T&T | Cyber: ES | Deputy Manager | Security Architect | Pune

Deloitte

8–10 yrs Pune Full Time Work from office
Deloitte logo
Posted : 1 week ago
Actively hiring

Job description

Join Deloitte's cybersecurity team in Pune as a Deputy Manager, Security Architect. This role is pivotal in safeguarding organizations against cyber threats and protecting valuable assets. You will be instrumental in developing and implementing comprehensive cybersecurity strategies, ensuring resilience, and enabling new opportunities through robust risk management.

This position offers a chance to work at the forefront of cybersecurity, managing cyber risks strategically from the outset. You will contribute to embedding security into business strategy development, thereby enhancing the management of information and technology risks effectively. Learn more about Deloitte's Cybersecurity services.

Responsibilities

Develop and maintain the organization's enterprise-wide cybersecurity and information security strategy, providing executive-level guidance and reporting. Drive the long-term cybersecurity roadmap, advise on security investments, and ensure compliance with standards like ISO 27001 and NIST. Conduct risk assessments, develop policies, and oversee incident response plans.

Lead cybersecurity programs, manage teams, and foster a security-conscious culture. This includes designing and executing security awareness programs, conducting phishing simulations, and overseeing third-party security assessments. You will also review and assess the security of various environments including IT, cloud, and Operational Technology (OT).

Provide strategic and technical recommendations for enhancing security controls and architecture. Oversee security audits, vulnerability assessments, and penetration testing. Offer guidance on implementing industry best practices and advise on OT-specific security controls and frameworks, mitigating risks in industrial control systems.

Qualifications

A Bachelor’s degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related field is required. Candidates should possess 8-10 years of experience in information security, cybersecurity, risk management, or IT leadership roles, with proven experience in a CISO, Deputy CISO, Security Director, or vCISO capacity.

Strong understanding of security frameworks such as ISO 27001, NIST CSF, CIS Controls, COBIT, and regulatory compliance is essential. Experience in risk management, incident response, security governance, cloud security, and third-party risk management is crucial. Familiarity with OT/ICS security principles and industrial cybersecurity practices is also required.

Essential Skills

Enterprise-wide cybersecurity strategyInformation security strategySecurity guidanceCybersecurity roadmapSecurity investmentsRisk-based decision-makingSecurity frameworksNISTIT ActInformation security risk assessmentsOrganizational risk registerInformation security policiesInformation security standardsInformation security proceduresInformation security governance frameworksNetwork securityRisk controlIAMEncryptionZero trustSecurity operationsVulnerability managementIncident responseInternal auditsExternal auditsCompliance readinessIncident response plansIncident response processesIncident response coordinationCybersecurity risksThreat intelligenceSecurity monitoringEmerging cyber threatsSecurity incidentsCrisis managementCybersecurity programsCybersecurity initiativesSecurity resourcesSecurity teamsSecurity governance forumsSteering committeesSecurity reporting mechanismsSecurity KPIsSecurity KRIsSecurity metricsCybersecurity capabilitiesCybersecurity resilienceSecurity awarenessSecurity education programsCybersecurity trainingPhishing simulation campaignsThird-party security risk assessmentsVendor security risk assessmentsSecurity requirements for suppliersSecurity controls for suppliersSecurity requirements for vendorsSecurity controls for vendorsSecurity requirements for service providersSecurity controls for service providersSupply chain cybersecurity risksInfrastructure securityApplication securityEndpoint securityCloud environment securitySecurity controls enhancementSecurity architecture enhancementSecurity auditsVulnerability assessmentsPenetration testingIndustry best practices for securitySecurity technologies implementationOperational Technology (OT) security assessmentsOT security maturity reviewsOT-specific security controlsOT-specific security frameworksIndustrial control systems (ICS) securitySCADA securityOT environments securityIT and OT environment integrationStrategic LeadershipCybersecurity GovernanceRisk ManagementStakeholder ManagementRegulatory ComplianceIncident Response & Crisis ManagementSecurity Architecture & Cloud SecurityThird-Party Risk ManagementOT Security ExpertiseCommunication & Executive ReportingProgram & Team ManagementISO 27001CIS ControlsCOBIT

Good to Have

CISSPCISMCRISCISO 27001 Lead ImplementerISO 27001 Lead AuditorCCSPGIACGICSP

Highlights

  • Actively hiring

More Details

RoleT&T | Cyber: ES | Deputy Manager | Security Architect | Pune
IndustryCybersecurity, Information Technology & Services
DepartmentRisk Management
Employment TypeFull Time, Work from office

About the Company

Deloitte logo

Deloitte

Cybersecurity

T&T | Cyber: ES | Deputy Manager | Security Architect | Pune at Deloitte | SkillMX | SkillMX