| Job Title | Manager – Security Frameworks and Standards |
| Company | Deloitte Touche Tohmatsu India LLP |
| Job Requisition ID | 112131 |
| Location | Pune, Maharashtra |
| Department/Domain | T&T – Cyber CST / Cyber Strategy & Transformation |
| Experience | 8–10 years |
| Qualification | B.E./B.Tech (Tier 1/2) or Master’s in Information Security, Computer Science or related field |
| Role Focus | Cyber Risk, Security Controls, Cyber Capability Development and Security Technology Enablement |
| Cyber Assessments | Lead cyber capability and security control assessments across technology environments |
| Security Frameworks | NIST CSF, ISO 27001, CIS Controls and organizational standards |
| Risk & Gaps | Identify capability gaps, control deficiencies, cybersecurity risks and transformation opportunities |
| Maturity Assessment | Lead cyber maturity assessments and capability development roadmaps |
| Control Management | Control documentation, evidence management, remediation tracking and improvement initiatives |
| Security Domains | Identity, Endpoint, Network, Cloud and Application Security |
| Control Effectiveness | Assess preventive, detective and corrective security controls |
| Microsoft Sentinel & KQL | Use Sentinel, KQL and security telemetry for control validation and security effectiveness reviews |
| Security Analysis | Analyze security events, trends and control performance indicators |
| Governance & Assurance | Support cyber governance, risk management and assurance activities |
| Cyber Transformation | Contribute to programs focused on improving security posture and cyber resilience |
| Recommendations | Develop recommendations for capability modernization, control optimization and process improvement |
| Collaboration | Work with technology, infrastructure, cloud and business teams |
| Reporting | Support cybersecurity metrics, dashboards, reporting and executive-level insights |
| Incident Response | Knowledge of incident-response methodologies and common attack techniques |
| Key Skills | Cybersecurity, Cyber Risk, Security Controls, NIST, ISO 27001, CIS Controls, Microsoft Sentinel, KQL, Governance, Compliance |
| Soft Skills | Analytical Thinking, Problem Solving, Stakeholder Engagement, Documentation and Communication |