Jobs /

Information Security and Certification Management - Manager

Deloitte

Apply Now

Job Details

Location: Chicago, Cook County, Illinois, USA Glen Mills, Delaware County, Pennsylvania, 19342, USA The Hermitage, 4580, Rachels Lane, Nashville-Davidson, Davidson County, Tennessee, 37138, USA Princeton, Mercer County, New Jersey, USA Posted: Oct 28, 2019

Job Description

Position summary

Deloitte leads with purpose, solving complex issues for our clients and communities. Across disciplines and across borders, Deloitte Global supports our network of member firms by developing and driving global strategy, programs, and platforms, and creating new solutions and transformational experiences. Our people share a passion for igniting change and a strong service orientation that shapes our organization and those it supports.

We are seeking a Certification Team Manager. This position is responsible to assist the Senior Manager with delivery of Certification across the Global IT organization, more specifically the end to end delivery and maintenance of Global’s industry standard framework assessments and certifications.
The incumbent works closely with the other Global technology groups, leadership and member firm technology teams to ensure effective operation of Deloitte controls via policy and standards. He/she is responsible for obtaining and maintaining certifications for the operations, security, infrastructure, shared services and applications, depending on the defined scope.
This Manager role requires skills that enable the individual to deliver a high level of service to the business and to meet control expectations in a highly available agile infrastructure. Knowledge of core, specialized and technical competencies is required, along with a very solid understanding of an enterprise IT infrastructure operational environment. The incumbent should be a subject matter expert in Information Security processes and standards, as well as industry standard audit frameworks (i.e.- ISO, SOC, SOX).
Role Specific Responsibilities
Primary responsibilities include:

  • Manage and continually improve the processes surrounding the ISMS (Information Security Management System)
  • Assist in creation of monthly and quarterly reports and metrics related to the ISMS
  • Attend bi-annual ISM Management Review meetings to executive committee.
  • Attend and actively participate in the bi-weekly ISMS Forum meetings and assist in driving closure on all security related open items
  • Liaise with GISO, Project Management and Global Digital Application Studios (GDAS) teams to ensure continued support of the ISMS and compliance to the security related processes
  • Coordinate internal and external audits, including but not limited to ISO27001, ISO 27017, ISO 27018 and SOC2
  • Manage the end to end Privacy Shield certification process for DTTL business process areas
  • Liaise with the Global Privacy Office in GDRP conformance
  • Support TME in Global Security initiatives, including standard development, Cyber Acceleration and Global Target Operating Model

Additional responsibilities:

  • Responsible for execution of the Technology Risk Assessment Process for Global Technology- including risk awareness, risk assessment, risk treatment
  • Ensure awareness and compliance with all Information Security Management System policies and standards.
  • Report any breaches in information security or policies

People Management

  • Coach others
  • Cross-functional relationship management and support
  • Assist in hiring, staffing, management, development, and retention of all reporting personnel

Knowledge Sharing / Documentation

  • Contribute to, produce and maintain processes, procedures, operational documentation as well as drive continual improvement initiatives to align technology risk posture to Deloitte’s risk appetite.
  • Train new staff in technical processes and procedures

Education (degree): Bachelor’s Degree in Computer Science or other technology subject or equivalent industry experience.
Years of Experience: 4-7 years technical leadership and management experience in a large global enterprise environment (ideally Microsoft-based). The candidate must have a strong audit, compliance, certification and/or infrastructure operations background. In addition, the incumbent should have experience executing internal and external audits.
Excellent communication and leadership skills.
Technical Skills

  • Core Microsoft infrastructure applications including but are not limited to: Microsoft Windows Server Operating System, Exchange, IIS, SQL, System Center and other applications as deployed by the firm
  • Demonstrates ability to influence decision-making through high level analysis and interpretation of data from multiple sources. Ability to critically analyze results to detect data errors, anomalies or conflicts. Relates analysis to business strategy and process.
  • Ability to execute key operational and support processes, identify improvement opportunities and lead the development of the identified improvement and/or risk reduction efforts.
  • Executes design activities and establishes standards / leading practices for service design activities
  • Strong planning skills, demonstrating the ability to effectively execute and manage multiple activities, with minimal disruption to customers and within agreed upon requirements (product, financial, performance)
  • Demonstrated knowledge and strong interest in keeping abreast of Information Technology trends, directions and emerging technologies/risks including systems/technologies integration and design/architecture
  • Strong understanding of audit frameworks & technical standards.

Other Qualifications

  • Professional Qualifications are preferred, including:
    • Microsoft Qualifications
    • CPA
    • CISA
    • CRISC
    • Six Sigma
    • PMP

Location: Nashville (Hermitage), TN or Glen Mills, PA


All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Disclaimer: Nothing in this job description/posting shall constitute an offer or promise of employment. If you are not reviewing this job posting on our Careers’ site (jobs2.deloitte.com) or one of our approved job boards we cannot guarantee the validity of this posting. For a list of our current postings, please visit us at jobs2.deloitte.com



Requisition code: DE19USAGTS005LN1945

About Deloitte

Deloitte services include audit, consulting, financial advisory, risk management and tax. Deloitte’s impact can be as large or as small as our people make it. No more, no less. So we seek professionals who see differently, who find opportunity where others don’t, who look within themselves and know that with the right support and team they can impact the world.

View Website

Get More Interviews for This and Many Other Jobs

Huntr helps you instantly craft tailored resumes and cover letters, fill out application forms with a single click, effortlessly keep your job hunt organized, and much more.

Sign Up for Free