GRC/IRM —Archer Solution Advisor
Deloitte’s Cyber Risk Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our services help organizations to address, in a timely manner, pervasive issues, such as identity theft, data security breaches, data leakage, cyber security, and system outages across organizations of various sizes and industries with the goal of enabling ongoing, secure, and reliable operations across the enterprise.
Deloitte’s Cyber Risk Services have been recognized as a leader by a number of independent analyst firms.
IDC MarketScape named Deloitte as a Leader in the first 2024 for Worldwide Cybersecurity Consulting Services: Global System Integrators/Consultancies. Source: Worldwide Systems Integrators/Consultancies for Cybersecurity Consulting Services 2024 Vendor Assessment, By Cathy Huang, Published January 2024 – ID#US50463423
Work you will do
As a Consultant in Governance, Risk, and Compliance (GRC[SK1] [GA2] [SK3] )/ Integrated Risk Management (IRM) at Deloitte, you will play a pivotal role and be instrumental in helping our clients manage and mitigate risks associated with their governance, risk management, and compliance activities by focusing on delivering continuous, high-quality GRC services to our clients. This role involves a blend of strategic advisory, process improvement, and technology implementation, tailored to ensure continuous compliance and effective risk management strategies are in place.
This role also involves ensuring compliance with regulatory requirements and managing risks effectively. The ideal candidate will have a strong background in GRC frameworks, excellent analytical skills and adept in developing workflows in Archer.
As a Consultant, you would be expected to perform the following activities:
· Hands-on experience in application development, ODAs, DDEs, UI, reports and dashboards, advanced workflows, and other administrative activities.
· Knowledge of at least three of Archer’s OOB use cases and one to two on-demand solutions.
· Proficient in Archer’s access control, managing access through record permissions, roles, groups, and security parameters.
· Hands-on experience with Archer LDAP configuration and user management.
· Good understanding of Archer Data Feed Manager and Archer’s integration capabilities with external tools.
· Good understanding of Archer integration with external tools such as SIEM, Qualys, ServiceNow, JIRA, etc.
· Experience in package migration across environments in cloud-based and on-premises setups.
· Administrative knowledge of Archer Control Panel, Windows/Database Server
· Strong analytical and problem-solving skills.
· Experience with JIRA, Microsoft Project, Trello, and other SDLC tools.
· Hands-on experience with Archer platform installation, upgrades, and maintenance
· Excellent documentation and presentation skills, with the ability to work with teams across geographical locations.
· Ability to develop test cases and test scripts, ensuring updates as needed.
· Excellent communication and interpersonal skills.
· Support proposal development, client presentations, and other business development activities
· Flexible to work on client specific time zone.
The team
Want to work at one of the fastest growing and industry leading risk management consulting firms that will give you an enriching experience to build your career and brand? If yes, then look no further, Deloitte’s Cyber Risk Services practice is the place for you. The Cyber Governance, Risk, and Compliance (GRC)/ Integrated Risk Management (IRM) is one of the most rapidly growing market offerings with capability spanning - GRC strategy, design, and implementation of GRC & Security solutions using confluence of Archer, ServiceNow, Aravo and OneTrust.
Individuals who take deep personal accountability for their work, have a passion for excellence, driven to achieve their full potential and understand the value of building relationships with clients and the industry, are encouraged to realize our requirement for GRC. The GRC Solution Advisor is expected to have an in- depth understanding of GRC tools as mentioned above, leading practices and have demonstrated experience in the design and implementation of their solutions. Understanding of risk and compliance pain points and how they can be addressed effectively through a scalable and usable GRC technology is key to success in this role. This role involves working closely with clients to understand their needs, designing solutions that leverage all the tool’s capabilities to enhance their GRC processes, and ensuring the successful implementation and operation of these solutions.
Required:
Education:
· Bachelor’s degree in Computer Science/ Information Technology, or a related field.
Experience:
· Minimum of 3-5 years of experience in implementing GRC solutions in Archer.
· Gathering and documenting business requirements and identifying gaps within existing systems and processes.
· Hands-on experience on at least 2 - 3 GRC modules (ERM, ITRM, TPRM, SecOps, Issues Management, Policy & Compliance Management, etc.).
· Hands-on experience in on-demand and out-of-the-box solution developments, access control, rules & events, notifications, data integrations, UI, reports and dashboards, workflows and other administrative activities in Archer
· Proficient in risk management processes and compliance regulations.
· Proven experience in GRC, particularly within a consulting environment.
· Proficiency with scripting language in implementing API integrations with external system
· Must have development experience in more than 2- 3 projects from scratch to till go-live
· Strong understanding of GRC frameworks such as COBIT, ISO 27001, NIST, etc.
· Strong analytical and problem-solving skills.
· Excellent interpersonal and communication skills, capable of working effectively with clients and team members.
· Flexibility in work hours may be necessary to meet project deadlines and client needs.
Preferred:
· Education: Master’s degree in Business Administration, Cyber Security or a related field
· GRC Certifications: Archer Administrator
#CA-DS