T&T | Cyber CST | Assistant Manager | Security Frameworks and Standards | Pune |
Deloitte
Deloitte
Join a leading cybersecurity team focused on protecting organizations from cyber threats and safeguarding valuable assets. We champion security, vigilance, and resilience, integrating cyber risk management into strategic development to unlock new opportunities. This role is pivotal in enhancing cyber resilience, governance, and security maturity across enterprises.
We are seeking skilled cybersecurity professionals with expertise in Cyber Risk, Security Controls, Cyber Capability Development, and Security Technology Enablement to drive cybersecurity transformation initiatives. The position involves assessing cybersecurity capabilities, evaluating control effectiveness, pinpointing areas for enhancement, and supporting strategic projects.
Conduct comprehensive cyber capability and security control assessments across diverse technology environments.
Review and validate security controls against established frameworks like NIST CSF, ISO 27001, CIS Controls, and internal organizational standards.
Support cyber maturity assessments and contribute to the development of capability roadmaps.
Assist in control documentation, evidence management, remediation tracking, and the implementation of improvement initiatives.
Evaluate security capabilities across identity, endpoint, network, cloud, and application domains.
Assess the effectiveness of preventive, detective, and corrective security controls.
Utilize Microsoft Sentinel and KQL for control validation, capability assessment, and security effectiveness reviews.
Monitor security events, alerts, and emerging risks to gauge the efficacy of detective controls.
Contribute to cyber transformation programs aimed at bolstering security posture and resilience.
Collaborate with cross-functional teams to implement cybersecurity enhancements.
Support the creation of cybersecurity metrics, reporting, and executive-level insights.
Maintain assessment findings, recommendations, and transformation deliverables meticulously.
A minimum of 2-4 years of experience in Cybersecurity, Cyber Risk, Security Controls, Governance, Compliance, or Cyber Transformation.
Possess a strong understanding of cybersecurity control frameworks and industry standards.
Demonstrated exposure to NIST CSF, ISO 27001, CIS Controls, or similar frameworks is essential.
Proficiency in Microsoft Sentinel and KQL for security analysis, control validation, and cyber capability assessments is required.
Experience in performing security control reviews, risk assessments, or capability assessments is necessary.
Knowledge of identity, endpoint, network, cloud, and application security domains is crucial.
Excellent documentation, reporting, and communication skills are expected.
Candidates should hold a B.E./B.Tech (Tier 1/2) or Master's degree in Information Security, Computer Science, or a related field.
Deloitte
Information Technology & Services