Vista previa de la oferta
USI - EH27 - Cyber Security- Cyber Data Protection Assistant Manager
mid · Technology / Software Development
Assistant Manager, Cyber Engineering- Cyber Data Protection
Location: Hyderabad
At Deloitte Cyber, we help organizations address evolving cybersecurity challenges while capitalizing on emerging opportunities. Join a team of experienced professionals delivering innovative security solutions and managed services that reduce complexity, strengthen resilience, and empower clients to confidently achieve their business objectives in a dynamic threat environment.
Work you’ll do
US Cyber Data Protection team is responsible for securing and protecting confidential data of Deloitte US Member Firm, our Clients and our Employees. Team’s core mission is to implement consistent security controls to protect Firm’s data and data entrusted to us by our clients to build their trust and protect our brand. We are seeking an experienced, seasoned and energetic USI Cybersecurity Data Protection Assistant Manager to join the US Member Firm’s Cybersecurity Data Protection Team within Deloitte US Member Firm’s Technology Organization. This is a Cybersecurity Role based in India. You will own and lead Data Protection services, drive service maturity, enhance security capabilities, and deliver operational excellence.
The Data Protection Assistant Manager will be responsible for rolling out new cyber security technologies, enhancing existing cyber technologies, lead and providing on-going support to 181,000+ US/USI Deloitte Member Firm Professionals for various Cyber Data Protection technologies. This includes but not limited to: Web Content URL Filtering, Cloud Access Security Broker (CASB), Web Application Firewall (WAF), Nextgen Antivirus and Endpoint Detection and Response (EDR), Endpoint Admin Rights Management, Malicious Browser Extension Protection, Safe Enablement of Contractor Unmanaged Devices and Bring Your Own Devices (BYOD) using Secure Enterprise Browser, Zero Trust Network Access to Applications using Clientless VPN, Data Loss Prevention (DLP), Data Classification and Rights Management, Data Minimization, Removable Media Protection, Data Discovery Roll Off Scan etc.
Primary responsibilities will be focused on effectively organizing, and leading large and complex cyber-security technology projects, work with stakeholder teams to adopt new cyber data protection services with minimal business disruption, lead the technical configuration, implementation, administration and management of multiple cyber security products and solutions for Deloitte US Member Firm, troubleshoot complex support issues, implement and test policy configurations and lead day to day operational support for multiple Cyber Data Protection Services. You will learn new security solutions to stay current with ever-changing security landscape. You will work with internal technology teams as well as interact with customers. You will require an understanding of the entire ecosystem of cyber data protection and well-rounded understanding of other information security domains and their inter-relations across that ecosystem. You will also require cyber security and data security industry technical knowledge and collaboration skills to work with all role levels and functional groups within Deloitte. The role requires strong technical expertise, leadership, stakeholder management, and a proven ability to manage and evolve cybersecurity services over the long term. You will serve as the Lead and final escalation point on all challenges, issues, or escalations for Cyber Data Protection Services under your purview. You will manage stakeholder relationships and collaborate with Business Leaders, IT Leaders, Confidentiality and Privacy Stakeholders and Global Cyber Leaders to deliver outstanding support of US Cyber Data Protection services.
In this role, you will report directly to Executive Manager, Cyber Engineering.
Key Responsibilities
As part of the US Cybersecurity Data Protection team, this professional will have the following core responsibilities:
- SSL/TLS Certificate Lifecycle Management, Data Encryption, Public Key Infrastructure, etc. and other data protection related technologies.
- Lead the technical configuration, implementation, administration and management of multiple data protection cyber security products and solutions for Deloitte US Member Firm
- Lead complex US cyber security initiatives that strengthen security, provide positive user experience, and are smoothly integrated into US Member Firm.
- Lead cross-functional, collaborative cyber initiatives across teams and spearhead technical efforts with Vendors and Global Cyber teams.
- Lead various automation drives to find gaps in operations and avoid repetitive tasks.
- Lead and define vendor evaluations and proof of concepts for service improvements, in-flight projects and emerging technologies
- Design and architect cyber data protection controls as they are identified.
- Build excellent relationships with our Stakeholders and collaborate with Global Cybersecurity Data Protection Team to help develop US Data Security technical roadmap.
- Provide excellent customer service for Cyber Data Protection services and serve as a cyber trusted advisor to the Business
- Work with US Office of Confidentiality and Privacy, Business Information Security Officers, Deloitte Business Leaders and Enabling Areas on practical implementation of data protection controls across Deloitte US Member Firm to minimize data exfiltration risk.
- Develop, test, implement and manage cyber security controls and exceptions for various Data Security Technologies under team’s purview.
