Consultant | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation

Deloitte

2–4 yrs Mumbai Full Time Work from office
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join our dynamic Cyber Strategy & Transformation team as a Consultant specializing in Governance and Policy Development. You will play a crucial role in helping organizations navigate the complex landscape of cyber risk, ensuring security, vigilance, and resilience. This position offers the opportunity to embed cyber risk management into the core of strategic development, enabling effective management of information and technology risks.

Deloitte is at the forefront of helping clients prevent cyberattacks and safeguard their valuable assets. We focus on a holistic approach, not just in prevention and response, but in managing cyber risk to unlock new opportunities. Explore more about our Cybersecurity services and make a significant impact.

Responsibilities

This role focuses on supporting clients with privacy and vendor risk consulting. Key responsibilities include assisting in the implementation of privacy and risk management frameworks, ensuring compliance with regulatory standards, and enhancing Third-Party Risk Management (TPRM) programs. You will conduct vendor due diligence, security and privacy assessments, and review vendor-related documentation.

Responsibilities extend to supporting Governance, Risk & Compliance (GRC) initiatives. This involves conducting compliance assessments against various standards, supporting the development of governance documents and policies, and performing control assessments. You will also participate in client workshops, gather and analyze business and technical information, and ensure high-quality project execution through collaboration.

Qualifications

We are seeking a motivated Consultant with 2–4 years of experience in Third-Party Risk Management (TPRM). A strong understanding of data privacy principles, third-party risk management processes, and GRC concepts is essential. Excellent analytical and communication skills are also required.

Ideal candidates will support engagements related to DPDPA, GDPR, and other data privacy compliance. Experience with privacy maturity assessments, DPIAs, BIAs, and developing privacy policies is highly valued. Familiarity with ISO/IEC 27001 and ISO/IEC 27701 is also beneficial. A Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field is mandatory.

Essential Skills

Third-Party Risk Management (TPRM)DPDPAGDPRData PrivacyPrivacy FrameworksRisk ManagementGRCISO/IEC 27001ISO/IEC 27701Vendor Due DiligenceSecurity AssessmentsPrivacy AssessmentsCompliancePolicy DevelopmentData Protection Impact Assessments (DPIAs)Business Impact Assessments (BIAs)Data Flow MappingRecords of Processing Activities (RoPA)Consent ManagementData RetentionData ClassificationData Subject RightsInformation SecurityReport PreparationProject ManagementClient EngagementStakeholder ManagementAnalytical SkillsCommunication Skills

Highlights

  • Actively hiring

More Details

RoleConsultant | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation
IndustryCybersecurity
DepartmentConsulting, Risk Management
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

Consultant | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation at Deloitte | SkillMX | SkillMX