Senior Analyst | Governance and Policy Development | Mumbai | Cyber Strategy & Transformation
Deloitte
Deloitte
Join our dynamic cybersecurity team as a Cloud Security & Cloud Governance Analyst in Mumbai. This role offers an exciting opportunity for early-career professionals passionate about cloud technologies, robust security practices, and established governance frameworks. You will play a crucial role in supporting cloud security operations, driving governance initiatives, ensuring compliance, and actively monitoring security across leading cloud environments like AWS, Microsoft Azure, and Google Cloud Platform (GCP).
Deloitte empowers organizations to proactively prevent cyberattacks and safeguard critical assets. We emphasize building secure, vigilant, and resilient systems, not just by reacting to threats, but by strategically managing cyber risk to unlock new business opportunities. Integrate cyber risk management from the outset of strategy development for more effective information and technology risk management. Explore more about our Cybersecurity offerings.
Key responsibilities include:
- Assisting in the implementation and upkeep of cloud security controls across AWS, Azure, and GCP. - Supporting cloud governance efforts, encompassing policy enforcement, resource tagging, and compliance monitoring. - Vigilantly monitoring cloud environments for security alerts, misconfigurations, and potential vulnerabilities. - Participating actively in cloud security assessments, audits, and thorough risk evaluations. - Identifying and resolving cloud security posture issues using advanced Cloud Security Posture Management (CSPM) tools. - Reviewing Identity and Access Management (IAM) configurations, user permissions, and role assignments. - Aiding in the deployment of essential security best practices, such as least privilege, encryption, logging, and multi-factor authentication. - Supporting compliance activities aligned with key standards like ISO 27001, SOC 2, CIS Benchmarks, PCI DSS, or GDPR. - Collaborating closely with infrastructure, DevOps, and application teams to ensure secure cloud deployments. - Developing comprehensive documentation for cloud governance policies, standards, procedures, and audit evidence. - Continuously staying abreast of evolving cloud security threats, vulnerabilities, and leading industry best practices.
Essential qualifications for this role include:
- A foundational understanding of cloud platforms, specifically AWS, Azure, or GCP. - Solid knowledge of cloud security concepts, including IAM, networking, encryption, logging, and monitoring. - Familiarity with cloud governance principles and established security frameworks. - A grasp of networking fundamentals such as TCP/IP, DNS, Firewalls, and VPNs. - Basic proficiency with Linux and Windows operating systems. - Strong analytical, problem-solving, and troubleshooting capabilities. - Excellent written and verbal communication skills. - The ability to foster a collaborative team environment.
It is also beneficial to possess:
- Familiarity with scripting languages like PowerShell, Python, or Bash. - Experience with security tools such as Microsoft Defender for Cloud, AWS Security Hub, Azure Policy, AWS Config, or similar solutions. - Knowledge in areas like vulnerability management, risk and compliance concepts, SIEM, and cloud-native security services.
Education: - A Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a closely related field is required. - Relevant certifications are preferred but not mandatory.
Deloitte
Cybersecurity