02 Aug
|
Deloitte Shared Services India
|
Bengaluru
02 Aug
Deloitte Shared Services India
Bengaluru
The team
This role is responsible for managing and validating cybersecurity controls across the organization, ensuring compliance with regulatory and internal requirements. You will focus on security control interpretation, evidence validation, and audit support across domains including but not limited to Cryptography, DLP, Endpoint Security, and Network Security.
Your work profile
- Strong understanding of cybersecurity controls across domains including Cryptography, DLP, Endpoint Security, and Network Security.
- Work closely with technology and security teams to manage and support implementation of cybersecurity controls.
- Translate control requirements into:
- Technical expectations for implementation teams
- Control validation approaches to assess effectiveness
- Assess control effectiveness and identify gaps in implementation
- Manage and complete cybersecurity due diligence questionnaires from clients, partners, and vendors.
- Coordinate with internal stakeholders to gather accurate responses and supporting evidence.
- Ensure responses are technically accurate and aligned with organizational policies and controls.
- Track questionnaire status, timelines, and outcomes.
- Oversee the collection, validation,
and documentation of evidence to support control compliance and audit requirements.
- Analyze control validation results, identify control weaknesses, and escalate critical risks to senior management.
- Support and manage regulatory and audit activities, including evidence collection, validation, and remediation tracking.
- Recommend and implement improvements to control validation processes, documentation, and reporting mechanisms.
- Foster robust understanding of cybersecurity controls, risk, and compliance requirements across teams.
- Stay updated on evolving cybersecurity threats, regulatory requirements, and industry best practices to ensure ongoing compliance and effectiveness.
Key skills required
- Bachelors degree in computer science, Information Technology, or a related field.
- 5+ years of experience in Cybersecurity GRC, Cyber control reviews and assessment, Cyber control testing and or a similar role with a focus on security controls.
- Strong understanding of:
- Cryptography and PKI (TLS, certificates)
- Data Loss Prevention (DLP)
- Endpoint and Network security controls
- Experience with security frameworks (NIST CSF, CIS, ISO 27001).
📌 GRC | DM | Bengaluru/ Hyderabad
🏢 Deloitte Shared Services India
📍 Bengaluru