Job Title:  Manager | CISA | Delhi | Cyber Strategy & Transformation

Manager | CISA | Delhi | Cyber Strategy & Transformation
• Job requisition ID : 112746 
• Location: Delhi
• Entity: Deloitte Touche Tohmatsu India LLP 

The Team  

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity  

 

Your Work Profile 

The Manager –. The individual will work closely with senior leadership, contribute to client engagements, and help build organizational capabilities in AI security and governance. 

  • Guide teams/Handle client information security posture, identify the gaps/risks in the existing environment and develop solutions to mitigate the identified gaps/risk.
  • Recommend security solutions and enhancements aligned with business goals and threat landscape.
  • Conduct security risk assessments of third-party vendors and service providers.
  • Define TPRM frameworks and integrate them into the overall risk management program.
  • Perform cybersecurity maturity assessments using established frameworks such as NIST CSF, NIST-800-53, ISO 27001
  • Frontend teams for ISO 27001 based Information Security Management System implementation and sustenance-based projects

 

Key skills required:

  • Develop and implement cybersecurity strategies aligned with business, technology, and operational objectives.
  • Conduct cybersecurity maturity assessments, identify security gaps, and develop actionable cybersecurity roadmaps.
  • Define, review, and implement cybersecurity policies, standards, procedures, controls, and governance frameworks.
  • Lead cybersecurity assessments, risk assessments, vulnerability assessments, and security architecture reviews.
  • Provide cybersecurity subject matter expertise for digital transformation, smart grid, and critical infrastructure initiatives.
  • Assess security requirements for technology solutions and provide recommendations aligned with organizational risk appetite and regulatory requirements.
  • Lead cybersecurity projects and workstreams from planning and execution through implementation and closure.
  • Drive technical project management activities, including scope, timelines, dependencies, risks, resources, and stakeholder communication.
  • Collaborate with technology, engineering, infrastructure, operations, and business teams to embed security throughout the project lifecycle.
  • Review and evaluate security architectures, solutions, and technology implementations to identify potential risks and vulnerabilities.
  • Support the development and implementation of security controls aligned with industry standards and regulatory requirements.
  • Manage cybersecurity partners and vendors, including requirements definition, RFP evaluation, SLA management, performance governance, and service delivery.
  • Monitor cybersecurity and project KPIs, prepare data-driven reports, and provide actionable insights to senior stakeholders.
  • Maintain comprehensive cybersecurity documentation, governance records, assessment reports, and audit-ready evidence.
  • Support internal and external audits and ensure compliance with applicable cybersecurity, regulatory, and industry requirements.
  • Lead client engagements, workshops, presentations, and cybersecurity discussions with senior business and technology stakeholders.
  • Mentor and guide cross-functional cybersecurity and delivery teams, fostering a culture of security, quality, and continuous improvement.
  • Identify opportunities to improve cybersecurity processes, controls, operating models, and service delivery through industry benchmarking and emerging technology trends.
  • Bachelor’s degree in Engineering, Computer Science, Information Security, Cybersecurity, or a related discipline.
  • 8–10 years of overall cybersecurity experience.
  • 3–5 years of experience in technical project management, cybersecurity assessments, and vulnerability/risk assessments.
  • Proven experience working with critical infrastructure, industrial, utility, smart grid, or other operational technology environments.
  • Experience conducting cybersecurity maturity assessments, security assessments, risk assessments, and architecture reviews.
  • Experience managing cybersecurity projects, workstreams, vendors, and cross-functional stakeholders.
  • Strong understanding of cybersecurity governance, risk, compliance, security architecture, and control frameworks.
  • Experience working with senior leadership and influencing business and operational teams on cybersecurity priorities.