Job Description
Summary
Join Deloitte India as a Cybersecurity Manager – GRC (Governance, Risk, and Compliance) and lead the way in designing, implementing, and managing enterprise-level cybersecurity and compliance frameworks. This opportunity is perfect for seasoned professionals experienced in cyber risk management, information security frameworks, regulatory compliance, and cloud security. Based in Gurgaon (Delhi NCR), this role allows you to make a strategic impact while working with top-tier clients and a world-class cyber team.
If you’re passionate about cyber risk, compliance frameworks (ISO 27001, NIST, COBIT), and want to grow your career with one of the most trusted consulting brands in the world, this is your next big move.
Job Details at a Glance
| Position Title | Cybersecurity Manager – GRC (Governance, Risk & Compliance) |
|---|---|
| Company | Deloitte Touche Tohmatsu India LLP |
| Location | Gurgaon, Delhi NCR |
| Work Type | Full-time, On-site |
| Job ID | 82933 |
| Experience Level | 8+ years in cybersecurity, risk, and compliance |
| Core Domains | GRC, ISO 27001, NIST CSF, Risk Assessments, Cyber Audits |
| Tools/Frameworks | ISO 27001, COBIT, NIST-800-53, ITIL, PCI DSS, RBI/SEBI Guidelines |
| Education | B.E/B.Tech or Master’s in CS/IT or related field |
| Certifications (Preferred) | CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, ITIL, PCI QSA |
Key Responsibilities
As a Cybersecurity Manager – GRC at Deloitte India, you will:
- Lead the implementation of governance, risk, and compliance (GRC) frameworks.
- Perform cybersecurity maturity assessments using NIST CSF, ISO 27001, COBIT, and other standards.
- Oversee ISO 27001 implementations and manage certification sustainment.
- Conduct cybersecurity risk assessments, identifying control gaps and recommending mitigation plans.
- Manage third-party risk assessments (TPRM) and vendor security evaluations.
- Plan and execute IT/OT security audits, including IT General Controls (ITGC) testing.
- Ensure compliance with regulatory frameworks (RBI, SEBI, IRDA, NCIIPC, BCAS, PCI DSS).
- Evaluate application security architectures, secure SDLC processes, and threat modeling.
- Advise on secure cloud environments (AWS, Azure, Google Cloud).
- Create strategic security roadmaps, align IT security with business objectives.
- Lead, mentor, and manage cross-functional delivery teams and client relationships.
Required Skills & Qualifications
Core Experience:
- 8+ years in cybersecurity, information security, GRC consulting, or IT risk management.
- Deep understanding of security frameworks: ISO 27001, NIST, COBIT, ITIL.
- Strong grasp of cloud security models and risk compliance mandates.
- Experience working in regulated environments (e.g., finance, insurance, BFSI).
Technical Expertise:
- Cyber maturity frameworks (NIST CSF, NIST 800-53)
- Regulatory compliance: RBI, SEBI, IRDA, PCI DSS
- Secure architecture reviews: IT & OT
- TPRM & vendor risk evaluations
- Secure SDLC, application security, vulnerability assessments
Preferred Certifications:
- CISSP, CISA, CISM, CRISC
- ISO 27001 LA/LI, ISO 31000, ISO 22301
- PCI QSA, ITIL v4
- PMP (bonus for project management experience)
What You Bring to the Table
- Expertise in GRC frameworks, cyber risk strategy, and security audits
- Ability to communicate security risks and solutions to technical and non-technical stakeholders
- Experience in client-facing leadership roles
- Strategic thinker with an eye for operational details
- A collaborative mindset and the ability to manage and mentor teams
Why Work at Deloitte India?
- Top-tier clients & global exposure
- Work with cutting-edge cybersecurity technologies
- Access to continuous learning, certifications, and leadership development
- Inclusive culture that values individuality and innovation
- Be part of a team that truly makes an impact that matters
Apply Now
🚀 Ready to lead cyber strategy and risk governance for world-class clients?
🔗 Click here to apply on the official Deloitte Careers Page
📌 Job ID: 82933 | Location: Gurgaon
Take the leap. Elevate your career with Deloitte Cybersecurity India.