T&T | Cyber: ES | Manager | Cloud Security | PAN India (Pune, IN)
Deloitte
Deloitte
Join our Cyber team as a Manager to help organizations prevent cyberattacks and safeguard critical assets. We focus on building resilience and managing cyber risk effectively, integrating security from the outset of strategic development to optimize information and technology risk management. Explore how we empower clients with robust cybersecurity solutions.
As a key member of our Cyber: ES Team, you will foster strong client relationships and lead high-quality threat-based risk assessments. Your expertise will be crucial in analyzing business impact across various cloud technologies, platforms, and business functions. You will conduct comprehensive cloud infrastructure security risk assessments, evaluate cloud security architecture, and ensure cloud security controls align with business needs, security policies, and standards. Preparing detailed cloud infrastructure risk assessment reports is also a core responsibility.
Lead and complete high-quality threat-based risk assessments and business impact analyses across diverse cloud environments. Conduct in-depth cloud infrastructure security risk assessments based on industry best practices. Evaluate cloud security architecture and assess cloud security controls for compliance with business scope, security policies, and standards. Prepare detailed reports on cloud infrastructure risk assessments. Collaborate closely with internal management and client representatives to define assessment scope, gather documentation, conduct interviews, identify risks, and document findings using a structured risk assessment methodology. Drive efforts to identify, assess, and communicate cloud information security risks to all relevant internal and external stakeholders.
We are seeking a Manager with 8+ years of experience in Cyber Security Consulting, specifically with strong proficiency in cloud security assessment. A deep understanding of cloud technologies and platforms such as Azure, AWS, GCP, and OCI is essential. Familiarity with cloud security architecture, Zero Trust principles, and various security technologies and controls is required. Experience with cloud-native security controls, Identity Access Management, Data Security, IDS/IPS, SIEM, web application firewalls, cryptography, Kubernetes, and container security is highly valued. Proven track record of conducting cloud security assessments and configuration reviews against industry best practices. Knowledge of industry-leading standards and frameworks like ISO 27001, NIST, CSA CCM, and CIS benchmarks is necessary. Experience with the Risk Management Lifecycle (Identification, Assessment, Response, Reporting) is crucial. Familiarity with cloud security tools and services is expected. Knowledge and experience in developing cloud security policies and frameworks are desirable. Relevant cloud security certifications such as CCSK, CCSP, or cloud provider-specific security certifications are a plus. Any Graduate with a Bachelor’s degree in Information Security, Computer Science, or a related field is required. A Master’s degree in Cybersecurity or Business Management is preferred.
Deloitte
Information Technology & Services