Job Description
Summary
Deloitte India is hiring an Assistant Manager – Cyber Security (GRC, CST) in Gurgaon. This opportunity is ideal for professionals with 4–6 years of cybersecurity consulting, governance, risk, and compliance (GRC) experience who are ready to drive impact in one of the world’s leading consulting firms.
In this role, you’ll work on cybersecurity strategy, risk management, compliance assessments, vendor risk audits, IT/OT security, and ISO/NIST framework implementations. Deloitte offers a dynamic career path, global exposure, hybrid learning, and inclusive work culture—empowering you to build your future while helping clients safeguard theirs.
Job Details at a Glance
| Job Title | Assistant Manager – Cyber Security (GRC, CST) |
|---|---|
| Location | Gurgaon, India |
| Entity | Deloitte Touche Tohmatsu India LLP |
| Department | Cyber Strategy & GRC |
| Designation | Assistant Manager |
| Job Type | Full-time, Onsite |
| Experience | 4–6 years in Cyber Security & GRC |
| Certifications (Preferred) | CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, PCI QSA |
| Key Frameworks | NIST CSF, NIST-800-53, ISO 27001, COBIT |
| Date Posted | September 18, 2025 |
Responsibilities
As an Assistant Manager – Cyber Security (Deloitte Gurgaon), you will:
- Develop and maintain risk and governance frameworks for client organizations.
- Assess information security postures, identify gaps, and recommend improvements.
- Conduct cybersecurity risk assessments of vendors and third-party providers.
- Lead and support ISO 27001 implementation and sustenance projects.
- Perform cybersecurity maturity assessments using NIST CSF, ISO, and other frameworks.
- Deliver IT and OT security audits and ITGC control testing (access, change, operations).
- Guide clients on regulatory compliance (RBI, SEBI, IRDA, NCIIPC, PCI DSS, etc.).
- Provide advisory on secure cloud architecture (AWS, Azure, Google Cloud).
- Manage and mentor teams in cybersecurity strategy projects.
- Document findings and create actionable security roadmaps for clients.
Skills & Competencies
- Strong expertise in cybersecurity consulting, risk management, and compliance.
- Hands-on knowledge of NIST, ISO 27001, COBIT, ITIL frameworks.
- Experience in application security, secure SDLC, threat modeling, and secure coding practices.
- Ability to conduct IT/OT audits, vulnerability assessments, and third-party risk reviews.
- Familiarity with PCI DSS assessments and regulatory security requirements.
- Strong analytical, problem-solving, and client-facing skills.
- Excellent stakeholder management and communication abilities.
Qualifications
- Bachelor’s or Master’s degree in Information Security, Computer Science, or related field.
- 4–6 years of relevant cybersecurity and GRC experience.
- Professional certifications (preferred): CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, ITIL, PCI QSA.
- Experience in leading teams and managing client engagements.
Why Join Deloitte?
- Global Opportunities – Collaborate with international clients and teams.
- Career Growth – Continuous learning, certifications, and leadership opportunities.
- Inclusive Culture – People-first workplace that values diversity and innovation.
- Impactful Work – Help organizations strengthen cybersecurity and resilience.
Apply Now
Ready to build your future with Deloitte?
👉 Apply directly on Deloitte Careers