Deputy Manager – Cybersecurity GRC | Pune | Deloitte India

October 11, 2025

Job Description

Summary

Deloitte India is seeking a Deputy Manager – Cybersecurity Governance, Risk, and Compliance (GRC) to join our Technology & Transformation (T&T) practice. This role focuses on implementing and managing cybersecurity GRC frameworks such as ISO 27001, NIST, COBIT, supporting audits, risk assessments, and regulatory compliance initiatives.

As a Cybersecurity GRC professional, you will strengthen the organization’s information security posture, assist in ITGC and regulatory audits, monitor third-party risk, and ensure alignment between business objectives and cyber risk management best practices. This role is ideal for candidates with 1–5 years of experience in IT risk, compliance, or cybersecurity, looking to advance into a leadership-focused practitioner role.


Job Details at a Glance

Job TitleDeputy Manager – Cybersecurity GRC
DepartmentTechnology & Transformation (T&T)
EntityDeloitte Touche Tohmatsu India LLP
LocationPune, India
Experience Required1–5 years in GRC, IT audit, cybersecurity, or risk management
EducationBachelor’s degree in IT, Cybersecurity, Computer Science, or related field
CertificationsISO 27001 Foundation, CISA, CompTIA Security+ (preferred)
Job Requisition ID79127
Date PostedOctober 9, 2025
ShiftFull-Time
Tools / PlatformsGRC Tools (Archer, ServiceNow GRC, Excel Trackers)

Key Responsibilities

  • Support implementation, monitoring, and maintenance of cybersecurity GRC frameworks (ISO 27001, NIST, COBIT).
  • Assist in drafting and updating cybersecurity policies, procedures, and control documentation.
  • Conduct IT/cyber risk assessments and internal control reviews.
  • Maintain and update portions of the risk register and monitor mitigation plans and KRIs.
  • Assist in internal and external audits, including control testing and evidence collection.
  • Support third-party risk management and due diligence activities.
  • Track audit findings and monitor remediation efforts.
  • Prepare GRC dashboards and reports for internal stakeholders.
  • Collaborate with IT, legal, privacy, and compliance teams to support GRC initiatives.
  • Stay updated on cybersecurity regulations and frameworks, including SOX, GDPR, DPDP, PCI-DSS.
  • Support security awareness campaigns and training initiatives.
  • Leverage GRC tools like Archer, ServiceNow GRC, and Excel-based trackers to manage workflows.

Skills & Qualifications

Primary Skills

  • Governance, Risk & Compliance (GRC)
  • IT Risk Assessment & Control Testing (ITGC)
  • Information Security Policies & Standards
  • ISO 27001 / NIST / SOC 2 frameworks
  • Regulatory Compliance: SOX, GDPR, PCI-DSS, DPDP
  • Internal Audit Support
  • Risk Register Maintenance
  • Third-Party Risk Evaluation
  • Documentation & Reporting
  • Cybersecurity Awareness & Training

Secondary Skills

  • Audit Remediation Tracking
  • Vendor Due Diligence Support
  • Data Privacy & Protection Awareness
  • SLA / Contract Review (Basic Level)
  • KPI/KRI Reporting Support
  • Business Continuity & Disaster Recovery Awareness
  • Familiarity with Emerging Regulations (DORA, DPDP)
  • GRC Tools: Archer, ServiceNow, Excel Trackers

Qualifications

  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or related field
  • 1–5 years of experience in cybersecurity, IT audit, GRC, or risk management roles
  • Foundational knowledge of IT control and compliance frameworks (ISO 27001, NIST, SOC 2, COBIT)
  • Understanding of regulatory environments (GDPR, SOX, PCI-DSS, DPDP)
  • Strong analytical, documentation, and communication skills
  • Certifications like ISO 27001 Foundation, CISA, or CompTIA Security+ preferred

Location & Way of Working

  • Base Location: Pune, India
  • Travel: Frequent travel to client locations may be required
  • Work Mode: Hybrid, customized per team and client needs

Why Join Deloitte

  • Work with a high-impact Cybersecurity GRC team across multiple industries.
  • Gain experience in risk management, ITGC, compliance, and cybersecurity audits.
  • Collaborate with cross-functional teams including IT, legal, and compliance.
  • Access career development programs, leadership training, and Deloitte University initiatives.
  • Thrive in a culture of inclusion, innovation, and professional growth.

Apply Now

Advance your career as a Deputy Manager – Cybersecurity GRC at Deloitte India. Contribute to shaping secure enterprise environments, strengthen risk management practices, and collaborate with global teams.

👉 Apply Now on Deloitte Careers Page