- Drive continuous improvement initiatives to achieve process and technology enhancement and efficiency in service delivery.
- Ensure the Data Protection service queues are monitored, and resolutions are implemented within the agreed SLA.
- Review, approve and create knowledge documents and playbooks outlining support procedures and workflows.
- Assist with resolving complex operational and technical issues, including working with other internal Deloitte technology teams, other Cyber security teams, and subject matter experts.
- Communicate and serve as a Technical Subject Matter Expert overseeing the implementation of data security solutions required to meet business objectives.
- Develop and maintain an in-depth understanding of Deloitte’s business processes, core systems, technologies, data, client engagement teams and customers.
- Protect Deloitte our brand and trust of Deloitte Clients by enhancing US Member Firm data and cyber security protections
The team
Information Technology Services (ITS) helps power Deloitte’s success, which serves many of the world’s largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.
The ~3,000 professionals in ITS deliver services including:
- Cyber Security
- Technology Support
- Technology & Infrastructure
- Applications
- Relationship Management
- Strategy & Communications
- Project Management
- Financials
Cyber Security
Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.
Areas of focus include:
- Risk & Compliance
- Identity & Access Management
- Data Protection
- Cyber Design
- Incident Response
- Security Architecture
- Business Partnership
Qualifications
Required:
- Bachelor's degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology, or a related field required.
- At least 6 or more years of relevant cyber security experience required in support and/or operations for a mid-to-large organization.
- Demonstrated ability in developing and implementing Cyber Security solutions and capabilities that are clearly aligned to business, technology, and threat drivers.
- Brings technical cyber security expertise in multiple cyber security domains for which you can go both deep and wide.
- Experience interacting, presenting, and working with senior management
- Minimum 6 years of professional experience within cyber data protection and information security space required with expertise in multiple areas from the list below:
- Data Classification and Rights Management Technology (i.e. Microsoft Purview Information Protection, Boldon James, Titus etc.)
- Data Loss Prevention Technology (Symantec DLP, McAfee DLP, Forcepoint DLP, Netskope DLP etc.)
- Data Discovery and Governance Technology (i.e., Symantec Network Discovery, Varonis, Veritas Data Insight, AvePoint Archiver, Sherpa etc.)
- Data Encryption Technologies (Vormetric Encryption, S/Mime, BitLocker etc.)
- Ability to write technical reports and communicate technical content to business users
- Strong written, oral communication and interpersonal skills are a must
- Self-motivated with a strong willingness to learn and grow with changing cloud technologies
- Troubleshooting and problem analysis skills
Preferred:
- Good understanding of malware family, attack vector, vulnerability, threat, and outbreak containment.
- AI protection experience a strong plus.
- Familiarity with networks, firewalls, servers, and end point security
- Familiarity with popular databases on both windows and UNIX platforms, including Oracle and MS SQL
- Familiarity with common identity, authentication, and directory services, such as Active Directory and LDAP
- Understanding of RBAC, least privilege, incident response and security operations is a plus.
- Experience with scripting tools and programing language such as PowerShell, Python, VB.
- Experience with AI automation tools is plus.
- Be up to date on cyber industry trends around cyber risk and data protection practices.
- Broad knowledge and experience across IT infrastructure with security frameworks and standards such as ISO 17799/27001 and other relevant security-related regulations such as PCI, HIPAA, SOX etc.
- Experience with data risk program design, including alignment to cybersecurity and compliance programs.
- Experience working with data protection and information security policies, standards and procedures
- Experience with cloud collaboration tools
- Familiarity with change management, deployment and operational processes in large IT organizations
- Experience with vendor relationship management
- Understanding of networking and core networking protocols (e.g. TCP/IP, UDP, DNS, SMTP, HTTP, and distributed networks)
- Knowledge in different types of VPN, Encryption Standards, Certificates
- Strong understanding of security controls in public cloud environments (i.e. Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform) and SaaS services hardening.
- Understanding information security frameworks, incident management/response, security operations, and application security best practices.
How you’ll grow
At Deloitte, our professional development plan focuses on helping people at every level of their career to help them to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Deloitte’s culture
Our positive and supportive culture encourages our people to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them to be healthy, centered, confident, and aware. We offer well-being programs and are continuously looking for new ways to maintain a culture where our people excel and lead healthy, happy lives. Learn more about Life at Deloitte.
Corporate citizenship
Deloitte is led by a purpose: to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our people and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities. Learn more about Deloitte’s impact on the world.
Recruiter tips
We want job seekers exploring opportunities at Deloitte to feel prepared and confident. To help you with your interview, we suggest that you do your research: know some background about the organization and the business area you’re applying to. Check out recruiting tips from Deloitte professionals