Manager | Security Frameworks and Standards | Delhi | Cyber Strategy & Transformation

Deloitte

8–10 yrs New Delhi Full Time Work from office
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join our Cyber Strategy & Transformation team as a Manager, focusing on Security Frameworks and Standards. Deloitte empowers organizations to prevent cyberattacks and safeguard valuable assets by fostering security, vigilance, and resilience. We go beyond defense, managing cyber risk to unlock new opportunities and embed security into strategic development.

This role offers a dynamic environment to build and maintain robust risk and governance frameworks. You will guide teams and clients in enhancing their information security posture, identifying vulnerabilities, and implementing effective mitigation strategies.

Responsibilities

Develop, implement, and maintain comprehensive risk and governance frameworks. Guide teams in managing client information security, identifying gaps and risks, and creating effective solutions. Perform security risk assessments for third-party vendors and define TPRM frameworks. Conduct cybersecurity maturity assessments using frameworks like NIST CSF and ISO 27001. Lead ISMS implementation projects based on ISO 27001. Manage risk identification, evaluation, mitigation, and monitoring activities. Deliver actionable insights and improvement roadmaps. Evaluate application security architectures, including SDLC, threat modeling, and secure coding. Plan and execute IT and cyber security audits, leading teams or contributing as a member. Oversee security and cyber strategy projects, guiding teams to ensure timely task fulfillment.

Qualifications

Hold a B.E./B.Tech (Tier 1/2) or Master's degree in Information Security, Computer Science, or a related discipline. Possess 8-10 years of experience in cybersecurity consulting, risk management, and compliance. Demonstrate in-depth knowledge of security frameworks such as NIST, ISO 27001, and COBIT. Understand cloud service models and security controls across AWS, Google Cloud, and Azure. Exhibit strong analytical, communication, and stakeholder management skills. Gain advantage with experience in Business Continuity and Scenario Testing executions. Show strong hands-on experience with ServiceNow IRM or equivalent GRC tooling. Understand control testing methodologies and assurance practices. Familiarity with regulatory frameworks and resilience concepts like DORA and technology risk standards is beneficial. Experience with PCI DSS assessments and gap analysis is required. Understand complex business and IT management processes. Stay updated on evolving regulatory requirements and integrate them into cybersecurity programs. Plan and execute ITGC control testing, identifying and supporting remediation for control gaps. Interact effectively with clients, managers, and partners to build strong relationships. Adapt firm tools and methodologies to meet specific client requirements.

Essential Skills

NISTISO 27001COBITAWSGoogle CloudAzureServiceNow IRMGRC ToolingOperational ResilienceDORATechnology Risk StandardsNIST CSFNIST-800-53SDLCThreat ModellingPCI DSSITGC

Good to Have

CISSPCISACISMCRISCISO 27001 LA/LIISO 31000 LA/LIISO 22301 LA/LIITILPCI QSABusiness ContinuityScenario Testing

Highlights

  • Actively hiring

More Details

RoleManager | Security Frameworks and Standards | Delhi | Cyber Strategy & Transformation
IndustryCybersecurity, Information Technology & Services
DepartmentGeneral Management
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

Manager | Security Frameworks and Standards | Delhi | Cyber Strategy & Transformation at Deloitte | SkillMX | SkillMX