T&T | Cyber CST | Consultant | Third Party Risk Management | Mumbai |
Deloitte
Deloitte
Join our Technology & Transformation practice as a Consultant within the Cyber Team, focusing on Third Party Risk Management. You'll be instrumental in building and maintaining strong client relationships while delivering exceptional results. This role is based in Mumbai and is part of Deloitte Touche Tohmatsu India LLP.
Our Technology & Transformation team goes beyond analytics, focusing on assuring robust foundations for future ambitions. We help clients navigate change, ensuring they are always prepared to act proactively. Explore more about our Technology & Transformation Practice.
As a Consultant in our Cyber Team, you will cultivate positive working relationships with colleagues and clients to surpass expectations. Key responsibilities include conducting Information Security Management System (ISMS) or Third-Party Risk Assessments and effectively liaising with clients to manage stakeholder expectations.
You will collaborate with diverse client teams, including compliance, auditing, and regulatory bodies, to identify and document requirements. This involves performing risk assessments and audits covering people, processes, and technology, identifying gaps, risks, and opportunities for policy and process improvement. The role requires documenting risk assessments and recommendations in comprehensive audit reports.
We are seeking candidates with a solid understanding of third-party/vendor/supplier risk management considerations and knowledge of data protection, privacy risks, and relevant control frameworks. Excellent written and verbal communication, documentation, and presentation skills are essential.
Qualifications include a Bachelor's degree in Computer Science, Information Technology, or a related field. A minimum of 3 years of relevant experience in IT Audits or Cloud Security is required. Candidates must have 1 to 7 years of experience in Cyber TPRM. Experience with ISO22301 implementation and audits is highly valued.
Preferred certifications include CBCI, CBCP, ISO22301 LI/LA, Offensive Security Certified Professional, CISA, CISSP, CISM, CEH, or ISO27001. Experience in Infrastructure/Application Security, IT Audit, or Information Risk Management is also beneficial.
Deloitte
IT Consulting