
Overview
Location and way of working
- Base location: Mumbai
- Professional is required to work from office
Work you’ll do
- Work independently to lead and complete high quality threat-based risk assessments, business impact analysis across a diverse set of cloud technologies, business functions, and platforms.
- Conduct cloud infrastructure security risk assessments based on cloud security best practices.
- Assess cloud security architecture
- Cloud security controls evaluation to ensure compliance with business scope, security policies and standards
- Preparing cloud infrastructure risk assessment reports.
- Work closely with internal management/team and client business representatives to scope assessments, gather documentation, interview clients, identify risks, document findings, and ensure transparent assessment of risks by following a structured risk assessment methodology.
- Driving the efforts to identify, assess, and communicate the cloud information security risks to relevant-internal and external stakeholders.
- Strong understanding of cloud technologies and platforms: Azure/AWS/GCP/OCI
- Understanding of cloud security architecture
- Understanding of Zero trust principle, security technologies and controls:
- Should have conducted cloud security assessments and configuration reviews as per industry best practices
- Familiarity with industry-leading standards and frameworks such as ISO 27001, NIST, CSA CCM, CIS benchmarks to help clients adhere to compliance requirements
- Knowledge and experience of Risk Management Lifecycle (Risk Identification, Risk Assessment, Risk Response, & Reporting)
- Experience with cloud security tools and services
- Knowledge and experience in developing/creating cloud security policies and frameworks for organizations
- Effective written and communication skills
- Strong sense of ownership, urgency, and drive
- Should have the ability to work independently
- Demonstrate teamwork and collaborate with other teams to ensure client’s cloud environment is secure
- Bachelor’s degree preferred in Computer Science, Information Security, Information Technology, Engineering
- Cloud security certifications – CCSK/CCSP, AWS/Azure/GCP
- 1-3+ years of working experience in Cyber Security Consulting with proficiency in cloud security assessment
- Should have played a role in client engagements
Preferred:
- Certifications: CCSK/CCSP, Azure/AWS/GCP certifications
*Caution against fraudulent job offers*: We would like to advise career aspirants to exercise caution against fraudulent job offers or unscrupulous practices.
At Deloitte, ethics and integrity are fundamental and not negotiable. We do not charge any fee or seek any deposits, advance, or money from any career aspirant in relation to our recruitment process. We have not authorized any party or person to collect any money from career aspirants in any form whatsoever for promises of getting jobs in Deloitte or for being considered against roles in Deloitte. We follow a professional recruitment process, provide a fair opportunity to eligible applicants and consider candidates only on merit. No one other than an authorized official of Deloitte is permitted to offer or confirm any job offer from Deloitte. We advise career aspirants to exercise caution.
In this regard, you may refer to a more detailed advisory given on our website at: https://www2.deloitte.com/in/en/careers/advisory-for-career-aspirants.html?icid=wn_