T&T | Cyber- CST | Manager | Delhi | TPRM
Deloitte
Deloitte
Join Deloitte Touche Tohmatsu India LLP as a Manager in our Cyber Strategy & Transformation team in Delhi. You will play a crucial role in helping organizations proactively defend against cyber threats and safeguard their critical assets. Our approach emphasizes security, vigilance, and resilience, integrating cyber risk management into strategic development to effectively manage information and technology risks, enabling the pursuit of new opportunities.
As part of this dynamic team, you'll cultivate strong relationships with clients and colleagues, consistently aiming to surpass expectations and deliver exceptional value.
You will lead comprehensive Cyber Security Advisory, Governance, Risk & Compliance (GRC), Cyber Risk Management, and cybersecurity transformation initiatives across various client landscapes. This includes managing Cyber Risk Management Framework (CRMF) programs, enterprise risk assessments, cyber governance, and risk reporting for diverse technology environments such as IT, OT, Cloud, IoT, and AI.
Key duties involve conducting cybersecurity maturity assessments, security control and compliance reviews, audits, and third-party risk management engagements. You'll also lead ISO/IEC 27001 implementations and advise senior stakeholders on cyber risk, governance, and transformation priorities. Developing and refining cybersecurity frameworks, methodologies, and risk treatment strategies will be essential, along with assessing security controls against industry standards like ISO/IEC 27001 and NIST CSF.
Furthermore, you'll identify strategic risks, governance gaps, and improvement opportunities, providing practical recommendations. Leading executive workshops and steering committee discussions, overseeing engagement delivery for quality and timeliness, and mentoring consulting teams are also core responsibilities. You will review and approve client deliverables and actively participate in business development activities, including proposal development and thought leadership.
We are seeking professionals with 8 to 12 years of experience in Cyber Security Advisory, GRC, Cyber Risk Management, Technology Risk, Information Security, Cybersecurity Consulting, or Cybersecurity Transformation. Prior experience with Big 4 firms, management consulting, or dedicated cybersecurity consulting is highly preferred.
Demonstrated expertise in Cyber Risk Management, GRC, ISO/IEC 27001, cybersecurity governance, compliance, and security assessment programs is required. You must have proven experience leading large-scale cybersecurity advisory engagements and managing senior client stakeholders, executive sponsors, and steering committees. A strong understanding of ISO/IEC 27001, NIST Cybersecurity Framework (CSF), cyber risk management principles, security controls, governance frameworks, and regulatory compliance is essential.
Experience in leading cybersecurity maturity assessments, enterprise risk assessments, compliance reviews, audits, regulatory assessments, and third-party risk programs is necessary. The ability to manage multidisciplinary teams, complex engagements, project financials, stakeholder expectations, and ensure delivery quality is crucial. Excellent analytical, strategic thinking, problem-solving, stakeholder management, report writing, and executive presentation skills are expected.
Professional certifications such as CISSP, CISM, CISA, CRISC, CGEIT, ISO/IEC 27001 Lead Implementer, or ISO/IEC 27001 Lead Auditor are advantageous. Familiarity with AI Governance or AI Security certifications will be an added benefit.
Deloitte
Information Technology & Services