Grc Manager (Delhi)

Grc Manager (Delhi)

24 Sep
|
Deloitte Shared Services India
|
Delhi

24 Sep

Deloitte Shared Services India

Delhi

Cyber Security Advisory, GRC

Experience: 9-13 Years

Role: Manager Cyber Security Advisory / GRC

Job Overview

We are looking for an experienced Cybersecurity professional to join our Cyber Security Advisory team. The role involves independently leading Cyber Security Advisory, Governance, Risk & Compliance (GRC), Cyber Risk Management, Technology Risk, and Cyber Third-Party Risk Management (TPRM) engagements across diverse client environments.

The ideal candidate should have strong experience in cybersecurity risk assessments, maturity assessments, security controls, ISO 27001, NIST CSF, GRC, TPRM, governance frameworks, and client-facing consulting engagements. Experience with Big 4, management consulting, or cybersecurity consulting is strongly preferred.

Key Responsibilities

- Independently lead Cyber Security Advisory, GRC, Cyber Risk Management, Technology Risk, and Cyber TPRM engagements.
- Lead cybersecurity risk assessments, maturity assessments, control reviews, compliance assessments, IT audits, and third-party risk assessments across IT, OT, Cloud, IoT, and emerging technology environments.
- Develop and enhance Cyber Risk Management Frameworks (CRMF), TPRM frameworks, governance models, policies, standards, procedures, SOPs, playbooks, and risk treatment methodologies.
- Manage and assess the complete third-party risk lifecycle, including vendor onboarding, due diligence, risk assessment, contracting, monitoring, renewal, and offboarding.
- Define cybersecurity risk tiering, assessment criteria, risk quantification, escalation, exception management, reporting, and governance mechanisms.
- Lead ISO/IEC 27001 implementation, gap assessments, internal assessments, certification readiness, and continual improvement initiatives.
- Assess security controls across infrastructure, cloud, applications, databases, networks, and outsourced environments.
- Evaluate controls covering Identity & Access Management, encryption, vulnerability and patch management, logging and monitoring, backup security, incident response, and cyber resilience.




- Conduct assessments against leading frameworks and standards, including ISO 27001, NIST CSF, NIST SP 800-53, CIS Controls, PCI DSS, ISO 22301, ISO 27701, COBIT, SOC 2, and CSA CCM.
- Interpret cybersecurity, data protection, outsourcing, technology risk, and operational resilience requirements and translate them into practical control and remediation initiatives.
- Identify cybersecurity risks, control gaps, compliance deficiencies, and improvement opportunities.
- Develop remediation plans, risk treatment recommendations, cybersecurity roadmaps, and transformation initiatives.
- Conduct client workshops, stakeholder interviews, risk discussions, and executive-level presentations.
- Manage engagement workstreams, project timelines, resources, stakeholder expectations, and deliverable quality.
- Perform quality reviews of assessment reports, risk registers, governance documents, presentations, and other client deliverables.
- Lead and mentor consulting teams, provide technical direction, and support team capability development.
- Support proposal development, RFP responses, solution design, client pursuits, thought leadership, and business development initiatives.
- Collaborate with Information Security, Risk, Compliance, Internal Audit, Technology, and Business teams to deliver cybersecurity and risk transformation outcomes.
- Research emerging cybersecurity threats, regulations, technology trends, and industry practices.
- Leverage AI-enabled tools, automation, analytics, and continuous monitoring to improve cybersecurity risk and GRC effectiveness.
- Support initiatives related to AI Governance and AI Security risks.

Required Skills & Experience





- 9–13 years of relevant experience in:

- Cyber Security Advisory

- Cyber GRC

- Cyber Risk Management

- Technology Risk

- IT Audit

- Information Security

- Cybersecurity Consulting
- Proven experience independently leading cybersecurity assessment, risk management, governance, compliance, and transformation engagements.
- Solid knowledge of ISO/IEC 27001, NIST CSF, cybersecurity risk management, security controls, and governance practices.
- Experience leading cybersecurity maturity assessments, compliance assessments, audits, third-party assessments, and risk management programs.
- Hands-on experience developing or enhancing CRMF/TPRM frameworks, governance models, policies, standards, SOPs, playbooks, and risk methodologies.
- Strong understanding of Third-Party Risk Management lifecycle and vendor security assessments.
- Experience managing client workstreams, engagement teams, senior stakeholders, and executive-level communications.
- Strong analytical, problem-solving, stakeholder management, report writing, and presentation skills.
- Experience developing executive-level PowerPoint presentations, strategic roadmaps, governance frameworks, and risk reporting dashboards.
- Strong ability to translate technical cybersecurity risks into business-aligned recommendations.

Preferred Experience

- Experience with Big 4, management consulting, or cybersecurity consulting.
- Exposure to IT, OT, Cloud, IoT, and emerging technologies.
- Experience with cybersecurity transformation and maturity improvement programs.
- Experience with regulatory requirements related to cybersecurity, data protection, outsourcing, technology risk, and operational resilience.
- Experience supporting proposals, RFPs, client pursuits, and business development.

Preferred Certifications

- CISSP
- CISM
- CISA
- CRISC
- ISO/IEC 27001 Lead Implementer
- ISO/IEC 27001 Lead Auditor

Added Advantage:

- ISO/IEC 42001
- NIST AI RMF
- AI Governance / AI Security certifications

📌 Grc Manager (Delhi)
🏢 Deloitte Shared Services India
📍 Delhi

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: grc manager (delhi) / delhi