Job Description
Summary
Deloitte India is hiring a Manager – Cybersecurity Risk Management (GRC) in Pune. This leadership role within Deloitte’s Technology & Transformation (T&T) Cyber Risk Consulting team focuses on Governance, Risk, and Compliance (GRC), helping clients safeguard critical assets while ensuring compliance with global regulatory standards.
As a Cybersecurity GRC Manager at Deloitte, you will lead enterprise-wide risk management initiatives, oversee cybersecurity compliance frameworks (ISO 27001, NIST, COBIT, ITGC, SOX, GDPR, DPDP, PCI-DSS), and collaborate with senior stakeholders to design secure, compliant, and scalable digital ecosystems.
This opportunity is ideal for experienced professionals with 8–14 years of cybersecurity, IT audit, or risk management expertise, looking to advance their consulting career with Deloitte, one of the world’s top professional services firms.
Job Details at a Glance
| Job Title | Manager – Cybersecurity Risk Management (GRC) |
|---|---|
| Company | Deloitte Touche Tohmatsu India LLP |
| Location | Pune, India |
| Business Unit | Technology & Transformation – Cyber Risk Consulting |
| Job Requisition ID | 87540 |
| Date Posted | September 18, 2025 |
| Designation | Manager |
| Experience | 8–14 years (including 3–5 years in leadership/client-facing roles) |
| Work Mode | Hybrid (Pune base location) |
| Tools/Platforms | RSA Archer, ServiceNow GRC, MetricStream |
| Certifications (Preferred) | CISA, CRISC, CISSP, ISO 27001 LA/LI |
Key Responsibilities
As a Manager – Cybersecurity Risk Management (Pune) with Deloitte, you will:
- Lead enterprise-wide GRC strategy design and implementation using ISO 27001, NIST CSF, COBIT, COSO, and ITIL frameworks.
- Manage risk assessments, compliance audits, and cybersecurity governance programs across industries.
- Oversee regulatory compliance (SOX, GDPR, HIPAA, PCI-DSS, DPDP, DORA, SEC cyber disclosure).
- Direct third-party risk management (TPRM) – vendor assessments, due diligence, and contract reviews.
- Supervise cybersecurity audits (planning, control testing, remediation, closure reporting).
- Create and present executive-level dashboards, heatmaps, and compliance KPIs.
- Partner with legal, IT operations, audit, and leadership teams to drive a risk-aware culture.
- Provide subject matter expertise during M&A, cloud migration, and digital transformation projects.
- Drive business development via proposals, RFP responses, and client presentations.
- Optimize GRC tools and automation platforms (Archer, ServiceNow GRC, MetricStream).
- Mentor and develop high-performing cybersecurity teams.
Required Skills & Qualifications
- Education: Bachelor’s degree in IT, Computer Science, Cybersecurity, or related fields. Advanced degrees/certifications preferred.
- Experience: 8–14 years in cybersecurity, risk management, or IT audit with 3–5 years in leadership roles.
- Framework Expertise: ISO 27001, NIST, COBIT, COSO, ITGC, ITIL.
- Compliance Knowledge: Strong grasp of Indian and international cybersecurity regulations.
- Technical Tools: Hands-on with GRC platforms (RSA Archer, ServiceNow GRC, MetricStream).
- Soft Skills: Strong stakeholder management, client engagement, executive communication, and team leadership abilities.
- Certifications (Preferred): CISA, CRISC, CISSP, ISO 27001 LA/LI.
Why Join Deloitte?
At Deloitte, you’ll experience:
- Opportunities to lead large-scale cybersecurity risk projects.
- Exposure to global clients, cross-functional teams, and cutting-edge technologies.
- A culture of inclusion, innovation, and continuous learning.
- Access to mentorship programs, leadership development, and certifications.
- Career paths with global mobility and growth opportunities.
Apply Now
Step into a leadership role with Deloitte’s Cyber Risk Consulting team in Pune. Shape the future of cybersecurity and make an impact that matters.
👉 Apply for Deloitte Manager – Cybersecurity Risk Management (Pune)