T&T | Cyber CST Consultant | ISO:27001 | Chennai |

Deloitte

Fresher Chennai Full Time Work from office
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join a leading cybersecurity team focused on safeguarding valuable assets and preventing cyberattacks. This role is integral to helping organizations manage cyber risk, embed security into strategic development, and effectively manage information and technology risks to unlock new opportunities.

Gain expertise in implementing and sustaining ISO 27001-based Information Security Management Systems. You will assess client security postures, pinpoint gaps and risks, and design effective mitigation solutions.

Contribute to diverse projects including change management, incident response, data backup, access control, and physical security assessments. You'll also conduct vendor risk assessments, provide a holistic view of outsourcing risks, and help clients develop robust information classification frameworks.

This position offers opportunities to work independently, leverage firm methodologies, and manage client relationships. You will also play a key role in business development, proposal creation, and team growth initiatives.

Responsibilities

Implement and maintain ISO 27001 based Information Security Management Systems (ISMS). Assess client information security postures, identify gaps and risks, and develop mitigation strategies. Assist clients in reviewing and implementing security controls for change management, incident management, data backup, access control, and physical security. Conduct vendor risk assessments to provide a comprehensive view of client risk exposure from outsourcing. Advise and assist clients in developing and implementing information classification frameworks. Demonstrate the ability to work independently on projects with minimal supervision. Utilize firm tools and methodologies for client engagements. Manage day-to-day client relationships at mid and lower levels. Participate in proposal development to secure additional client work. Identify opportunities to enhance engagement economics. Contribute to the business development plan for the service line. Play a role in professional retention and building team capacity. Undertake initiatives for people and practice development.

Qualifications

Conduct thorough security assessments of IT systems, applications, and networks to identify vulnerabilities. Perform comprehensive risk assessments and gap analyses against frameworks like ISO 27001, NIST CSF, and PCI-DSS. Possess working knowledge in key security domains including Information Technology, Information Security, Regulatory Compliance, Risk Management, and Network Security. Demonstrate in-depth understanding of information and cyber security controls and risk management processes. Serve as a technical lead or subject matter specialist on security implementation projects, overseeing design, build, testing, and deployment. Exhibit the ability to work independently on projects with limited supervision. Understand complex business and information technology management processes. Have working knowledge of firm tools and methodologies. A Bachelor’s degree in Computer Science, Information Security, or a related field is required, or equivalent experience. In-depth knowledge of security frameworks and standards such as ISO 27001 and NIST SP 800-53 is essential. Relevant certifications like CISSP, CISA, CEH, or CRISC are highly preferred. Possess strong analytical, problem-solving, and communication skills.

Essential Skills

ISO 27001Information Security Management System (ISMS)Risk AssessmentGap AnalysisInformation Security ControlsChange ManagementIncident ManagementBackup ProcessUser Identity and Access Management (IAM)Antivirus ManagementService Level Agreement (SLA)Media HandlingInformation ClassificationVendor Risk AssessmentNIST CSFPCI-DSSSecurity GovernanceAccess ControlNetwork SecuritySecurity Architecture ReviewIT General ControlsThird Party Risk ManagementCybersecuritySecurity PoliciesSecurity ProceduresVulnerability ManagementCISSPCISACEHCRISC

Good to Have

CISSPCISACEHCRISC

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber CST Consultant | ISO:27001 | Chennai |
IndustryInformation Technology & Services, Cybersecurity
DepartmentRisk Management
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Information Technology & Services

T&T | Cyber CST Consultant | ISO:27001 | Chennai | at Deloitte | SkillMX | SkillMX