Job Description
Summary
Deloitte India is looking for a skilled Deputy Manager in Cybersecurity Governance, Risk, and Compliance (GRC) to join our Pune office. This role is perfect for IT and cybersecurity professionals with 1–5 years of experience in GRC, IT audit, risk management, or compliance. The Deputy Manager will support the implementation of cybersecurity frameworks, risk assessments, audits, and regulatory compliance initiatives (ISO 27001, NIST, COBIT, SOX, GDPR, PCI-DSS, DPDP).
If you are passionate about information security, risk management, and compliance, this role offers a unique opportunity to contribute to Deloitte’s secure, resilient, and innovative cyber environment while advancing your career in a global professional services firm.
Job Details at a Glance
| Job Title | Deputy Manager – Cybersecurity GRC |
|---|---|
| Entity | Deloitte Touche Tohmatsu India LLP |
| Department | Technology, Cybersecurity & GRC |
| Location | Pune, India |
| Work Mode | Office-based, with travel to client locations |
| Experience Required | 1–5 years in GRC, cybersecurity, or IT audit |
| Key Tools & Technologies | Archer, ServiceNow GRC, Excel-based trackers |
| Education | B.Tech / B.E. in IT, Cybersecurity, Computer Science or related field |
| Job ID | 79586 |
| Posted On | October 7, 2025 |
Role Overview
As a Cybersecurity GRC Deputy Manager, you will:
- Support the implementation and management of cybersecurity governance, risk, and compliance frameworks.
- Conduct IT/cyber risk assessments and maintain risk registers.
- Assist with internal and external audits and track remediation efforts.
- Align business operations with security standards and regulatory requirements.
- Collaborate across IT, legal, privacy, and compliance teams to strengthen cyber risk posture.
Key Responsibilities
- Implement GRC frameworks including ISO 27001, NIST, COBIT.
- Draft, review, and update cybersecurity policies, procedures, and controls.
- Conduct and document IT risk assessments and internal control reviews.
- Maintain portions of the risk register, track mitigation plans, and KRIs.
- Assist with audit activities, evidence collection, and control testing.
- Perform third-party risk assessments and support vendor due diligence.
- Support compliance with global cybersecurity regulations (SOX, GDPR, DPDP, PCI-DSS).
- Prepare GRC dashboards and reports for stakeholders.
- Collaborate with teams to support security awareness and training programs.
- Work with GRC tools such as Archer, ServiceNow, or Excel trackers.
Skills Required
Primary Skills:
- Governance, Risk & Compliance (GRC)
- Information Security Policies & Standards
- IT Risk Assessment
- ISO 27001 / NIST / SOC 2
- Regulatory Compliance (SOX, GDPR, PCI-DSS, DPDP)
- ITGC & Control Testing
- Internal Audit Support
- Risk Register Maintenance
- Documentation & Reporting
- Third-Party Risk Support
Secondary Skills:
- Audit Remediation Tracking
- Vendor Due Diligence Support
- Data Privacy & Protection Awareness
- SLA / Contract Review (Basic Level)
- KPI/KRI Reporting (Support Role)
- Change Risk Assessment Participation
- Business Continuity (BCP/DR) Awareness
- Familiarity with emerging regulations (DORA, DPDP)
Qualifications
- Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or related field.
- 1–5 years of experience in GRC, IT audit, risk management, cybersecurity, or compliance roles.
- Foundational knowledge of IT control frameworks (ISO 27001, NIST, SOC 2, COBIT).
- Understanding of regulatory compliance (GDPR, SOX, PCI-DSS, DPDP).
- Strong analytical, documentation, and communication skills.
- Certifications like ISO 27001 Foundation, CISA (beginner), or CompTIA Security+ are a plus.
Location & Work Mode
- Base location: Pune, India
- Office-based, with frequent travel to client locations as required
Career Growth & Culture
At Deloitte India, you will:
- Connect for impact: Work globally to solve complex cybersecurity challenges.
- Empower to lead: Grow professionally with mentorship and leadership opportunities.
- Inclusive environment: Thrive in a culture that values diversity, empathy, and collaboration.
- Career ownership: Leverage cross-business mobility, re-skilling, and development opportunities.
Apply Now
Take the next step in your cybersecurity career as a Deputy Manager – Cybersecurity GRC at Deloitte India.