Cyber
Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design and technology as we partner with clients to transform finance.
Position Summary
Level: Solution Delivery Advisor
Work you’ll do:
The key job responsibilities will be to:
- Perform ongoing third-party cyber risk assessments to help clients identify and evaluate complex business and technology risks related to their third parties, and provide recommendations for managing those risks
- Provide periodic status updates including potential risks and delays to the project delivery to project manager and client
- Assist in the selection and tailoring of third-party cyber risk management approaches, methods and tools to support delivery of third-party cyber risk assessment services
The team
Cyber Operate : Third Party Risk Management (TPRM) capability is part of the wider Cyber Operate Practice. The TPRM team is focused on helping our clients identify and manage the cyber risks arising from their association with third parties or service providers. We help our clients to define their overall third-party cyber risk strategy, design and implement enterprise-wide programs and technology that focus on identifying and reducing risks; help them evaluate their objectives, priorities, strengths and weaknesses and roll out large scale organizational changes to achieve goals.
Qualifications:
Must Have Skills/Project Experience/Certifications:
- Overall, 3 to 4 yrs of relevant experience in information security
- Good understanding of information security and risk frameworks/standards (ISO 27001/2, NIST 800 series, PCI-DSS, etc.)
- Demonstrate knowledge of key risk areas such as cyber risk, compliance risk and regulatory risk
- Demonstrate knowledge in one or more of the following cyber risk domains, including:
- Security Governance and Management
- Security Policies and Procedures
- Application Security Controls
- Access Controls
- Network Security Operations
- Security Architectures
- Identity Management
- Disaster Recovery & Business Continuity
- Incident Response
- Risk Management
- Privacy and Data Protection
- Encryption
- Experience with internal controls, risk assessments, business process and internal IT control testing or operational auditing
- Excellent verbal and written communication skills
- Excellent inter-personal skills
Good to Have Skills/Project Experience/Certifications:
- CISSP/CISA (or equivalent)
- Good understanding of legal and regulatory requirements around information security and data privacy, such as OCC Bulletin 29, FFIEC, HIPAA Security/Privacy, etc.
- Prior consulting experience
- Experience with internal controls, risk assessments, business process, and internal IT control testing or operational auditing
Education:
• Bachelor’s/ Master’s degree in information technology or related field
Location:
- Bengaluru/Hyderabad/Pune/Chennai/Kolkata