Compliance Assessment - Senior Consultant

Deloitte Development LLC

Bengaluru

On-site

INR 2,500,000 - 4,500,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Deloitte Development LLC is seeking a cybersecurity professional in Bengaluru to lead AI security efforts across IT/OT/AI environments. The role focuses on risk assessments, policy creation, and driving enterprise security programs in line with global standards.

You will collaborate with senior leaders to shape strategic cyber security programs and ensure secure, compliant AI initiatives. You will design reference architectures, implement security controls, monitor regulatory compliance, and

Qualifications

  • Bachelor’s degree in information technology or related field
  • 5-9 years of information security experience
  • Excellent communication (verbal and written) and interpersonal skills
  • Proficiency in Microsoft Office (Excel, PowerPoint, Word)
  • Hands-on experience with standards and frameworks (ISO 27001, NIST, HIPAA, FedRAMP, PCI)
  • Foundational understanding of AI/GenAI security frameworks (NIST AI RMF, ISO 42001, EU AI Act)
  • Understanding of security requirements; hands-on implementation of security technologies
  • Hands-on experience developing cyber security policies and standards
  • Stakeholder coordination for cyber security programs
  • Broad domain knowledge across cyber security areas (three or more)

Responsibilities

  • Perform comprehensive assessments of management, operational, and technical security controls within IT/AI/OT systems
  • Prepare, review, and analyze POAMs, SARs, and SAPs
  • Develop and implement AI Security Framework integrating security/privacy into AI/ML applications
  • Design secure reference architectures for AI-enabled systems with guardrails
  • Integrate AI security controls into enterprise architecture (encryption, access, adversarial robustness)
  • Draft and maintain AI security policies covering data privacy, bias mitigation, explainability
  • Monitor AI systems compliance with global regulations (NIST AI RMF, ISO 42001, EU AI Act)
  • Manage and execute cyberriskEngagements across the development lifecycle
  • Provide holistic enterprise cyberrisk views to aid decision making
  • Develop approaches, methods, and tools to support client cyber risk programs
  • Lead risk assessments and mitigation planning for client risk posture
  • Design and develop cyber security strategies and programs for large organizations
  • Assess and develop cyber security programs including organizational design and resilience
  • Review clients’ cyber posture and provide prioritized recommendations
  • Drive organizational changes and governance to achieve cyber goals
  • Create impactful reports and presentations supporting engagement goals
  • Collaborate with senior management to define future state capabilities
  • Lead project workstreams and ensure timely, quality deliverables
  • Perform peer reviews and mentor team members

Skills

Excellent communication
Microsoft Office
Security standards familiarity
AI/GenAI security basics
Security requirements understanding
Policy development
Stakeholder management
Cybersecurity domains knowledge

Education

Bachelor’s degree in information technology or related field

Job description

Deloitte’sCybersecurity Services helpourclientstobesecure,vigilant,andresilientinthefaceofanever-increasing array of cyber threats and vulnerabilities. Our Cybersecurity practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistentmanner.Ourserviceshelporganizationstoaddress,inatimelymanner,pervasiveissues,suchasidentity theft, data security breaches, data leakage, and system outages across organizations of diverse sizes and industries with the goal of enabling ongoing, secure, and reliable operations across the enterprise.

