IT Security- Vendor Risk: Analyst: Bangalore

Deloitte Development LLC

Hyderabad

On-site

INR 900,000 - 1,300,000

Full time

9 days ago
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Deloitte Technology Canada seeks an IT Security professional to support vendor risk and client assurance activities across third-party services, technology providers, and client-facing security obligations. You will coordinate with Legal, procurement, audit and business stakeholders to drive timely risk management outcomes and respond to client assurance requests while supporting SOC 1 and SOC 2 audits.

This role is based in Hyderabad with standard shift timings and requires collaboration across

Qualifications

  • Required: Bachelor’s degree or equivalent.
  • Experience conducting vendor risk assessments for third-party providers.
  • Experience completing client security questionnaires and supporting client audit requests.
  • Experience reviewing security clauses in master service agreements and statements of work.
  • Experience supporting SOC 1 and SOC 2 audits, including audit evidence collection and control validation.
  • Experience with security and control frameworks such as NIST 800-53, ISO 27001, and information technology general controls.
  • Experience with cloud technologies and cloud security controls.

Responsibilities

  • Assist in vendor risk assessment and client assurance activities across third-party services and providers.
  • Respond to client audit requests and coordinate questionnaire responses.
  • Review security clauses in MSAs and SOWs with Legal and business stakeholders.
  • Support SOC 1 and SOC 2 audit activities, including evidence collection and control validation.
  • Coordinate with internal teams, vendors, clients, procurement, legal, and audit stakeholders to ensure timely assurance activities.

Skills

Vendor risk assessment
Client security questionnaires
SOC 1 / SOC 2 audits
NIST 800-53 / ISO 27001
Cloud security controls

Education

Bachelor’s degree or equivalent

Job description

We are seeking a skilled IT Security professional to support vendor risk and client assurance activities for Deloitte Technology Canada. In this role, you will help assess third-party security and operational risk, respond to client assurance requests, and support audit and contractual security review activities. The role requires experience working across security, legal, procurement, audit, and business stakeholders to help drive timely and effective risk management outcomes.

Work you'll do

As an IT Security professional on the Deloitte Technology Canada security team, you will be responsible for supporting vendor risk assessment and client assurance activities across third-party services, technology providers, and client-facing security obligations.

  • Assess security, technology, and operational risks associated with third-party vendors and service providers.
  • Complete client security questionnaires and coordinate responses to client audit requests.
  • Review security clauses in master service agreements and statements of work in collaboration with Legal and business stakeholders.
  • Support SOC 2 and SOC 1 audit activities, including evidence gathering and control validation.
  • Coordinate with internal teams, vendors, clients, procurement, legal, and audit stakeholders to support timely completion of assurance activities.
The team

At Deloitte, we’re all about collaboration. And nowhere is this more apparent than among our 2,000-strong internal services team. With our combined specialist skills, we provide all the essential support and advice our client-facing colleagues need, right across the firm. This enables them to focus all of their efforts on delivering the best service possible to their clients. Covering seven distinct areas; Human Resources, Clients & Industries, Finance & Legal, Practice Support Services, Quality & Risk Services, IT Services, and Workplace Services & Real Estate, together we live, breathe and deliver the Deloitte experience.

Location: Hyderabad
Shift Timings: 2 PM to 11 PM IST
Qualifications

Required:

  • Bachelor’s degree or equivalent
  • Experience conducting vendor risk assessments for third-party providers
  • Experience completing client security questionnaires and supporting client audit requests
  • Experience reviewing security clauses in master service agreements and statements of work
  • Experience supporting SOC 1 and SOC 2 audits, including audit evidence collection and control validation
  • Experience with security and control frameworks such as NIST 800-53, ISO 27001, and information technology general controls
  • Experience with cloud technologies and cloud security controls

Preferred:

  • Industry certification such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Public Accountant (CPA), or similar
  • Experience working with cross-functional stakeholders across security, legal, procurement, audit, and business teams
  • Experience supporting assurance activities in a large enterprise environment
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

T&T | Cyber: CST | Assistant Manager | Risk Management | Bengaluru
T&T | Cyber: CST | Assistant Manager | Risk Management | Bengaluru

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Bengaluru

On-site
INR 1,500,000 - 2,400,000
Security & Compliance Analyst: Hyderabad
Security & Compliance Analyst: Hyderabad

Deloitte Development LLC • Hyderabad

On-site
INR 600,000 - 1,000,000
USI | FY27 | Audit Services | Tech Controls - Senior Consultant
USI | FY27 | Audit Services | Tech Controls - Senior Consultant

Deloitte Development LLC • Haryana

On-site
INR 1,800,000 - 2,500,000
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Assistant Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 1,500,000 - 2,100,000
T&T | Cyber - CST | Deputy Manager | Bangalore | GRC
T&T | Cyber - CST | Deputy Manager | Bangalore | GRC

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Assistant Manager | CISA | Mumbai | Cyber Strategy & Transformation
Assistant Manager | CISA | Mumbai | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Mumbai

On-site
INR 1,500,000 - 2,200,000
Digital Risk
Digital Risk

Wsne Consulting • Bengaluru

On-site
INR 2,500,000 - 4,000,000
T&T | Cyber - CST | Consultant | Bangalore | TPRM
T&T | Cyber - CST | Consultant | Bangalore | TPRM

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Consultant | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Consultant | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 900,000 - 1,300,000
Deputy Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation
Deputy Manager | Security Frameworks and Standards | Pune | Cyber Strategy & Transformation

Deloitte & Touche GmbH Wirtschaftsprüfungsgesellschaft • Maharashtra

On-site
INR 1,800,000 - 3,000,000