T&T | Cyber - CST | Deputy Manager | Delhi | TPRM
Deloitte
Deloitte
Join Deloitte's Cyber - CST team as a Deputy Manager in Delhi, contributing to cutting-edge cybersecurity solutions. We empower organizations to proactively defend against cyber threats and safeguard critical assets. Our approach emphasizes security, vigilance, and resilience, enabling businesses to navigate cyber risks effectively and seize new opportunities. By integrating cyber risk management into strategic planning, we ensure robust information and technology risk management.
Deloitte helps clients build secure, vigilant, and resilient systems. We focus on preventing and responding to cyberattacks while managing cyber risk to unlock new business opportunities. Learn more about our Cybersecurity services.
Lead teams in executing Third-Party Risk Management (TPRM) assessments, technology risk reviews, security audits, and advisory engagements across various client environments.
Develop and refine TPRM policies, procedures, Standard Operating Procedures (SOPs), governance frameworks, operating models, and playbooks. This includes managing the complete vendor lifecycle from onboarding and due diligence to risk assessment, contracting, ongoing monitoring, renewal, and offboarding.
Establish and implement risk tiering methodologies, assessment criteria, escalation processes, exception management, and reporting structures that align with regulatory expectations and industry best practices.
Conduct detailed technical control assessments for infrastructure, cloud environments, applications, databases, and network components. Evaluate controls related to access management, encryption, logging, monitoring, vulnerability management, patch management, backup security, and incident response.
Assess the security posture of third parties against frameworks such as ISO 27001, NIST, and PCI DSS. Support secure design reviews and technology risk evaluations for critical systems and outsourced services.
Interpret and apply regulatory requirements concerning outsourcing, information security, data protection, and operational resilience, ensuring alignment with client control environments and remediation efforts.
This role requires an any graduate from a reputed college.
Key knowledge areas include third-party/vendor/supplier risk management, data protection, privacy risks associated with third parties, and relevant control frameworks for TPRM.
Exceptional written and verbal communication skills, along with strong documentation and presentation abilities, are essential.
Candidates should be highly motivated and adaptable to working in both local and global environments. The position is based in Delhi, IN.
Deloitte
Information Technology & Services