maintenance, DPIAs, TIAs, LIAs, DSAR-related work, and privacy risk assessments.

I assisted with DPAs, SCCs, vendor privacy assessments, and technical and organisational measures, identifying contractual and third-party privacy risks and supporting remediation activities.

I supported Privacy by Design initiatives with legal, security, technology, and operational teams. I prepared privacy policies, procedures, assessment documentation, and governance records for accountability, audit, and client assurance purposes.

I conducted research on GDPR, EDPB guidance, ePrivacy, international privacy developments, and the EU AI Act, building practical experience in AI governance, data governance, and responsible technology.

Research Fellow Center for AI and Digital Policy (CAIDP)

I conducted comparative research across more than 50 jurisdictions covering privacy, AI regulation, cybersecurity, communications, and digital governance.

I analysed emerging regulatory frameworks affecting AI systems, software products, digital platforms, data governance, and technology risk management.

I contributed to policy briefs and regulatory submissions by synthesising complex legal and regulatory developments into clear analysis and practical recommendations.

Legal Associate Delta 4 Commerce

I provided client-facing legal and regulatory advice on data protection, ePrivacy, digital platforms, technology products, and governance requirements. I translated complex regulatory requirements into practical and commercially focused recommendations.

I reviewed and negotiated commercial, technology, and vendor agreements, assessing contractual, regulatory, privacy, and operational risks and supporting appropriate risk allocation.

I advised on compliance requirements affecting digital products, marketing technologies, and online platforms. I also conducted regulatory and compliance risk assessments and coordinated with external counsel on technology, intellectual property, commercial, and regulatory matters.

I supported dispute and regulatory matters through legal research, issue analysis, document review, and stakeholder coordination.

Education

Learning history

University College Dublin

LL.M., Intellectual Property & IT Law

Relevant modules included Data Protection Governance, Data Protection & Privacy, AI Regulation, Cybersecurity Law, and Online Regulation.

Symbiosis Law School, Hyderabad

BBA LL.B.

This professional hasn’t added portfolio projects yet.

This professional hasn’t listed any services yet.

People also viewed

All talent ›
Jobs Talent AI Tools Salaries
Menu