Deloitte Jobs

Job Information

Deloitte BISO Manager in Charlotte, North Carolina

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.

Recruiting for this role ends on 18 Jun 2024

Work you'll do

The Tax Security Manager works closely with technical and non-technical stakeholders to support business transformation through the development of next-generation practitioner tools.

This role is responsible for the security posture of Deloitte's Tax business applications by driving security best practices and adherence to security policies, Deloitte standards, and industry-accepted standards. Bridging the gap between technical and non-technical domains, the Security Manager serves as a trusted advisor regarding security risks and risk mitigation approaches.

  • Serve as a trusted advisor to solution architects, developers, technical risk analysts, and others on information security principles, standards, and best practices.

  • Experience reviewing architectural designs from a cyber security perspective.

  • Experience evaluating the likelihood and impact of application vulnerabilities.

  • Experience conducting or managing application penetration testing to include the verification of remediation.

  • Working knowledge of Application Security Testing tools to support static and dynamic testing, as well as open-source security testing.

  • Working knowledge of Mend or other open-source scanning capabilities

  • Experience with developing and communicating application security vision, strategy, and roadmap.

  • Experience identifying, communicating, and overseeing the completion of technical implementations of cyber security solutions required to meet compliance standards.

  • Experience providing regular and timely reporting on the status of cyber activities to include application security, cyber operations and governance risk and compliance.

  • Demonstrated ability to communicate with technology and business leaders clearly and effectively. Lead, coach, and mentor project teams to incorporate cybersecurity principles into enterprise and client-facing applications.

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The 3,000 professionals in DT - US deliver services including:

  • Cyber Security

  • Technology Support

  • Technology & Infrastructure

  • Applications

  • Relationship Management

  • Strategy & Communications

  • Project Management

  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance

  • Identity & Access Management

  • Data Protection

  • Cyber Design

  • Incident Response

  • Security Architecture

  • Business Partnership

Required Qualifications:

  • Bachelor's degree or equivalent in Information Technology, Computer Science.

  • Minimum 6 years of experience in software development, security architecture, and/or application security.

  • Minimum 1 years of team leadership or project management experience.

  • Limited immigration sponsorship may be available

Preferred Qualifications:

  • Knowledge of cloud-based designs and secure evaluation of solutions involving IaaS, PaaS, and SaaS offerings.

  • Knowledge of Microsoft Azure and AWS security principles including container security.

  • Knowledge of SAFe Frameworks, Agile practices, SCRUM, Kanban.

  • Experience with Secure DevOps including coding, development, and operations.

  • Experience across multiple security domains such as identity and access management (IAM), public-key encryption, security information and event management (SIEM), incident response, threat & vulnerability management.

  • Working knowledge of information security standards and risk assessment frameworks such as ISO 27001, SOC 2, NIST 800-32, Cloud Control Matrix (CCM) desired.

  • CISSP preferred. Cloud-specific certifications (e.g., Microsoft Azure, AWS) preferred.

Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107700 to $221200.

#RITM7098892

#EA_ExpHire

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

DirectEmployers