Consultant | Third Party Risk Management | Pune | Cyber Strategy & Transformation
Deloitte
Deloitte
Join Deloitte's Cyber Strategy & Transformation team as a Consultant in Pune, India. This role offers a unique opportunity to shape the future of the region and the world, working alongside leading professionals in a dynamic environment. Embrace a culture that fosters collaboration, innovation, and impactful contributions.
Deloitte is committed to helping you unleash your full potential. We believe in bringing your authentic self to work every day, combining your drive with our purpose to create a perfect platform for growth and making a significant impact.
As a Consultant in our Cyber team, you will be instrumental in building and maintaining strong client relationships, consistently exceeding expectations. Your responsibilities will include:
- Conducting Information Security Management System (ISMS) or Third-Party Risk Assessments. - Liaising effectively with clients and managing stakeholder expectations. - Collaborating with client teams across departments, including compliance, auditing, and regulatory bodies, to identify and document requirements. - Performing comprehensive risk assessments and audits covering people, processes, and technology. - Identifying gaps, observations, risks, and opportunities for improving policies, processes, procedures, and standards. - Documenting information security risks, recommendations, and compensating controls in detailed assessment and audit reports.
We are seeking individuals with a foundational understanding of third-party/vendor/supplier risk management and knowledge of data protection and privacy risks associated with third parties. Essential qualifications include:
- A Bachelor's degree in Computer Science, Information Technology, or a related field. - A minimum of 2 years of relevant experience in IT Audits or Cloud Security. - Mandatory experience in Cyber Third-Party Risk Management (TPRM), ranging from 1 to 7 years. - Proficiency in written and verbal communication, documentation, and presentation skills. - A highly motivated attitude and eagerness to work in both local and global settings.
Additional preferred qualifications include experience with ISO22301 implementation and audits, as well as relevant certifications like CBCI, CBCP, ISO22301 LI or LA, Offensive Security Certified Professional, CISA, CISSP, CISM, CEH, or ISO27001. Experience in Infrastructure/Application Security, IT Audit, and Information Risk Management is also highly valued.
Deloitte
Cybersecurity