Manager | Security Frameworks and Standards | Bengaluru | Cyber Strategy & Transformation
Deloitte
Deloitte
Join a leading cybersecurity team focused on protecting organizations from cyber threats and safeguarding valuable assets. We emphasize security, vigilance, and resilience, not just in preventing and responding to attacks, but in managing cyber risk to unlock new opportunities. Our approach embeds cyber risk management into the core of strategy development for more effective information and technology risk management.
We seek professionals who embody our purpose by challenging themselves to address critical issues for clients, colleagues, and society. Embrace an environment where innovation and proactive risk mitigation are paramount.
As a Manager in Security Frameworks and Standards, you will be a subject matter specialist in GRC and various security domains. You will establish and maintain risk governance frameworks, facilitate risk identification, and design secure IT architectures. Your role involves developing IT risk management strategies, overseeing third-party risk assessments, and advising on secure cloud architecture across major platforms.
You will also be responsible for building vulnerability management programs, planning and executing IT/OT security audits, and assessing cybersecurity maturity. Leading teams and client engagements, you'll define project scopes and ensure timely delivery according to client specifications, while nurturing strong client relationships.
We are looking for extensive experience in leveraging industry standards and frameworks such as ISO/IEC 27001, COBIT, and ITIL. Proficiency in establishing risk governance frameworks, designing secure IT architectures, and developing IT risk management strategies is essential. Experience in overseeing third-party risk assessments and managing compliance with regulatory frameworks like RBI, SEBI, IRDA, and PCI DSS is required.
Candidates should possess expertise in secure cloud architecture (AWS, Azure, Google Cloud) and have experience building vulnerability management programs. A strong understanding of cybersecurity maturity assessments (e.g., NIST CSF), IT and OT security audits, and secure development lifecycle design is crucial. Excellent analytical, communication, and stakeholder management skills are expected. A B.E./B.Tech (Tier 1/2) or Master’s degree in Information Security, Computer Science, or a related field is required. Relevant certifications are a strong preference.
Deloitte
Cybersecurity