Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa

Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa


Main Purpose of Job

  • Supports the business leadership in the implementation of strategic plan and the effective management of team/s.

  • Build high performing teams to deliver in client engagements.

    Key Performance Areas

  • Strategic Impact

  • Budgets/Profitability

  • Differentiator

    Core Professional & Technical Capabilities

  • Risk Strategy

  • Risk Assessment and Mitigation

  • Delivery Excellence

  • Business Process Assessment and Design

  • Knows the Business and the Industry

  • Sales and Business Development

  • Global Mindset

  • Specialised Technical capabilities

    Input

  • Sets Strategy for and Sustains Implementation of Cyber Strategy Programs: Ability to lead clients through end to-end design and delivery of targeted, holistic, and sustainable cyber strategy programs

    Measurables

  • Helps client adopt a long-term view of cyber risk management by advising on leading practices to align cyber risk with risk appetite, key industry issues, and strategic business priorities

  • Owns end-to-end delivery of executive level cyber strategy programs across large and complex accounts

  • Leverages a strong industry knowledge to advise clients on current and potential changes in regulations, cyber threats, and other key trends

  • Leads stakeholders in building support and buy-in from Board of Directors to successfully enable and sustain overarching cyber risk strategies

  • Builds a brand within a chosen domain and industry and is regarded internally and externally as a subject matter expert

  • Stays current on market trends and regulations, and anticipates risk / opportunities; advises client accordingly

    Minimum Qualifications

  • Relevant Degree, honours or post graduate diploma, professional qualifications e.g. B.Sc, B.Com, or B.Ing/Eng or M.Sc

    Desired Qualifications

  • Advanced certifications, diplomas, professional certifications, advanced degrees in Information Technology or BCom Degree, Risk Management, Sustainability, Disaster Management - examples include:

    •Qualification with the BCM Institute – CBCI, FBCI, MBCI

    • ISO22301 Lead Auditor/Implementer Certificate

    • Cisco Unity Systems Engineer

    • ITIL – IT Infrastructure Library Foundation

    • Computer security incident response team (CSIRT) engineer and/or or suitable hands-on or product specific (e.g., Microsoft Azure, Amazon AWS, etc.) experience is required.

  • May require knowledge in a specific technology related to role i.e. BCM Tools

    • Must hold or be willing to pursue related professional certifications such as: BCI, PMI, CCSP, ISC, CISSP etc.

    Minimum Experience

  • 10 – 12 years’ working experience

    Desired Experience

  • 7 years in a client facing role; 3 of these in a management role

  • 10 – 12 years of progressive experience with role(s) in a professional, consulting services (including Boutique Crisis Management/ Cyber incident response/Business Continuity Firm), public and/or private sector organizations is required.

    • Experience in Business Continuity Management including Crisis Management, Disaster Recovery Management and Cyber Incident Response. To assist client’s senior stakeholders understand the scope and limitations of their cyber resilience programs relative to leading practices, industry trends, and regulatory expectations.

    Experience in

    • Crisis Management Simulation development

    • Business Impact Analysis (BIA) and Risk Assessments (RA) development

    • Business Continuity Management (BCM) principles

    • Disaster Recovery Management principles

    • NIST
    Cyber Security Framework for Critical Infrastructures (CSF)

    • Cyber Incident Response as Computer security incident response team (CSIRT) engineer

    • IT Operations and processes

    • Privacy implementation according to POPIA and/or GDPR

    • Laws related to Information Security, Cyber Security, Data Protection and/or Privacy

    • Sector specific experience in key sectors such as financial services, oil and gas, mining, retail, telecoms and technology would be considered advantageous

    Competencies

    Technical

  • Strong experience working with security intelligence, data analytics, security incident response, and forensic investigation teams;

  • Knowledge of current hacking techniques, vulnerability disclosures, data breach incidents, and security analysis techniques;

  • Familiarity with threat modelling, development of attack plans;

  • Familiarity with foundational information security frameworks such as ISO27001, NIST etc;

  • Familiarity with how Managed Security Services, Security Operations and SIEM technologies can work within the Incident Response lifecycle;

  • Willingness to operate as part of an ‘on-call roster’, travelling to assist our clients when required;

  • Bring deep SME and industry experience in selected Cyber sub offering (domain) to engage with clients and key stakeholders pragmatically.

  • Understands technical complexity at Network, Application, Database, Infrastructure and Cloud level.

  • Understand and interpret complex resilience related business challenges and ability to respond by conceiving innovative solutions for clients.

  • Strong on design and delivery of end-to-end resilience including Business Continuity, Disaster Recovery or Crisis Management or incident response solutions which are enabled by technology and can think independently and creatively when formulating solutions.

  • Solid experience with Archiving Solutions, Data Replications, Disaster Recovery Technology

  • Cloud Back-Up and Archiving Solutions (integration between Cloud and on premises)

  • Experience with BCM and Incident Recovery tools is desirable

    Good technical capability and technical certifications in the following areas:

    Risk Management, Sustainability, Disaster Management - examples include:

    • Qualification with the BCM Institute – CBCI, FBCI, MBCI

    • ISO22301 Lead Auditor/Implementer Certificate

    • Cisco Unity Systems Engineer

    • ITIL – IT Infrastructure Library Foundation

    • Computer security incident response team (CSIRT) engineer and/or or suitable hands-on or product specific (e.g., Microsoft Azure, Amazon AWS, etc.) experience is required.

  • May require knowledge in a specific technologies related to role.

    Behavioural

  • Exceptional communication skills, both written and verbal

  • Able deliver multiple engagements on time and within budget

  • Proven ability to make decisions and the right judgement calls in complex projects and situations

  • Creates a culture of trust, ownership and accountability across teams and projects

  • On the job coaching for managers and professional staff and taking accountability for multiple large engagements

  • Manages large engagement / multiple engagement deadlines holistically, identifying risks and escalating

  • Drives continuous improvement

  • Custodian of the business, shaping offerings that we need to proactively take to the market

  • Please note that this job advertisement provides a summary of the capabilities required and all candidates shortlisted will receive a full list of capabilities.

    How to Apply

    For more information and job application details, see; Deloitte Risk Advisory - Cyber Risk - Resilience (Crisis Management) - Senior Manager Jobs in South Africa

  • Click here to post comments

    Join in and write your own page! It's easy to do. How? Simply click here to return to NGO Jobs in Africa.