GRC/IRM ServiceNow — Senior Manager/ Specialist Leader
Deloitte’s Cyber Risk Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our services help organizations to address, in a timely manner, pervasive issues, such as identity theft, data security breaches, data leakage, cyber security, and system outages across organizations of various sizes and industries with the goal of enabling ongoing, secure, and reliable operations across the enterprise.
Deloitte’s Cyber Risk Services have been recognized as a leader by a number of independent analyst firms. Kennedy Consulting Research & Advisory, a leading analyst firm, recently named Deloitte a global leader in cyber security consulting. Source: Kennedy Consulting Research & Advisory; Cyber Security Consulting 2013; Kennedy Consulting Research & Advisory estimates © 2013 Kennedy Information, LLC. Reproduced under license.
Work you will do.
As a Senior Manager/ Specialist Leader in our team, you will work at the intersection of business strategy, risk management, and platform enablement, driving end-to-end GRC transformations for global clients.
This is a leadership role where you’ll work closely with senior stakeholders and clients to define GRC vision, build scalable platform solutions, and mentor a high-performing delivery team.
The key job responsibilities will be to:
· Advise clients on enterprise risk and compliance strategies leveraging market leading GRC platforms and capabilities, especially ServiceNow IRM, TPRM, BCM, and SecOps.
· Lead complex GRC transformations, including current-state assessments, platform roadmap design, future-state operating model definition, and user adoption/ change management.
· Architect and oversee the delivery of ServiceNow-based GRC implementations aligned to risk frameworks (e.g., ISO 27001, NIST, SOX, GDPR) and/ or client-specific use cases.
· Drive pre-sales efforts, including RFP responses, solution development, and client presentations.
· Collaborate across functions (cyber, regulatory, internal audit, cloud risk) to deliver integrated, cross-domain risk solutions.
· Mentor and grow a team supporting their career development and project success.
· Contribute to/ Lead global practice development through thought leadership, solution accelerators, and capability building.
· Maintain client relationships by developing a reputation as an independent professional who delivers exceptional results.
· Create executable strategies to initiate, grow and sustain profitable relationships with clients.
· Serve as a subject matter specialist/ architect on ServiceNow GRC for senior business and technology stakeholders.
· Ensure that the ServiceNow GRC practice of the future has the right skills and training and push towards growing the overall team in the coming years.
Required skills:
· Over ten years of overall experience in risk, compliance, or cybersecurity consulting
· Proven experience delivering multiple end-to-end ServiceNow GRC implementations
· Excellent client-facing skills with the ability to influence stakeholders at all levels
· Experience working in a matrixed, global delivery environment
· Practice development, and capability/ solution building, eminence building skills
· Strategic thinking and problem-solving skills
· Strong project and people management capabilities
· Ability to translate risk and compliance requirements into scalable solutions
· Effective communication and executive presence
Preferred:
· ServiceNow Certified Technical Architect (CTA) or Certified Master Architect (CMA)
· ServiceNow Certified Implementation Specialist in one or more GRC modules (Risk & Compliance, VRM, or BCM)
· Exposure to Archer, MetricStream, or other GRC tools
· Experience integrating AI/ ML or analytics into risk and compliance programs
· Prior consulting experience in Big 4 or global system integrator
Qualification
- Bachelor’s degree + MBA (Preferred)
- CISSP / CISM (or equivalent)