India s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realise your potential amongst cutting edge leaders, and organisations shaping the future of the region, and indeed, the world beyond.
At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.
The team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks
Your work profile
As a professional in our Cyber
-ES Team you ll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations: -
Location and way of working
- Base location: Mumbai
- Professional is required to work from office
Work you ll do
- Work independently to lead and complete high quality threat-based risk assessments, business impact analysis across a diverse set of cloud technologies, business functions, and platforms.
- Conduct cloud infrastructure security risk assessments based on cloud security best practices.
- Assess cloud security architecture
- Cloud security controls evaluation to ensure compliance with business scope, security policies and standards
- Preparing cloud infrastructure risk assessment reports.
- Work closely with internal management/team and client business representatives to scope assessments, gather documentation, interview clients, identify risks, document findings, and ensure transparent assessment of risks by following a structured risk assessment methodology.
- Driving the efforts to identify, assess, and communicate the cloud information security risks to relevant-internal and external stakeholders.
Skills Required:
- Strong understanding of cloud technologies and platforms: Azure/AWS/GCP/OCI
- Understanding of cloud security architecture
- Understanding of Zero trust principle, security technologies and controls:
AWS/Azure/GCP/OCI cloud native security controls, Identity Access Management, Data Security, IDS/IPS, SIEM, web application firewall, cryptography, Kubernetes, container security etc.
- Should have conducted cloud security assessments and configuration reviews as per industry best practices
- Familiarity with industry-leading standards and frameworks such as ISO 27001, NIST, CSA CCM, CIS benchmarks to help clients adhere to compliance requirements
- Knowledge and experience of Risk Management Lifecycle (Risk Identification, Risk Assessment, Risk Response, & Reporting)
- Experience with cloud security tools and services
- Knowledge and experience in developing/creating cloud security policies and frameworks for organizations
- Effective written and communication skills
- Strong sense of ownership, urgency, and drive
- Should have the ability to work independently
- Demonstrate teamwork and collaborate with other teams to ensure client s cloud environment is secure
Qualifications/Experience:
- Bachelor s degree preferred in Computer Science, Information Security, Information Technology, Engineering
- Cloud security certifications CCSK/CCSP, AWS/Azure/GCP
- 1-3+ years of working experience in Cyber Security Consulting with proficiency in cloud security assessment
- Should have played a role in client engagements
Preferred:
- Certifications: CCSK/CCSP, Azure/AWS/GCP certifications