Assistant Manager | IT Audits | Bengaluru | Cyber Strategy & Transformation
Deloitte
Deloitte
Join our Cyber Strategy & Transformation team as an Assistant Manager in IT Audits. This role focuses on safeguarding organizations by preventing cyberattacks and protecting valuable assets. We help clients build secure, vigilant, and resilient systems, integrating cyber risk management into strategic development for effective information and technology risk management. Discover more about our Cybersecurity services.
Implement and maintain ISO 27001 based Information Security Management Systems. Assess client information security, identify gaps and risks, and develop mitigation strategies. Assist clients with implementing security controls for change management, incident management, backup, access control, antivirus, SLA monitoring, media handling, and physical security. Conduct vendor risk assessments to provide a comprehensive view of outsourcing risks. Advise clients on developing and implementing information classification frameworks. You will work independently on projects with minimal supervision and utilize firm methodologies.
Conduct thorough security assessments of IT systems, applications, and networks to pinpoint vulnerabilities and risks. Perform comprehensive risk assessments and gap analyses, ensuring compliance with frameworks like ISO 27001, NIST CSF, and PCI-DSS. Possess working knowledge in at least one security domain, including IT, Information Security, Regulatory Compliance, Security Governance, Risk Management, Compliance, Access Control, Network Security, Security Architecture, IT General Controls, or Third Party Risk Management. Demonstrate deep understanding of information and cyber security controls and the risk management process. Serve as a technical lead or subject matter expert on security and privacy implementation projects, overseeing design, build, testing, and deployment. You should have a strong grasp of complex business and IT management processes. Experience in client relationship management and participation in proposal development is expected. Identify opportunities for engagement improvements and contribute to business development plans. Play a key role in professional retention and staff development. Stay abreast of the latest cyber threats, trends, and regulatory requirements. A Bachelor’s degree in computer science, Information Security, or a related field, or equivalent experience, is required. In-depth knowledge of security frameworks such as ISO 27001, NIST SP 800-53, and CIS Controls is essential. Relevant certifications like CISSP, CISA, CEH, or CRISC are highly desirable. Strong analytical, problem-solving, and communication skills are critical for success in this role.
Deloitte
Cybersecurity