T&T | Cyber - CST | Deputy Manager | Bangalore | GRC

Deloitte

6–7 yrs Bengaluru Full Time Hybrid (office + remote)
Deloitte logo
Posted : yesterday
Actively hiring

Job description

Join Deloitte's Cyber Security team as a Deputy Manager, focusing on GRC in Bangalore. This role is integral to strengthening our clients' cyber defenses and managing risks effectively. We help organizations prevent cyberattacks, protect valuable assets, and embed cyber risk into strategic development.

Our Cybersecurity practice ensures clients are secure, vigilant, and resilient. We go beyond simple prevention and response, offering robust cyber risk management solutions that unlock new opportunities and safeguard information and technology.

Responsibilities

Key responsibilities include conducting Third-Party Risk Assessments and managing Information Security Management Systems (ISMS). You will liaise effectively with clients, manage stakeholder expectations, and collaborate with various client departments like compliance, auditing, and regulatory bodies to identify and document obligations.

Your role will involve performing risk assessments and audits across people, processes, and technology. You will identify gaps, risks, and opportunities for improvement in policies, processes, and standards. The position also requires documenting information security risks, recommendations, and controls in comprehensive assessment and audit reports.

Qualifications

We are seeking individuals with a strong understanding of Third-Party/Vendor/Supplier Risk Management and knowledge of Data Protection & Privacy risks. Essential skills include excellent written and verbal communication, documentation, and presentation abilities.

Candidates should possess relevant experience of 6+ years in IT Audits and Cloud Security, with a mandatory 1-7 years of Cyber TPRM experience. Experience with ISO22301 implementation and audits is required. A Bachelor's or Master's degree is necessary, and preferred certifications include CBCI, CBCP, ISO22301 LI/LA, Offensive Security Certified Professional, CISA, CISSP, CISM, CEH, or ISO27001. Experience in Infrastructure/Application Security, IT Audit, and Information Risk Management is also valued.

Essential Skills

GRCInformation Security Management System (ISMS)Third-Party Risk Management (TPRM)Data ProtectionPrivacy Risk ManagementControl FrameworksIT AuditsCloud SecurityISO22301Information Risk Management

Good to Have

CBCICBCPISO22301 LIISO22301 LAOffensive Security Certified ProfessionalCISACISSPCISMCEHISO27001Infrastructure SecurityApplication Security

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber - CST | Deputy Manager | Bangalore | GRC
IndustryInformation Technology & Services, Management Consulting
DepartmentInformation Technology, Information Security
Employment TypeFull Time, Hybrid (office + remote)

About the Company

Deloitte logo

Deloitte

Information Technology & Services