08 Oct
|
Deloitte
|
Bengaluru
08 Oct
Deloitte
Bengaluru
Deloitte’s Cybersecurity Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cybersecurity practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our services help organizations to address, in a timely manner, pervasive issues, such as identity theft, data security breaches, data leakage, and system outages across organizations of diverse sizes and industries with the goal of enabling ongoing, secure, and reliable operations across the enterprise.
Work you will do
As a qualified working for Cyber Strategy & Transformation you will build and nurture positive working relationships with clients with the intention of exceeding client expectations. You will:
- Perform comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system, Artificial Intelligence (AI) system, and Operational Technology (OT) system to determine the overall effectiveness of the controls in accordance with industry standards and frameworks
- Prepare, review, and analyze documents such as Plans of Actions and Milestones (POAMs), Security Assessment Reports (SAR), Security Assessment Plans (SAP)
- Develop and implement AI Security Framework standardizing security/privacy integration into AI/ML-powered applications
- Design secure reference architectures for AI-enabled systems, incorporating guardrails and runtime protections
- Integrate AI security controls into enterprise architecture, including encryption, access management, and adversarial robustness measures
- Draft and maintain AI security policies covering data privacy, bias mitigation, and explainability
- Monitor compliance of AI systems with global regulations (NIST AI RMF, ISO 42001, EU AI Act) and internal governance standards
- Manage and execute cyber risk engagements across the development lifecycle – strategy, design, implementation, and managed services
- Facilitate enterprise decision making by providing a holistic view of enterprise-wide cyber risk, assessing the level of risk, and providing input into the management of risk
- Develop and tailor approaches, methods, and tools to support clients cyber risk programs and initiatives
- Strategically drive the development and execution of risk assessments and mitigation plans to enhance the client's ability to identify, evaluate, prioritize, and mitigate risks
- Design and develop cyber security strategies and programs for large and complex organizations adhering to industry standards and frameworks
- Assess, develop, and implement cyber security programs, including organizational design, cyber resilience, and other key processes for our clients
- Review clients’ cyber posture, strengths, and weaknesses in the context of business environment, goals, and objectives. Develop prioritized recommendations based on gaps and clients’ priorities and constraints
- Drive organizational changes and establish governance structures to achieve cyber goals and objectives
- Develop impactful reports and presentations that support the achievement of engagement goals and objectives
- Work with senior management stakeholders to define and implement overall future state philosophy and capabilities for the clients’ cyber security programs
- Lead project workstream and manage deliverables from inception to delivery, ensuring timelines, and quality standards are met
- Perform peer reviews and mentor team members
The Team
Deloitte’s Cyber Strategy and Transformation practice is focused on helping our clients to design and implement transformational programs to reduce and manage cyber threats. We help our clients to define their overall cyber strategy, design global, pan-enterprise programs that focus on mitigating threats, evaluating their objectives, priorities, strengths, and weaknesses, and roll out large scale organizational changes to achieve goals.
Qualifications and Experience
Required:
- Bachelor’s degree in information technology or related field
- 5-9 years of information security experience
- Excellent communication (verbal and written) and interpersonal skills
- Proficiency in Microsoft Office (Excel, PowerPoint, and Word)
- Hands-on experience working with industry standards and frameworks (e.g., ISO 27001, NIST, HIPAA, FedRAMP, PCI)
- Foundational understanding of AI/GenAI security frameworks (e.g., NIST AI RMF, ISO 42001, EU AI Act)
- Understanding of security requirements, contributions to security design and hands-on implementation of multiple security technologies and capabilities
- Hands-on experience developing cyber security policies and standards
- Hands-on experience working with stakeholders in identifying, prioritizing, and developing plans and roadmaps for cyber security programs
- Broad domain knowledge and strong understanding of three or more cyber security domains including (but not limited to):
- Cyber risk strategy
- Cyber security maturity assessments
- Cyber security operations
- Security architecture
- Data protection and privacy
- Application security/SDLC
- Cloud security
- Cloud infrastructure security
- Incident response
- Cyber resilience
- Zero Trust
Preferred:
- B.E. / B. Tech + MBA (Preferred)
- CISSP / CISM (or equivalent)
Our purpose
Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas and perspectives, and bring more creativity and innovation to help solve our clients’ most complex challenges. This makes Deloitte one of the most rewarding places to work.
Professional development
At Deloitte, professionals have the opportunity to work with some of the best and discover what works best for them. Here, we prioritize professional growth, offering diverse learning and networking opportunities to help accelerate careers and enhance leadership skills. Our state-of-the-art DU: The Leadership Center in India, located in Hyderabad, represents a tangible symbol of our commitment to the holistic growth and development of our people. Explore DU: The Leadership Center in India.
Benefits to help you thrive
At Deloitte, we know that great people make a great organization. Our comprehensive rewards program helps us deliver a distinctly Deloitte experience that helps that empowers our professionals to thrive mentally, physically, and financially—and live their purpose. To support our professionals and their loved ones, we offer a broad range of benefits. Eligibility requirements may be based on role, tenure, type of employment and/ or other criteria. Learn more about what working at Deloitte can mean for you.
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Requisition code: 363968
📌 Compliance Assessment - Senior Consultant (Bengaluru)
🏢 Deloitte
📍 Bengaluru