Deloitte : Manager – ISMS (Information Security Management System)

FieldDetails
Job Requisition ID104180
Job TitleManager – ISMS (Information Security Management System)
CompanyDeloitte Touche Tohmatsu India LLP
LocationHyderabad
DesignationManager
PracticeCyber Security Transformation (CST)
DomainInformation Security Management System (ISMS)
Experience Required8+ Years
EducationBachelor’s Degree or Master’s Degree (Tier 1/Tier 2 Institutions Preferred)
Primary ResponsibilityLead Information Security Governance, Risk Management, Compliance, and ISMS implementation engagements
Core FrameworkISO 27001 Information Security Management System
Security GovernanceImplement, manage, review, and sustain ISO 27001-based ISMS programs
Security AssessmentsAssess client information security posture, identify gaps, risks, and compliance issues
Risk ManagementDevelop remediation plans and risk mitigation strategies for identified security gaps
Information Security ControlsDesign, review, and implement information security controls across organizations
Change ManagementReview and strengthen Change Management processes and controls
Incident ManagementEvaluate and improve Incident Response and Incident Management frameworks
Backup & RecoveryAssess Backup Management processes and business continuity controls
Identity & Access ManagementReview User Access Management, Authentication, Authorization, and Privileged Access Controls
Endpoint SecurityEvaluate Antivirus and Endpoint Protection Management processes
Service ManagementReview SLA Monitoring, Performance Management, and Operational Security Controls
Information HandlingDevelop controls for Media Handling, Data Exchange, and Information Protection
Physical SecurityAssess Physical and Environmental Security Controls
Vendor Risk ManagementConduct Third-Party/Vendor Risk Assessments and Outsourcing Risk Reviews
Information ClassificationDesign and implement Information Classification Frameworks and Data Protection Standards
Compliance FrameworksISO 27001, NIST Cybersecurity Framework, COBIT
Consulting ResponsibilitiesProvide cybersecurity advisory and compliance consulting to clients
Project ManagementIndependently manage cybersecurity engagements with limited supervision
Governance & ComplianceInformation Security Governance, Risk Assessment, Policy Development, Regulatory Compliance
Technical SkillsISMS, Risk Assessment, Security Controls Review, Vendor Risk Management, Information Classification
Soft SkillsStakeholder Management, Communication, Leadership, Documentation, Problem Solving
Industry FocusCybersecurity Consulting, Risk Advisory, Governance, Risk & Compliance (GRC)
Career LevelManager
Ideal CandidateCybersecurity Governance and Risk professional with 8+ years of experience in ISO 27001 implementation, ISMS management, risk assessments, vendor risk management, compliance consulting, and security governance frameworks such as NIST and COBIT

Click here to apply

Leave a Comment