Consultant | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation (Pune, IN)
Deloitte
Deloitte
Join our Cyber Strategy & Transformation team as a Cybersecurity Consultant specializing in Security Frameworks and Standards. This role offers a unique opportunity to contribute to critical cybersecurity initiatives, helping organizations bolster their defenses and navigate the evolving threat landscape. If you are passionate about safeguarding digital assets and enhancing cyber resilience, we encourage you to explore this exciting position.
Deloitte is dedicated to empowering organizations to prevent cyberattacks and protect their most valuable assets. We foster a culture of security, vigilance, and resilience by not only focusing on prevention and response but also on managing cyber risk to unlock new opportunities. By integrating cyber risk management into the core of strategy development, we ensure more effective management of information and technology risks. Learn more about our Cyber services at Deloitte.
In this impactful role, you will assess and enhance cybersecurity capabilities across various technology environments. Key responsibilities include evaluating security controls against leading frameworks like NIST CSF, ISO 27001, and CIS Controls, and supporting the development of cyber maturity roadmaps. You will play a vital part in documenting controls, managing evidence, tracking remediation efforts, and driving improvement initiatives. The position also involves evaluating security across identity, endpoint, network, cloud, and application domains, and assessing the effectiveness of preventive, detective, and corrective security controls. You will leverage tools such as Microsoft Sentinel and KQL for control validation and capability assessments, monitor security events, and contribute to broader cyber transformation programs.
Collaboration is key as you'll work closely with technology, infrastructure, cloud, and business teams to implement cybersecurity enhancements. Furthermore, you will support the creation of essential cybersecurity metrics, reporting, dashboards, and executive-level insights, while meticulously maintaining assessment findings, recommendations, and transformation deliverables. A solid understanding of incident-response methodologies and common attack techniques will be instrumental in conducting thorough security control reviews and driving capability improvements.
We are seeking experienced cybersecurity professionals with 2-4 years of proven experience in Cybersecurity, Cyber Risk, Security Controls, Governance, Compliance, or Cyber Transformation. A strong understanding of cybersecurity control frameworks and industry standards, with exposure to NIST CSF, ISO 27001, CIS Controls, or equivalent, is essential.
Proficiency in Microsoft Sentinel and KQL for security analysis, control validation, and cyber capability assessments is required. You should possess hands-on experience in security control reviews, risk assessments, or capability assessments, coupled with knowledge of identity, endpoint, network, cloud, and application security domains. Excellent documentation, reporting, and communication capabilities are paramount for this role.
Candidates should possess a B.E./B.Tech from a Tier 1/2 institution or a Master’s degree in Information Security, Computer Science, or a related field. This position is based in Pune, IN.
Deloitte
Cybersecurity