Workyou will do
  • Perform comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system, Artificial Intelligence (AI) system, and Operational Technology (OT) system to determine the overall effectiveness of the controls in accordance with industry standards and frameworks
  • Prepare, review, and analyze documents such as Plans of Actions and Milestones (POAMs), Security Assessment Reports (SAR), Security Assessment Plans (SAP)
  • Develop and implement AI Security Framework standardizing security/privacy integration into AI/ML-powered applications
  • Design secure reference architectures for AI-enabled systems, incorporating guardrails and runtime protections
  • Integrate AI security controls into enterprise architecture, including encryption, access management, and adversarial robustness measures
  • Draft and maintain AI security policies covering data privacy, bias mitigation, and explainability
  • Monitor compliance of AI systems with global regulations (NIST AI RMF, ISO 42001, EU AI Act) and internal governance standards
  • Manageandexecutecyberriskengagementsacrossthedevelopmentlifecycle –strategy,design, implementation, and managed services
  • Facilitateenterprisedecisionmakingbyprovidingaholisticviewofenterprise-widecyberrisk,assessingthe level of risk, and providing input into the management of risk
  • Developandtailorapproaches,methods,andtoolstosupportclientscyberriskprogramsandinitiatives
  • Strategically drive the development and execution of risk assessments and mitigation plans to enhance the client's ability to identify, evaluate, prioritize, and mitigate risks
  • Design and develop cyber security strategies and programs for large and complex organizations adhering to industry standards and frameworks
  • Assess, develop, and implement cyber security programs, including organizational design, cyber resilience, and other key processes for our clients
  • Reviewclients’cyberposture,strengths,andweaknessesinthecontextofbusinessenvironment,goals,and objectives. Develop prioritized recommendations based on gaps and clients’ priorities andconstraints
  • Driveorganizationalchangesandestablishgovernancestructurestoachievecybergoalsandobjectives
  • Develop impactful reports and presentations that support the achievement of engagement goals and objectives
  • Work with senior management stakeholders to define and implement overall future state philosophy and capabilities for the clients’ cyber security programs
  • Lead project workstream and manage deliverables from inception to delivery, ensuring timelines, and quality standards are met
  • Perform peer reviews and mentor team members

TheTeam

Deloitte’s Cyber Strategy and Transformation practice is focused on helping our clients to design and implement transformational programs to reduce and manage cyber threats. We help our clients to define their overall cyber strategy, design global, pan-enterprise programs that focus on mitigating threats, evaluating their objectives, priorities, strengths, and weaknesses, and roll out large scale organizational changes to achieve goals.

QualificationsandExperience

Required:

  • Bachelor’sdegreeininformationtechnologyorrelatedfield
  • 5-9years of informationsecurityexperience
  • Excellent communication (verbalandwritten) and interpersonal skills
  • Proficiency in Microsoft Office (Excel, PowerPoint, and Word)
  • Hands-on experience working with industrystandardsandframeworks(e.g., ISO 27001, NIST, HIPAA, FedRAMP, PCI)
  • Foundational understanding of AI/GenAI security frameworks (e.g., NIST AI RMF, ISO 42001, EU AI Act)
  • Understanding of security requirements, contributions to security design and hands-on implementation of multiple security technologies and capabilities
  • Hands-on experience developing cyber security policies and standards
  • Hands-on experience working with stakeholders in identifying, prioritizing, and developing plans and roadmaps for cyber security programs
  • Broad domain knowledge and strong understanding of three or more cyber security domains including (but not limited to):
  • Cyberriskstrategy
  • Cyber security maturity assessments
  • Cybersecurityoperations
  • Securityarchitecture
  • Dataprotection and privacy
  • Applicationsecurity/SDLC
  • Cloudsecurity
  • Cloud infrastructure security
  • Incident response
  • Cyberresilience
  • Zero Trust

Preferred:

  • B.E./B. Tech+MBA(Preferred)
  • CISSP/CISM(orequivalent)
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Manager | CISA | Delhi | Cyber Strategy & Transformation
Manager | CISA | Delhi | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Delhi

On-site
INR 2,400,000 - 3,800,000
Senior Security Consultant - Cloud & AI Security
Senior Security Consultant - Cloud & AI Security

Network Intelligence India • Pune District, Mumbai

On-site
INR 4,000,000 - 8,000,000
T&T | Cyber: D&R | Manager | Vulnerability Assessment & Penetration Testing (VAPT) | Bengaluru
T&T | Cyber: D&R | Manager | Vulnerability Assessment & Penetration Testing (VAPT) | Bengaluru

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Cyber Strategy Senior Consultant
Cyber Strategy Senior Consultant

Cloudxtreme • Hyderabad, Bengaluru, Delhi

On-site
INR 4,000,000 - 6,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Hyderabad

On-site
INR 3,500,000 - 6,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Maharashtra

On-site
INR 900,000 - 1,260,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Bengaluru

On-site
INR 4,000,000 - 7,500,000
Consultant
Consultant

Deloitte Shared Services India • Gurugram District

On-site
INR 1,500,000 - 3,500,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Chennai District

On-site
INR 3,500,000 - 7,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Mumbai

On-site
INR 4,200,000 - 7,000,000