Stand out for this role — generate a tailored resume and cover letter in about a minute.
Deloitte Touche Tohmatsu India LLP in Bengaluru seeks an Assistant Manager for Security Frameworks and Standards to lead risk governance, audits, and regulatory compliance initiatives. The role focuses on IT/OT security, program design, and third-party risk management.
The ideal candidate will have experience across RBI/SEBI/IRDA controls, and hands-on capability in security assessments and control implementations within client environments.
Select how often (in days) to receive an alert:
T&T | Cyber: CST | Assistant Manager | Security Frameworks and Standards | Bengaluru
Job requisition ID : 112195
Location: Bengaluru
Entity: Deloitte Touche Tohmatsu India LLP
The Team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity
We expect our people to embrace and live our purpose by challenging themselves to identify issues that are most important for our clients, our people, and for society.
Establishing and maintaining risk governance frameworks, facilitating risk identification, evaluation, mitigation, and continuous monitoring
Designing and validating secure IT and OT architectures, ensuring integration of application security principles throughout the software development lifecycle.
Experience in design, development, and roll-out of security programs, developing IT risk management strategies, compliance programs.
Overseeing third-party risk assessments and managing compliance with regulatory frameworks such as RBI, SEBI, IRDA, PCI DSS, and others.
Planning and executing IT and OT security audits alongside IT General Controls (ITGC) testing, identifying gaps, and collaborating with teams to remediate vulnerabilities.
Assessing the organization’s cybersecurity maturity (using frameworks like NIST CSF) and developing strategic roadmaps to strengthen security posture over time.
Cyber Threat and Risk Assessment - Ability to identify business implications and identifying tactical and strategic recommendations to mitigate the risk.
Possesses certifications such as ISO27001 LA/ LI, ISO22301 LA/LI, PMP, CISSP, CISA, CISM certification- preferred.
Ability to define the business & technical scope of a project. Should be able to independently lead delivery teams to deliver projects according to client specifications after such scope is defined.
Key Skills Required