Help protect our company brand and reputation by assisting with risk management activities that ensure new and updated information technology solutions are secure.
Work you'll do
As a Consultant, Cyber Engineering on the Cyber Security team, you will evaluate cyber risk, assess security controls, and support compliance with policies and standards across technology solutions.
- Review assessment questionnaires and interview project teams to validate responses and identify cyber risks.
- Coordinate risk management activities, including vulnerability scanning, dynamic scanning, and confidentiality and privacy reviews.
- Prepare assessment reports and supporting evidence for management review and approval.
- Evaluate technology solutions, architectures, and controls for compliance with company, regulatory, and legal requirements.
- Guide project and technology teams on secure design, cloud security practices, remediation actions, and governance expectations.
The team
The Cyber Security team works behind the scenes to protect Deloitte practitioners as well as information assets at Deloitte. We take this protective role very seriously, while simultaneously ensuring Deloitte meets client, legal, and regulatory requirements. This team works closely with project/technology teams to assess and remediation risks related to the implementation of information technology solutions. This team is also responsible for guiding project teams through risk evaluation and risk treatment processes. The team uses knowledge of cyber security risk management methodologies to determine other risk management activities that should be performed.
Location: Hyderabad
Qualifications
Required:
- Bachelor's degree in Computer Science, Computer Engineering, Information Systems, or equivalent education and/or professional experience
- 3+ years of experience in IT infrastructure, systems engineering, information security, or systems administration
- Experience reviewing assessment questionnaires and interviewing project teams to validate responses
- Experience preparing assessment reports and documenting findings for management review
- Experience evaluating privacy, confidentiality, and security controls against company, regulatory, and legal requirements
Preferred:
- Experience with Microsoft Azure and/or Amazon Web Services security
- Experience supporting the development of security architecture designs
- One or more of the following certifications: Certified Information Security Manager, Certified Information Systems Security Professional, Associate of ISC2, Certified Ethical Hacker, or Certified Cloud Security Professional
- Experience with identity and access management, encryption, multi-factor authentication, and security information and event management
- Knowledge of cyber security standards and frameworks such as ISO 27001 or National Institute of Standards and Technology frameworks