Assistant Manager | ISMS | Delhi | Cyber Strategy & Transformation
Deloitte
Deloitte
Join Deloitte's Cyber Strategy & Transformation team as an Assistant Manager in Delhi. You will be instrumental in helping organizations safeguard their digital assets and build resilience against cyber threats. This role focuses on embedding cyber risk management into strategic development, enabling effective handling of information and technology risks to unlock new opportunities.
As a key member of our Cyber Risk team, you will consult with clients on crucial cybersecurity matters. Your expertise will guide engagements covering risk management, governance, compliance, security assessments, and technology risk advisory. You'll collaborate with clients and internal teams to pinpoint risks, enhance security postures, implement remediation strategies, and deliver impactful cybersecurity solutions.
Responsibilities include developing and implementing cybersecurity governance and risk management frameworks, conducting thorough risk assessments to identify and mitigate security gaps, and performing maturity assessments using industry-standard frameworks like NIST CSF, ISO 27001, and COBIT.
You will lead ISO 27001 ISMS implementation and compliance efforts, conduct Third-Party Risk Management assessments, and execute IT/OT security assessments and Information Systems audits. Additionally, you'll evaluate application security practices, support PCI DSS assessments, and ensure adherence to regulatory requirements such as RBI, SEBI, and IRDAI.
Further duties involve reviewing cloud security controls across major platforms (AWS, Azure, Google Cloud), managing assigned workstreams, mentoring junior team members, ensuring timely project delivery, and cultivating strong client relationships.
Candidates should possess a Bachelor’s degree in Computer Science, Information Security, Engineering, or a related discipline. A minimum of 4 to 6 years of relevant experience in Cybersecurity Consulting, GRC, Risk Advisory, or Information Security is required.
Essential skills include a strong understanding of cybersecurity frameworks such as NIST, ISO 27001, COBIT, and PCI DSS. Excellent analytical, communication, stakeholder management, and problem-solving abilities are crucial for success in this dynamic consulting environment. Professional certifications like CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, ITIL, or PCI QSA are highly preferred.
Deloitte
Cybersecurity