EA - IT - Information Security (CISSP) - Manager - Mumbai

Deloitte

8–12 yrs Mumbai, New Delhi, Pune, Bengaluru Full Time Hybrid (office + remote)
Deloitte logo
Posted : 1 week ago
Actively hiring

Job description

Join our dynamic IT Information Security team as a Manager in Mumbai, responsible for enhancing employee experience through robust application management. This role is key to developing and maintaining critical applications within Deloitte's Shared Services India LLP.

We are looking for a skilled professional to oversee vital security functions, ensuring the integrity and protection of our information assets. This position offers a challenging yet rewarding environment to contribute to a leading global professional services organization.

Responsibilities

Manage client security assessments and ensure accurate due diligence responses. Oversee security requirements within customer contracts and agreements. Maintain and update information security policies, standards, and governance frameworks. Ensure adherence to ISO 27001, NIST, privacy regulations, and other compliance requirements. Lead vulnerability management, penetration testing, and remediation initiatives. Manage cybersecurity incidents, including investigation, recovery, and reporting. Conduct thorough security architecture reviews and provide recommendations. Supervise cloud and infrastructure security controls and overall security posture. Collaborate with technology teams to identify and mitigate cyber risks effectively. Maintain essential audit evidence, security documentation, and compliance records. Deliver comprehensive security awareness, cyber resilience, and training programs. Monitor key security metrics, risks, incidents, and compliance status proactively.

Qualifications

A minimum of 8 to 12 years of experience in Information Security and Cyber Security is essential.

Preferred certifications include CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer.

Demonstrated experience in MSA review and handling client security questionnaires is required.

Strong background in Information Security, Cybersecurity, Risk, or Governance is a must.

Solid knowledge of ISO 27001, NIST, vulnerability management, and incident response protocols is expected.

Experience in cloud security, security architecture, threat modeling, IAM, and security operations is beneficial.

Understanding of privacy, third-party risk, and audit requirements is necessary.

Familiarity with AI security, Generative AI governance, and technology risk management is a plus.

Proven ability to independently manage multiple security initiatives and meet deadlines is crucial.

Experience working in Multinational Corporations is preferred.

A Bachelor’s degree in Information Technology, Computer Science, or a related field is required.

Essential Skills

Information SecurityCyber SecurityCISSPCISMCISACRISCISO 27001 Lead AuditorISO 27001 ImplementerMSA reviewClient security questionnairesRisk ManagementGovernanceNISTVulnerability ManagementIncident ResponseCloud SecuritySecurity ArchitectureThreat ModelingIAMSecurity OperationsPrivacyThird-party riskAudit requirementsAI securityGenerative AI governanceTechnology Risk Management

Highlights

  • Actively hiring

More Details

RoleEA - IT - Information Security (CISSP) - Manager - Mumbai
Employment TypeFull Time, Hybrid (office + remote)

About the Company

Deloitte logo

Deloitte

IT Consulting

EA - IT - Information Security (CISSP) - Manager - Mumbai at Deloitte | SkillMX | SkillMX