T&T : Cyber: Cyber Strategy & Transformation-DM-GRC

Chennai, IN

Applications have closed

Deloitte

Für unsere Kunden entwickeln wir integrierte Lösungen. Unsere Services umfassen Wirtschaftsprüfung, Steuerberatung, Financial Advisory und Consulting.

View all jobs at Deloitte

JD-GRC/DM

 

Working knowledge in one or more security domains such as: Security Governance policies and procedures, Risk Management, Compliance, Access Control, Network Security, Security Architecture, Security Incident Response

Experience in leveraging industry standards and frameworks such as NIST, HIPAA, ISO/EC 27001, СОВІТ, ITIL, etc.

Demonstrates in-depth knowledge of security controls and risk management process

Experience in data protection technologies such as encryption, data discovery, data masking, data redaction, etc.

 

The key skills required are as follows:

Responsible for ISO 27001 based Information Security Management System implementation and sustenance

Assess client information security posture, identify the gaps/risks in the existing environment and develop solutions to mitigate the identified gaps/risk

Responsible to assist client in review / implement Information Security controls in areas as mentioned, but not limited to: Change management process, Incident management process, Backup process, User identity and access management, Antivirus management, SLA performance and monitoring, Media handling & Exchange of information, Physical and environmental Security, and Media & Information Handling

Responsible for conducting clients vendors risk assessment and providing a holistic view of clients risk exposure due to outsourcing

Responsible for advising and assisting clients to develop and implement Information classification framework

Conduct Information Systems audits covering IT infrastructure assets

Serves as technical lead or subject matter specialist on security and privacy implementation projects, responsible for design, build, testing and deployment of solutions

Demonstrates ability to work independently on projects with limited supervision

Demonstrates understanding of complex business and information technology management processes

Demonstrates working knowledge of firm tools and methodologies that may be suitable for the engagement

Manages day-to-day client relationships at mid and lower levels.

Participates in proposal development efforts to sell "add-on" work to clients

Identifies opportunities to improve engagement economics

Plays substantive role in designing and implementing business development plan for the service line

Plays substantive/lead role in retention of professionals and in building staff complement, mix, and recruiting

Undertakes initiatives in people and practice development

 

Desired qualifications

• B.E / B.Tech (Tier 1/2) in Computer Science, Information Technology or related fields

• ISO 27001 LA/LI, ISO 31000 LA/LI, CISA, CISSP, ITIL, or equivalent certification preferred

 

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Compliance Jobs

Tags: Antivirus Audits CISA CISSP Compliance Computer Science Encryption Governance HIPAA IAM Incident response ISO 27001 ITIL IT infrastructure Monitoring Network security NIST Privacy Risk assessment Risk management Strategy

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.