T&T | Cyber: CST | Deputy Manager | AI Security, risk & control metrics management | Delhi
Deloitte
Deloitte
Join Deloitte Touche Tohmatsu India LLP as a Deputy Manager focused on AI Security, Risk, and Control Metrics Management in Delhi. This role is integral to our Cybersecurity practice, helping organizations build resilience against cyber threats and manage cyber risk effectively.
We empower clients to embed cyber risk management into their strategic development, ensuring robust protection of information and technology assets. Explore more about our Cybersecurity services and how we champion secure, vigilant, and resilient operations.
This position supports AI security, governance, and Responsible AI engagements across diverse industries. You will be instrumental in assessing AI-specific risks, establishing robust governance frameworks, and evaluating AI/ML security controls. The role involves assisting clients in developing secure, compliant, and ethical AI programs, working closely with senior leadership, and contributing to client success.
Key responsibilities include conducting AI risk and maturity assessments against frameworks like ISO/IEC 42001 and NIST AI RMF. You will also perform control design and effectiveness reviews, support AI governance audits, and develop essential reporting and presentation materials for management and executives.
We seek candidates with a strong understanding of Cyber GRC principles, risk management, and established control frameworks. Essential knowledge includes AI governance and risk frameworks such as ISO/IEC 42001 and NIST AI RMF, alongside familiarity with Responsible AI principles, AI lifecycle risks, and emerging AI regulations.
Ideal candidates will possess a Bachelor's or Master's degree in Computer Science, Information Security, or a related field. Experience in supporting AI governance, risk, and compliance engagements is crucial, as is the ability to evaluate AI-related risks including model governance, data privacy, bias, and regulatory compliance.
Deloitte
Cybersecurity