Level: Senior Consultant
Work you'll do
Key job responsibilities include:
- Provide review and summary assessments based on key contractual documents (e.g., Master Services Agreement (MSA), Statement of Work, Amendment, Engagement Letter, Change Order, etc.)
- Review proposals and provide recommendations for terms that provide additional protections for data access, storage, and transfer
- Deployment of Confidential Information Management Plans (CIMPs) across accounts and engagements to all industries, Operating Portfolios, Products, and Acquisitions
- Prepare MSA summary, CIMP recommendations, and CI/CIMP training documentation
- Support the development and update of General Guidance, Market Offering Playbooks, and Account/Engagement CIMPs, as required
- Identify key contractual terms and requirements, including obligations and deliverables, related to CI terms
- Conduct Insider Risk investigations, evaluate risk indicators, analyze evidence, and drive timely resolution of cases in accordance with organizational policies and procedures
- Perform Cloud Access Security Broker (CASB) reviews and assess associated risks
- Conduct privacy verification activities to evaluate requests, validate compliance requirements, and ensure adherence to data protection and privacy policies
- Facilitate live CIMP training sessions for practitioners and stakeholders, providing guidance on processes, controls, and compliance requirements
- Develop and maintain training materials, e-learning content, job aids, and awareness resources to support learning and adoption of risk and compliance programs
- Collaborate with cross-functional teams to enhance processes, deliver training initiatives, and promote a culture of risk awareness and regulatory compliance
- Deliver CI Program and provide customized CI training to account or engagement teams as required
- Follow up with accounts/engagement data managers on tracking CIMP development and fulfillment progress
- Attend calls with C&P Risk Managers identifying projects to be included in the CI Program
- Assist with C&P website updates, manage team mailbox responses, and develop reports and dashboards to showcase effective monitoring
The team
The mission of Quality and Risk Management (QRM) is to manage the risk in our growing and increasingly complex business to improve financial performance and protect the firm’s assets and reputation. The mission of the Consulting Services Office of Confidentiality & Privacy (C&P) within QRM is charged to protect the informational assets of Deloitte and our clients.
The Consulting Services Office of Confidentiality and Privacy (C&P) is responsible for managing confidential information risk by working directly with delivery leadership and personnel to ensure data security throughout the delivery data lifecycle. The C&P team is responsible for helping to expand the Confidential Information (CI) risk management capabilities across all Deloitte industries in Consulting Services. The Senior Consultant will support the deployment of the CI Program to Industry Accounts and Engagements, working with Consulting Services Risk Managers (RM) to identify CI contractual risks and perform CI risk assessments, including recommendations on risk mitigation strategies and protocols through the deployment of the Confidential Information Management Plan (CIMP). The C&P team is responsible for the mitigation of incidents and the investigation of Insider Risk Program (IRP) cases where professionals have been identified for exfiltrating Deloitte and client sensitive confidential information.
Location: Hyderabad/ Bengaluru/ Pune/ Chennai
Shift Timings: 11 AM to 8 PM
Qualifications
Required:
- Education: Bachelor’s degree
- Experience: 10+ years of general contract interpretation and project management experience
- Deep understanding of risks associated with the delivery of professional consulting services and an ability to identify specific approaches to ameliorating such risks
- Basic understanding of cloud and AI applications, tools, methodologies, and software development process
- General understanding of contracts and ability to provide interpretation of contract terms
- Strong analytical, reading, and presentation skills
- Proven track record influencing diverse stakeholders and driving common outcomes with a strong understanding of commercial contracting processes, including terms and conditions
- Excellent leadership skills, including ability to prioritize critical needs, act decisively, and handle a high volume of complex tasks within a given timeframe
- Strong relationship and project management skills
- Strong verbal and written English communication skills
- Proficiency in the use of MS Office - Word, Excel (Formula/Pivot), PowerPoint, Teams and SharePoint
- Ability to build reports and dashboards for leadership review
- Willingness to learn new technical skills such as Smartsheet, Deloitte approved AI tools, and others as identified by project leaders
- Precision and attention to detail with a relentless focus on persistent and timely follow-up
- Accessibility / availability to respond to an unpredictable environment
- Highly collaborative work ethic; committed to team success
- Ability to multi-task across various initiatives and activities and at times work independently
- Work with, manage, and accommodate colleagues in other time zones; flexibility to be on call for urgent matters
- Quick learner, eager to learn new skills and technologies and apply them quickly to produce results
- Masters’ Degree or data privacy certifications
- Understanding of the different types of sensitive data (PII, PHI, etc.), the associated risk profile of handling each type of data, and the appropriate risk mitigation strategies to be deployed
- Ability to evaluate risks associated with large professional service engagements
- Able to showcase expertise in using any productivity tools (includes AI)