Assistant Manager | Risk Management | Pune | Cyber Strategy & Transformation
Deloitte
Deloitte
Join our Cyber Strategy & Transformation team as an Assistant Manager in Risk Management, focusing on securing digital assets. We empower organizations to prevent cyberattacks and protect valuable information by integrating cyber risk management into strategic development. This role is crucial for effective management of information and technology risks, allowing for the safe exploration of new opportunities.
Learn more about our Cybersecurity initiatives and how we build secure, vigilant, and resilient systems.
This position involves validating security controls and remediation efforts implemented by Development and DevOps teams. You will ensure that identified vulnerabilities are effectively addressed and that applications adhere to Secure SDLC and compliance standards.
Key duties include verifying authentication, authorization (RBAC/ABAC), input validation, secure configurations, and API security. You will also re-test vulnerabilities, confirm remediation success through comprehensive testing scenarios, and conduct security regression tests. Reviewing findings from SAST, DAST, SCA, and Threat Modeling activities, and maintaining detailed security testing evidence are also essential parts of this role.
We are seeking a hands-on Application Security/DevSecOps professional with proven experience in verifying security controls, validating remediation actions, and ensuring secure application delivery. The ideal candidate will collaborate effectively with engineering teams to enhance the overall security posture.
Essential skills include Secure SDLC, OWASP Top 10, Threat Modeling, Application Security Controls, DevSecOps Practices, and Vulnerability Management. Expertise in SAST, DAST, SCA validation, security control verification, remediation testing, and REST API security testing is required. Familiarity with tools like SonarQube, Burp Suite, Jira, and Azure DevOps is beneficial.
Deloitte
Cyber Strategy & Transformation