T&T | Cyber: CST | Manager | Security Frameworks and Standards | Bengaluru
Deloitte
Deloitte
Join a leading cybersecurity team dedicated to helping organizations prevent cyberattacks and protect critical assets. We focus on building secure, vigilant, and resilient systems by integrating cyber risk management into strategic development. Our approach empowers clients to manage information and technology risks effectively, unlocking new opportunities while staying protected.
We are looking for individuals who embody our purpose by challenging themselves to solve the most critical issues for our clients, colleagues, and society. This role is pivotal in shaping and implementing robust security frameworks and standards.
As a Manager in Security Frameworks and Standards, you will act as a subject matter specialist in GRC and various security domains. Your responsibilities include establishing and maintaining risk governance frameworks, designing secure IT architectures, and overseeing security program development. You will advise on cloud security best practices across AWS, Azure, and Google Cloud, and manage vulnerability management programs. Additionally, you will plan and execute IT and OT security audits, assess cybersecurity maturity, and develop strategic roadmaps for enhancing security posture. You will also be instrumental in defining project scopes and leading delivery teams.
Ideal candidates possess extensive experience with industry standards like ISO/IEC 27001, COBIT, and ITIL, alongside a strong background in establishing risk governance and secure IT architectures. Experience in designing and rolling out security programs, managing IT risk, and overseeing third-party risk assessments is essential. You should be adept at advising on secure cloud architectures and building vulnerability management programs. A proven ability to plan and execute IT/OT security audits, assess cybersecurity maturity using frameworks like NIST CSF, and provide strategic recommendations for risk mitigation is required. Preferred certifications include ISO27001 LA/LI, ISO22301 LA/LI, PMP, CISSP, CISA, or CISM. A Bachelor's or Master's degree in Information Security, Computer Science, or a related field is necessary.
Deloitte
Information Technology & Services