Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa
Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa
Main Purpose of JobSupports the business leadership in the implementation of strategic plan and the effective management of team/s.
Build high performing teams to deliver in client engagements.
Key Performance Areas
Strategic Impact
Budgets/Profitability
Differentiator
Core Professional & Technical Capabilities
Risk Strategy
Risk Assessment and Mitigation
Delivery Excellence
Business Process Assessment and Design
Knows the Business and the Industry
Sales and Business Development
Global Mindset
Specialised Technical capabilities
Input
Sets Strategy for and Sustains Implementation of Cyber Strategy Programs: Ability to lead clients through end to-end design and delivery of targeted, holistic, and sustainable cyber strategy programs
Measurables
Helps client adopt a long-term view of cyber risk management by advising on leading practices to align cyber risk with risk appetite, key industry issues, and strategic business priorities
Owns end-to-end delivery of executive level cyber strategy programs across large and complex accounts
Leverages a strong industry knowledge to advise clients on current and potential changes in regulations, cyber threats, and other key trends
Leads stakeholders in building support and buy-in from Board of Directors to successfully enable and sustain overarching cyber risk strategies
Builds a brand within a chosen domain and industry and is regarded internally and externally as a subject matter expert
Stays current on market trends and regulations, and anticipates risk / opportunities; advises client accordingly
Minimum Qualifications
Relevant Degree, honours or post graduate diploma, professional qualifications e.g. B.Sc, B.Com, or B.Ing/Eng or M.Sc
Desired Qualifications
Advanced certifications, diplomas, professional certifications, advanced degrees in Information Technology or BCom Degree, Risk Management, Sustainability, Disaster Management - examples include:
•Qualification with the BCM Institute – CBCI, FBCI, MBCI
• ISO22301 Lead Auditor/Implementer Certificate
• Cisco Unity Systems Engineer
• ITIL – IT Infrastructure Library Foundation
• Computer security incident response team (CSIRT) engineer and/or or suitable hands-on or product specific (e.g., Microsoft Azure, Amazon AWS, etc.) experience is required.
May require knowledge in a specific technology related to role i.e. BCM Tools
• Must hold or be willing to pursue related professional certifications such as: BCI, PMI, CCSP, ISC, CISSP etc.
Minimum Experience
10 – 12 years’ working experience
Desired Experience
7 years in a client facing role; 3 of these in a management role
10 – 12 years of progressive experience with role(s) in a professional, consulting services (including Boutique Crisis Management/ Cyber incident response/Business Continuity Firm), public and/or private sector organizations is required.
• Experience in Business Continuity Management including Crisis Management, Disaster Recovery Management and Cyber Incident Response. To assist client’s senior stakeholders understand the scope and limitations of their cyber resilience programs relative to leading practices, industry trends, and regulatory expectations.
Experience in
• Crisis Management Simulation development
• Business Impact Analysis (BIA) and Risk Assessments (RA) development
• Business Continuity Management (BCM) principles
• Disaster Recovery Management principles
• NIST
Cyber Security Framework for Critical Infrastructures (CSF)
• Cyber Incident Response as Computer security incident response team (CSIRT) engineer
• IT Operations and processes
• Privacy implementation according to POPIA and/or GDPR
• Laws related to Information Security, Cyber Security, Data Protection and/or Privacy
• Sector specific experience in key sectors such as financial services, oil and gas, mining, retail, telecoms and technology would be considered advantageous
Competencies
Technical
Strong experience working with security intelligence, data analytics, security incident response, and forensic investigation teams;
Knowledge of current hacking techniques, vulnerability disclosures, data breach incidents, and security analysis techniques;
Familiarity with threat modelling, development of attack plans;
Familiarity with foundational information security frameworks such as ISO27001, NIST etc;
Familiarity with how Managed Security Services, Security Operations and SIEM technologies can work within the Incident Response lifecycle;
Willingness to operate as part of an ‘on-call roster’, travelling to assist our clients when required;
Bring deep SME and industry experience in selected Cyber sub offering (domain) to engage with clients and key stakeholders pragmatically.
Understands technical complexity at Network, Application, Database, Infrastructure and Cloud level.
Understand and interpret complex resilience related business challenges and ability to respond by conceiving innovative solutions for clients.
Strong on design and delivery of end-to-end resilience including Business Continuity, Disaster Recovery or Crisis Management or incident response solutions which are enabled by technology and can think independently and creatively when formulating solutions.
Solid experience with Archiving Solutions, Data Replications, Disaster Recovery Technology
Cloud Back-Up and Archiving Solutions (integration between Cloud and on premises)
Experience with BCM and Incident Recovery tools is desirable
Good technical capability and technical certifications in the following areas:
Risk Management, Sustainability, Disaster Management - examples include:
• Qualification with the BCM Institute – CBCI, FBCI, MBCI
• ISO22301 Lead Auditor/Implementer Certificate
• Cisco Unity Systems Engineer
• ITIL – IT Infrastructure Library Foundation
• Computer security incident response team (CSIRT) engineer and/or or suitable hands-on or product specific (e.g., Microsoft Azure, Amazon AWS, etc.) experience is required.
May require knowledge in a specific technologies related to role.
Behavioural
Exceptional communication skills, both written and verbal
Able deliver multiple engagements on time and within budget
Proven ability to make decisions and the right judgement calls in complex projects and situations
Creates a culture of trust, ownership and accountability across teams and projects
On the job coaching for managers and professional staff and taking accountability for multiple large engagements
Manages large engagement / multiple engagement deadlines holistically, identifying risks and escalating
Drives continuous improvement
Custodian of the business, shaping offerings that we need to proactively take to the market
Please note that this job advertisement provides a summary of the capabilities required and all candidates shortlisted will receive a full list of capabilities.
How to Apply
For more information and job application details, see; Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa
Click here to post comments
Join in and write your own page! It's easy to do. How? Simply click here to return to NGO Jobs in Africa.