ServiceNow Developer — Solution Advisor
Deloitte Cyber Risk Services
Overview
Deloitte’s Cyber Services help clients stay secure, vigilant, and resilient against a growing array of cyber threats and vulnerabilities. Our Cyber Risk practice delivers end-to-end solutions using proven methodologies and tools, addressing issues such as identity theft, data security breaches, cyber security, and system outages. Our goal is to enable ongoing, secure, and reliable operations across enterprises of all sizes and industries.
Deloitte’s Cyber Risk Services have been recognized as a leader by several independent analyst firms.
Work You Will Do
As a Consultant in Governance, Risk, and Compliance (GRC)/Integrated Risk Management (IRM), you will:
- Own SDLC Efforts: Lead the build, test, and rollout of GRC solutions into production.
- Conduct Risk Assessments: Implement solutions to minimize exposure and enhance business resilience.
- Application Deployment: Understand and manage application deployment, configuration baselines, and secure operations.
- Automate with GRC Tools: Use tools like ServiceNow, Archer, Aravo, or OneTrust to automate risk management and compliance monitoring.
- Configure GRC Solutions: Set up modules for risk management, compliance, issue management, exception management, policy lifecycle, privacy, third-party risk, audit, threat and vulnerability management, security operations, and business continuity.
- Requirements Gathering: Define and document user stories, create UI mock-ups, and execute project deliverables.
- Implement Risk Frameworks: Enhance and implement frameworks (ISO 27001, COSO, COBIT, PCI, NIST, HIPAA) using GRC technologies.
- Regulatory Compliance: Ensure compliance with all relevant laws and update internal policies as regulations change.
- Ongoing Support: Provide ongoing support and enhancements to risk management frameworks.
- GRC Governance: Assist in developing GRC governance and operating models.
- Reporting: Prepare detailed reports on compliance activities, risk assessments, and mitigation plans, ensuring audit readiness.
The Team
Deloitte’s Cyber Governance, Risk, and Compliance (GRC)/Integrated Risk Management (IRM) team is one of the fastest-growing market offerings, specializing in:
- GRC strategy, design, and implementation
- GRC & Security solutions using ServiceNow, Archer, Aravo, and OneTrust
Key Success Factors:
- Deep accountability and passion for excellence
- Strong relationship-building skills with clients and industry
- In-depth understanding of GRC tools and leading practices
- Experience designing and implementing scalable, usable GRC technology solutions
Required Qualifications
Education
- Bachelor’s degree in Computer Science, Information Technology, or a related field
Experience
- 3–5 years in GRC solution implementation or ServiceNow/Archer/Aravo/OneTrust/cyber strategy
- Proficiency with at least one GRC tool (ServiceNow, Archer, Aravo, or OneTrust)
- Experience gathering/documenting business requirements and identifying process gaps
- Hands-on with at least two GRC modules (ERM, ITRM, TPRM, SecOps, Issues Management, Policy & Compliance Management, etc.)
- Experience in solution development, access control, rules/events, notifications, data integrations, UI, reports/dashboards, workflows, and admin activities in GRC tools
- Experience with privacy enhancement and automation tools (e.g., OneTrust)
- Proficient in risk management processes and compliance regulations
- Consulting experience in GRC
- Proficiency with scripting languages for API integrations
- Development experience in at least 2–3 projects from scratch to go-live
- Strong understanding of GRC frameworks (COBIT, ISO 27001, NIST, etc.)
- Strong analytical and problem-solving skills
- Excellent interpersonal and communication skills
- Flexibility in work hours to meet project/client needs
Preferred Qualifications
- Education: Master’s degree in Business Administration, Cyber Security, or related field
- Certifications: ServiceNow CSA, Archer Administrator