T&T | Cyber - CST | Deputy Manager | Third Party Risk Management | Delhi (Delhi, IN)
Deloitte
Deloitte
Join a leading team focused on bolstering cybersecurity and protecting valuable assets. We empower organizations to be secure, vigilant, and resilient by integrating cyber risk management into strategic development, enabling effective management of information and technology risks and unlocking new opportunities. Explore the world of Cybersecurity.
This role is based in Delhi, IN, and is part of Deloitte Touche Tohmatsu India LLP.
Lead critical Cyber Security Advisory, GRC, Cyber Risk Management, Technology Risk, and TPRM engagements independently across diverse client environments. Conduct comprehensive cybersecurity risk, maturity, control, compliance, IT, and third-party risk assessments. Develop and refine frameworks for Cyber Risk Management (CRMF) and TPRM, including governance models, policies, and lifecycle processes. Define and implement cyber risk tiering, quantification, escalation, and reporting mechanisms aligned with regulatory standards. Lead ISO/IEC 27001 implementations and assessments. Evaluate cybersecurity controls across various environments and technologies.
Interpret and apply regulatory requirements, translating them into practical remediation plans. Identify risks, control gaps, and improvement opportunities, developing pragmatic remediation and transformation roadmaps. Facilitate client workshops and executive presentations. Manage engagement workstreams, timelines, resources, and stakeholder expectations, ensuring deliverable quality. Lead and mentor consulting teams, providing technical direction and driving capability development.
A Bachelor's or Master's degree is required. Candidates should possess 6 to 9 years of relevant experience in Cyber Security Advisory, GRC, Cyber Risk Management, Technology Risk, IT Audit, Information Security, or Cybersecurity Consulting. Strong preference for experience with Big 4 firms, management consulting, or cybersecurity consulting.
Demonstrated experience in leading cybersecurity assessment, risk management, governance, compliance, and transformation engagements is essential. Deep knowledge of ISO/IEC 27001, NIST CSF, cyber risk principles, security controls, and governance practices is crucial. Experience managing client workstreams, engagement teams, senior stakeholders, and executive-level communications is expected.
Excellent analytical, problem-solving, stakeholder management, report writing, and presentation skills are required. Experience in developing executive-level presentations, strategic roadmaps, governance frameworks, and risk reporting dashboards is beneficial. Professional certifications such as CISSP, CISM, CISA, CRISC, or ISO/IEC 27001 Lead Implementer/Auditor are preferred. AI Governance or AI Security certifications are an added advantage.
Deloitte
IT Consulting