Job Description
đź“‹ Summary
Deloitte India is hiring an experienced Associate Director in GRC Cyber Security based in Gurgaon. This senior cybersecurity role specializes in Governance, Risk, and Compliance (GRC), focusing on implementing robust cyber risk frameworks, conducting security assessments, and leading compliance initiatives aligned with industry standards such as NIST, ISO 27001, and PCI DSS. If you have 12+ years of expertise in cybersecurity consulting, IT risk management, and regulatory compliance, this is your chance to lead transformative cybersecurity projects with a global leader.
Join Deloitte’s dynamic Cybersecurity team and leverage your skills in cyber risk management, security governance, vendor risk assessments, cloud security, and secure architecture design. You will drive client success by identifying gaps, mitigating risks, and embedding cybersecurity best practices across business operations while nurturing strong client relationships.
đź§ľ Job Details at a Glance
| Job Title | Associate Director – GRC Cyber Security |
|---|---|
| Location | Gurgaon, Delhi NCR, India |
| Department | Cybersecurity / Governance, Risk & Compliance (GRC) |
| Experience Required | 12+ years in cybersecurity consulting, risk management & compliance |
| Shift | Full-time, Day shift |
| Certifications | CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, PCI QSA preferred |
| Work Mode | On-site (Gurgaon office) |
| Key Tools & Frameworks | NIST CSF, ISO 27001, COBIT, ITIL, PCI DSS, AWS, Azure, Google Cloud |
🔍 Key Responsibilities
- Develop, implement, and sustain cybersecurity governance, risk management, and compliance frameworks aligned with business goals and regulatory requirements.
- Lead cybersecurity risk assessments, including third-party/vendor risk evaluations and gap analyses.
- Guide teams in enhancing clients’ information security posture by identifying risks and recommending practical mitigation strategies.
- Conduct cybersecurity maturity assessments using frameworks like NIST CSF, ISO 27001, and perform IT/OT security audits.
- Oversee implementation and continuous improvement of ISO 27001 Information Security Management Systems (ISMS).
- Plan and execute IT General Controls (ITGC) testing, covering access management, change management, and operational controls.
- Lead secure cloud architecture assessments and ensure compliance across major cloud platforms (AWS, Azure, Google Cloud).
- Provide expert guidance on secure software development lifecycle (SDLC), threat modeling, and application security.
- Manage regulatory compliance programs in line with RBI, SEBI, IRDA, PCI DSS, BCAS, and NCIIPC guidelines.
- Drive vulnerability management and remediation strategies.
- Build and nurture strong client relationships by tailoring cybersecurity solutions to client-specific needs.
- Mentor and guide junior team members, ensuring delivery excellence and timely completion of cybersecurity projects.
🛠️ Required Skills & Experience
- Bachelor’s or Master’s degree in Information Security, Computer Science, or related fields (B.E./B.Tech from Tier 1/2 institutes preferred).
- 12+ years of progressive experience in cybersecurity consulting, governance, risk management, and compliance.
- Strong knowledge of cybersecurity frameworks and standards: NIST, ISO 27001, COBIT, ITIL, PCI DSS.
- Relevant professional certifications such as CISSP, CISA, CISM, CRISC, ISO 27001 Lead Auditor/Implementer, PCI QSA are highly preferred.
- Hands-on experience with cloud security controls and architecture (AWS, Azure, Google Cloud).
- Expertise in conducting IT and OT security audits, risk assessments, and compliance monitoring.
- Excellent communication, stakeholder management, and team leadership skills.
- Ability to independently lead complex cybersecurity engagements and deliver high-impact solutions.
🎓 Qualifications
- Bachelor’s/Master’s degree in Information Security, Computer Science, or related domain.
- Preferred certifications: CISSP, CISA, CISM, CRISC, ISO 27001 LA/LI, PCI QSA.
🌟 Why Work With Deloitte?
- Work with one of the world’s leading professional services firms driving cybersecurity innovation.
- Collaborate on cutting-edge projects protecting top-tier clients from evolving cyber threats.
- Grow your career through continuous learning, leadership development, and global mobility.
- Thrive in an inclusive workplace that values diversity and fosters collaboration.
- Benefit from Deloitte’s employee-centric work environment supporting 360-degree happiness, flexibility, and well-being.
🚀 Apply Now
Take your cybersecurity career to the next level! Apply today for the Associate Director – GRC Cyber Security role at Deloitte Gurgaon.
👉 Apply Now on Deloitte Careers
Unlock your potential, lead with purpose, and make an impact that matters.