…

Assistant Third Party Risk Management Pune Cyber Strategy & Transformation

Deloitte India (South Asia) · Consulting & Professional Services

  • Pune, India
  • On-site
  • Posted 20 days ago
  • Apply by 27 Nov
  • Cybersecurity

About the job

Assistant Third Party Risk Management | Pune | Cyber Strategy & Transformation

Job requisition ID : 112799
Location : Pune
Entity : Deloitte Touche Tohmatsu India LLP

The Team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity

Your Work Profile

-

Your work profile

Lead end-to-end Third-Party Risk Management engagements.
Act as the TPRM SME and provide framework guidance.
Manage client discussions, workshops, and risk reviews.
Develop and oversee risk scoring models and dashboards.
Drive remediation planning and risk mitigation activities.
Lead the use of TPRM tools such as ServiceNow, Archer, and ProcessUnity.
Ensure compliance with DORA, FedRAMP, and other regulatory requirements.
Oversee privacy risk assessments for third-party engagements.
Manage ITGC, PCI DSS, and third-party control testing activities.
Review risk assessment results and provide executive-level reporting.
Mentor team members and ensure high-quality project delivery.

Key skills required:

Deep expertise in third-party risk management, IT security, and compliance.
Experience with ISO 27001, NIST, GDPR, and other regulatory standards.
Strong stakeholder management and leadership capabilities.
Familiarity with regulatory standards such as DORA and FEDRAMP.
Hands-on experience with tools used in third-party risk management.
Knowledge of privacy frameworks and data protection requirements.
Strong analytical, communication, and stakeholder management skills
Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.