Consultant | ISO:27001 | Chennai | Cyber Strategy & Transformation
Deloitte
Deloitte
Join our Cyber Strategy & Transformation team in Chennai as a Consultant, specializing in ISO 27001. We help organizations strengthen their cybersecurity posture, ensuring they are secure, vigilant, and resilient.
Deloitte empowers businesses to prevent cyberattacks and safeguard critical assets. Our approach integrates cyber risk management into strategy development for enhanced information and technology risk mitigation. Explore more about Cybersecurity with us.
Implement and maintain ISO 27001 Information Security Management Systems. Assess client security, identifying vulnerabilities and proposing mitigation strategies.
Assist clients with implementing security controls across various domains including change management, incident response, access management, and physical security. Conduct vendor risk assessments to provide a comprehensive view of outsourcing risks. Develop and implement information classification frameworks. Work independently on projects with minimal supervision, utilizing firm methodologies and tools.
Conduct comprehensive security assessments of IT systems, applications, and networks to pinpoint vulnerabilities and associated risks. Perform in-depth risk assessments and gap analyses against frameworks like ISO 27001, NIST CSF, and PCI-DSS.
Possess working knowledge in key security domains such as Information Technology, Information Security, Regulatory Compliance, Security Governance, Risk Management, and Network Security. Demonstrate a strong understanding of information and cyber security controls, and risk management processes. Serve as a technical lead or subject matter expert on security and privacy projects, overseeing design, build, testing, and deployment.
Exhibit the ability to work autonomously on projects with limited guidance. Understand complex business and IT management processes. Possess practical knowledge of firm tools and methodologies applicable to engagements. Manage client relationships effectively at various levels. Contribute to proposal development for additional client work and identify opportunities to enhance engagement profitability.
Play a significant role in business development planning for the service line. Contribute substantially to professional retention and team building, including recruitment and staff development. Drive initiatives in people and practice development. Develop and recommend security policies, procedures, and measures to reduce identified risks. Collaborate with cross-functional teams to embed cybersecurity best practices and resolve vulnerabilities. Stay current with emerging cyber threats, trends, and regulatory requirements.
A Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience, is required. In-depth knowledge of security frameworks such as ISO 27001 and NIST SP 800-53 is essential. While not mandatory, relevant certifications like CISSP, CISA, CEH, or CRISC are highly desirable. Strong analytical, problem-solving, and communication abilities are crucial for success in this role.
Deloitte
IT Consulting