Deputy Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Deloitte
Deloitte
Join Deloitte's Cyber Strategy & Transformation team as a Deputy Manager in Pune. This role is integral to helping organizations fortify their defenses against cyber threats and safeguard critical assets. The team champions a proactive approach to cybersecurity, focusing not just on prevention and response, but on strategically managing cyber risks to unlock new business opportunities.
We aim to embed cyber risk management at the core of strategy development, ensuring more effective oversight of information and technology risks. Discover more about the impactful work of Cyber | Deloitte.
Assess cybersecurity capabilities and evaluate the effectiveness of security controls across diverse technology environments.
Review controls against leading frameworks like NIST CSF, ISO 27001, and CIS Controls, alongside organizational standards.
Identify capability gaps, control deficiencies, and cybersecurity risks, proposing strategic transformation opportunities.
Support the development of cyber maturity assessments and comprehensive capability roadmaps.
Assist with control documentation, evidence management, and remediation tracking for continuous improvement initiatives.
Evaluate key security domains including identity, endpoint, network, cloud, and application security.
Analyze the efficacy of preventive, detective, and corrective security controls.
Leverage Microsoft Sentinel and KQL for robust control validation, capability assessment, and security effectiveness reviews.
Analyze security events and trends to identify opportunities for enhancing control performance.
Contribute to cyber governance, risk management, and assurance activities, and support broader cyber transformation programs.
We seek seasoned cybersecurity professionals with expertise in Cyber Risk, Security Controls, Cyber Capability Development, and Security Technology Enablement to drive cybersecurity transformation.
Candidates should possess 5-8 years of experience in Cybersecurity, Cyber Risk, Security Controls, Governance, Compliance, or Cyber Transformation. A strong understanding of cybersecurity control frameworks such as NIST CSF, ISO 27001, or CIS Controls is essential.
Proficiency in Microsoft Sentinel and KQL for security analysis and control validation is required. Experience in conducting security control reviews, risk assessments, or capability assessments is a must. Familiarity with identity, endpoint, network, cloud, and application security domains is also important.
Excellent analytical, problem-solving, stakeholder engagement, documentation, reporting, and communication skills are vital for success in this role. A B.E./B.Tech (Tier 1/2) or a Master’s degree in Information Security, Computer Science, or a related field is expected.
Deloitte
Information Technology & Services