Deloitte Jobs

Job Information

Deloitte Cyber Strategy Analytics and Insights Senior Consultant in Rosslyn, Virginia

As the scale, sophistication and impact of today's cyber threats increase, our clients rely on Deloitte's Cyber Strategy teams to understand the current threat landscape and advise on how to best assess and reduce their cyber risk exposure.

The Cyber Security Strategy team is responsible for assisting clients to define their cyber roadmap, assess the maturity of their cyber program, quantify and report on existing cyber risks, implement solutions to govern and manage cyber risk, and transform their cyber program to take advantage of new technologies and business models.

The Global Security Analytics and Insights Lead is a newly created role within the Strategy Group to drive development and sustainment of the security metrics and reporting program. The metrics program provides risk based insights for varied global audiences ranging from operational leaders to Board of Directors. Key expectations from the candidate involve:

  • Assist in building a global security metrics organization to support the organization's security agenda through security KRI's / KPI's and reporting of meaningful insights

  • Driving the buildout and maturing of the security metrics program - including people, process and technology components

    Work you'll do

  • Lead security metrics program development and implementation

  • Must be able to drive a team to ensure complete, accurate, and timely information to stakeholders

  • Ensure a standard process is used throughout the enterprise for metrics development, creation, and analysis

  • Ensure that metrics data is consistently collected, analyzed, and reported to leadership and stakeholders

  • Actively solicit input from stakeholders and provide feedback to the leadership and program manager at every step of program development and operation

  • Lead periodic refinement of standards-based and best practices compliant security metrics

  • Enable design and deployment of the mechanisms and tools for data harvesting and determine key risk indicators

    The Team

    Deloitte Advisory's Cyber Risk team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient. TM cyber risk programs. Join the team developing the future state of cyber risk solutions. Learn more about Deloitte Advisory's Cyber Risk Services practice.

    Qualifications

    Required:

  • Bachelor's degree in Statistics, Mathematics, Computer Science, or related discipline

  • 10+ years of experience and proven leadership in developing, reporting, and communicating analytic results

  • 5+ years of experience developing Key Risk Indicators / Key Performance Indicators related to Information Security or IT Risk Management

  • Working knowledge of information security industry frameworks (e.g. ISO, NIST)

  • Knowledge of regulatory environment as it applies to information security

  • Deep understanding of industry standards and emerging business intelligences and data management methodologies

  • Experience in implementation and usage of reporting and business intelligence solutions (Tableau, QlikView) and related data management

  • Above average analytical skills: candidate should be able to derive meaningful and risk based insights from data

  • Travel up to 75% (While 75% of travel is a requirement of the role, due to COVID-19, non-essential travel has been suspended until further notice)

  • 4+ years of information technology and/or information security experience

  • Undergraduate degree, with preferred concentration in technology, engineering, computer science, mathematics or business

  • Limited immigration sponsorship may be available

    Preferred:

  • Is a self-driven and motivated individual with proven ability to lead development of security programs involving multitude of areas and stakeholders

  • Is a great communicator (must have)

  • Is a great presenter and adept at several reporting and presentation tools (via Microsoft PowerPoint, Excel AND more advanced reporting solutions like Tableau, QlikView)

  • Is experienced in managing a team of in-house or contracted resources

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

DirectEmployers