T&T | Cyber: CST | Consultant | Third Party Risk Management | Pune (Pune, IN)
Deloitte
Deloitte
Join a leading cybersecurity team dedicated to protecting valuable assets and preventing cyberattacks. We empower organizations to manage cyber risk effectively, enabling them to unleash new opportunities by embedding security at the core of strategy development. Discover more about our Cybersecurity practice.
Conduct Information Security Management System (ISMS) or Third-Party Risk Assessments. Liaise effectively with clients, managing stakeholder expectations and collaborating with diverse client teams, including compliance, auditing, and regulatory bodies, to document requirements.
Perform comprehensive risk assessments and audits covering people, processes, and technology. Identify gaps, observations, risks, and opportunities for policy, process, and standard improvements. Document information security risks, recommendations, and compensating controls within detailed assessment or audit reports.
A Bachelor's degree in Computer Science, Information Technology, or a related field is required. Candidates should possess a minimum of 2 years of relevant experience in IT Audits and Cloud Security. Mandatory experience in Cyber Third-Party Risk Management (TPRM) ranging from 1 to 7 years is essential.
Experience with ISO22301 implementation and audits is preferred. Relevant certifications such as CBCI, CBCP, ISO22301 LI or LA, Offensive Security Certified Professional, or CISA are advantageous. Familiarity with CISSP, CISM, CEH, or ISO27001 security certifications is a plus. Experience in Infrastructure/Application Security, IT Audit, and Information Risk Management is also highly valued. The ability to work within a cross-functional, cross-cultural matrix environment is key.
Deloitte
Information Technology & Services