Manager | CISSP | Mumbai | Cyber Strategy & Transformation
Deloitte
Deloitte
Join our dynamic Cyber Strategy & Transformation team in Mumbai as a Manager, where you'll play a pivotal role in safeguarding organizations against cyber threats and protecting critical assets. We are dedicated to building secure, vigilant, and resilient enterprises by embedding cyber risk management into the core of strategy development and enabling new opportunities.
This role is ideal for a seasoned cyber security professional with extensive experience in securing critical infrastructure and operational technology (OT) environments, particularly within the energy sector. You will be instrumental in shaping cybersecurity strategies, enhancing application security, reviewing the Software Development Life Cycle (SDLC), managing risks, ensuring compliance, conducting architecture reviews, and implementing robust security controls.
Develop and execute comprehensive cybersecurity strategies aligned with business goals and operational needs. Conduct thorough cybersecurity maturity assessments and create strategic roadmaps for improvement. Define and refine security policies, standards, procedures, and governance frameworks. Provide expert guidance on digital transformation and smart grid initiatives. Perform detailed cybersecurity risk assessments for both IT and OT environments. Collaborate with Application Development teams to address vulnerabilities, threats, and security gaps. Conduct architectural reviews for new projects and technology deployments to ensure security integration. Support enterprise risk and compliance management activities. Assist with compliance initiatives related to IEC 62443, NIST Cybersecurity Framework, ISO 27001, NIST SP 800-82, and National Critical Infrastructure Protection guidelines. Oversee cybersecurity audits and track remediation efforts. Engage with plant operations, engineering, IT teams, and business leadership. Offer cybersecurity advisory services to project teams and business units. Present security risks and strategic recommendations to senior management and client stakeholders.
A Bachelor's degree in Engineering, Computer Science, Information Security, or a related field is required. We are looking for 8-10 years of cybersecurity experience, with at least 3-5 years focused on technical project management and vulnerability assessments. Demonstrated experience in securing critical infrastructure environments is essential. Proven expertise in conducting cybersecurity assessments and architecture reviews is expected. Professional certifications such as CISSP, CISM, or ISO 27001 Lead Implementer/Auditor are highly desirable. Exceptional analytical and problem-solving abilities. Outstanding stakeholder management and communication skills. Ability to influence senior leadership and operational teams effectively. Strong proficiency in report writing and presentation delivery. Capability to lead client engagements and manage cybersecurity workstreams independently.
Deloitte
Information Technology & Services