Job Title: T&T | Cyber: ES | Manager | Security Architect | Pune

T&T | Cyber: ES | Manager | Security Architect | Pune
• Job requisition ID : 109415
• Location: Pune
• Entity: Deloitte Touche Tohmatsu India LLP
The team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Lear more about Cybersecurity
Your work profile:
- Development and implementation of effective security administrative processes for all platforms, including security architecture, aligned to the organisations security and regulatory requirements.
- Assessments and analysis on new security technologies, including cloud access security brokers (CASBs), cloud data loss prevention (DLP) solutions, and cloud encryption solutions, to secure the client environments through seamless integration.
- Implementation of security monitoring solutions to detect and alert on potential security threats and anomalies.
- Execution of incident investigations related to cyber security to identify the root causes and implement corrective measures promptly to minimize damage and return to normal operations.
- Identification, analysis and implementation of emerging security technologies and solutions to prevent threats
- Development and maintenance of comprehensive documents and reports for senior stakeholders on security architecture, policies, procedures and incidents.
- Collaboration with operation team to manage the security infrastructure, including identity and access management (IAM), network security, and data security controls, to protect resources from unauthorized access and data breaches.
- Develop, implement, and maintain the organization's enterprise-wide cybersecurity and information security strategy.
- Ensure compliance with applicable security frameworks, standards, and regulations, including ISO 27001, NIST, IT Act, and other relevant requirements.
- Conduct enterprise-wide information security risk assessments and maintain the organizational risk register.
- Develop, review, and enforce information security policies, standards, procedures, and governance frameworks.
- Identify, assess, and mitigate cybersecurity risks across the organization.
- Provide guidance on threat intelligence, vulnerability management, security monitoring, and emerging cyber threats.
- Define and monitor security KPIs, KRIs, metrics, and maturity improvement programs.
- Review and assess the security architecture of infrastructure, applications, endpoints, networks, and cloud environments.
- Provide strategic and technical recommendations to enhance security controls and architecture.
- Advise on implementation of industry best practices and security technologies.
Required Qualifications
- Bachelor’s degree in information security, Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum 8-10 years of experience in Security architecture, Cloud and information security, Data and Network security, risk management.
- Strong understanding of security frameworks such as ISO 27001, Zero Trust, Data Security, AI governance, NIST CSF, CIS Controls, COBIT, and regulatory compliance requirements.
- Experience in risk management, incident response, security governance, cloud security
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control)
- ISO 27001 Lead Implementer / Lead Auditor
- CCSP (Certified Cloud Security Professional)
Key Competencies
- Regulatory Compliance
- Security Architecture & Cloud Security
- Network and Data security, AI Security and Governance
Location: Pune
