Director, Cyber Transformation
Role details
Job location
Tech stack
Job description
- Providing guidance and support to executives to develop pragmatic and actionable cybersecurity strategics organisations.
- Leveraging a risk-based approach to emerging technologies and supporting organisations be digitally enabled.
- Supporting organisations in designing secure-proof transformation programmes,
- Assessing and reviewing the effectiveness of cyber operating models, both within the CISO function and embedded in IT/Business functions., * Develop practice capabilities to deliver Cyber Mergers & Acquisitions (M&A) projects, including repeatable processes, templates, and talent
- Build relationships with key client stakeholders and decision makers in the context of cybersecurity and M&A transactions
- Identify, socialise, and pursue nascent areas of opportunity for Cyber practice growth within the UK marketplace
- Build internal, cross-offering relationships to sell and deliver multi-faceted M&A services
- Conduct/lead assessment and benchmarking with industry leading practices pertaining to IT management, information security and cybersecurity
- Perform business requirement studies, evaluate technology options to address business needs, and improve operational efficiency
- Work with multiple levels of our clients, from C-level executives, senior and management staff, to on-the-ground professionals
- Establish governance frameworks for our clients, including strategies, organisation, policies, processes, standards, and guidelines.
- Review and analyse client IT and Cyber environments, from infrastructure and databases to applications
- Review and analyse existing workflows and business processes in the context of cybersecurity
- Work with internal teams to deliver complex engagements both locally and overseas
- Professionally advise and work with client IT and Cyber teams to design best-of-breed solutions for our clients
- Work closely with your team leaders and members on project delivery, which includes but is not restricted to research, analysis, advice and implementation
- Demonstrate and develop your leadership and professional capabilities in the following areas:
- Inspiring, creating purpose, Driving agility, Building diverse capability, Influencing, Collaborating, Delivering value, Building the business, Analytical acumen, Effective communication, Engagement management/delivery excellence, Managing change, Managing quality & risk, Sales excellence, Strategic thinking and problem solving, and Tech savviness.
Requirements
Successfully applicants typically have a degree or equivalent experience, with experience working in cyber security. They are agile thinkers capable of helping stakeholders manage a range of security challenges. They bring an ability to apply a robust understanding of security principles and technologies to support clients with varying risk appetite in the pragmatic management of cyber risk.
Desirable skills and experience would include the following:
- Bachelor's degree or above in Computer Science, Information Technology, Risk Management, Engineering or related disciplines, preferably with information security or IT solutions implementation experience
- Professional qualification holder will be an advantage: ITIL, OSCP, CISSP, CISA, CISM, CEH, ISO27K, COBIT, PMP, CIPT, CIPM, CBCP, ABCP, etc.
- 10+ years' experience, preferably from consulting firms/global system Integrators /large enterprises' project teams
- Practical experience in one or more of the following domains:
o M&A transactions
o Information security
o Cyber security
o IT service management
o IT optimization
o Information management
o Digital transformation
o Cyber / disaster recovery, incident and crisis management
- Specific industry experience will be an advantage (e.g. banking and finance, aviation, transportation, property development, pharmaceuticals, etc.)
- Familiarity with any of the following technologies would be an advantage:
o GRC tools
o Security controls like firewalls, proxies, segmentation, VPN, IDS/IPS, application firewalls, database controls, encryption
o IOT/Mobile technologies and related security best practices
o Cloud technologies (Amazon Web Services ("AWS"), Azure, etc.) and their operation and security best practices
o Data loss prevention solutions
o Identity and assess management solutions
o SIEM
o CASB
o SOC design, build and operation
- Strong analytical mind and problem-solving skills
- Excellent project management and interpersonal skills
In addition to the above the following are beneficial:
- Consulting experience
- Understanding of modern security concepts and principles, including cyber risk, strategy, maturity assessment
About the company
Deloitte drives progress. Our firms around the world help our clients become market leaders wherever they compete. Deloitte invests in outstanding people with diverse talents and backgrounds, empowering them to achieve more than they can elsewhere. Our work combines consulting with action and integrity. We believe that when our clients and society are stronger, so are we.