Third Party Risk - Controls Tester Senior Consultant

company banner
Full Time

Job Description

When you join the Deloitte Advisory Third-Party Risk Management (TPRM) practice, you will see how we work with some of the largest organizations in the world, across a variety of industries, to assist organizations in the development and operation of TPRM programs. Our client list includes eminent organizations across industries, e.g. technology, mining, media, pharmaceuticals, oil and gas, public sector and charities.

Work you will do
  • Perform ongoing third-party cyber risk assessments to help clients identify and evaluate complex business and technology risks related to their third parties.
  • Comply with delivery SLA's and provide periodic status updates including potential risks and delays to the project delivery to project manager.
  • Perform validation of sub-controls with third parties as per the validation process set by Deloitte and generate the final report in English language.
  • For the purposes of this job description, the scope of assessments is limited to English language only.

The team

Deloitte Advisory's Cyber Risk Services team helps complex organizations more confidently pursue their growth, innovation, and performance agendas through proactive management of the associated cyber risks. With deep experience across a broad range of industries, Deloitte Advisory's Cyber Risk Services professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to transform legacy programs into proactive Secure, Vigilant, Resilient TM cyber risk programs. By joining our team, you will be part of developing the future state of cyber risk solutions. Learn more about our Cyber Risk Services practice .

Qualifications and experience

  • Overall 3+ yrs of relevant experience in information security
  • Working knowledge and understanding of information security and risk frameworks/standards (ISO 27001/2, NIST 800 series, PCI-DSS, etc.)
  • Demonstrate knowledge of key risk areas such as cyber risk, compliance risk and regulatory risk
  • Demonstrate knowledge in one or more of the following cyber risk domains, including:
    • Security Governance and Management
    • Security Policies and Procedures
    • Application Security Controls
    • Access Controls
    • Network Security Operations
    • Security Architectures
    • Identity Management
    • Disaster Recovery & Business Continuity
    • Incident Response
    • Risk Management
    • Privacy and Data Protection
    • Encryption
  • Experience with internal controls, risk assessments, business process and internal IT control testing or operational auditing
  • Excellent verbal and written communication skills
  • Excellent inter-personal skills
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve

  • CISSP/CISA (or equivalent)
  • Experience with information security audit or assessments
  • Good understanding of legal and regulatory requirements around information security and data privacy, such as OCC Bulletin 29, FFIEC, HIPAA Security/Privacy, etc.
  • Prior consulting experience
  • Experience with internal controls, risk assessments, business process, and internal IT control testing or operational auditing


Company Information

Deloitte provides industry-leading audit, consulting, tax and advisory services to many of the world’s most admired brands, including nearly 90% of the Fortune 500® and more than 7,000 private companies. Our people come together for the greater good and work across the industry sectors that drive and shape today’s marketplace—delivering measurable and lasting results that help reinforce public trust in our capital markets, inspire clients to see challenges as opportunities to transform and thrive, and help lead the way toward a stronger economy and a healthier society. Deloitte is proud to be part of the largest global professional services network serving our clients in the markets that are most important to them. Now celebrating 175 years of service, our network of member firms spans more than 150 countries and territories. Learn how Deloitte’s more than 330,000 people worldwide connect for impact on our website.

Dice Id : 10106525
Position Id : 30042
Originally Posted : 1 year ago

Similar Positions at Deloitte

IAM - Senior Consultant
  • Gilbert, AZ
  • 1 day ago
ISAM/ISIM Senior Consultant
  • Gilbert, AZ
  • 1 day ago