6/3/26
Apply now
- Start applying with LinkedIn
- Apply Now
Start
- Please wait...
Job Type: Permanent
Work Model: Hybrid
Reference code: 133440
Primary Location: Toronto, ON
All Available Locations: Toronto, ON; Halifax, NS; St. John's, NL
What will your typical day look like?In this role, you prepare responses that are thorough, accurate, and reflective of Deloitte's commitment to security and data protection. This position requires a proactive mindset, strong analytical capabilities as your contributions will be essential in maintaining our clients' trust and upholding our reputation. As part of the Security Inquiry Response Center you will:
• Address member firm, client, regulatory, and audit-related information security requests.
• Identify, gather, and pre-populate responses using Standard Answer Banks (SABs).
• Determine remaining questions needing consultation with Management, Client Security Leads (CSLs), or Subject Matter
• Experts (SMEs).
• Ensure the quality and consistency of work been done by other team members.
• Assign and plan tasks for other team members.
• Highlight and address issues in SABs and assist with their maintenance, improving quality of responses and expanding scope as necessary.
• Support service queue and mailbox rotation for consistent coverage.
• Analyze and evaluate security requests, internal/external assessments, and audits.
• Coordinate internal/external audit requests, including scoping, data gathering, and refinement.
• Assist with evidence gathering and sanitization activities.
• Build strong relationships with internal stakeholders and maintain regular communication with the management team,member firm CSLs and various SMEs to improve deliverable quality.
• Contribute to the development of best practices and stay up to date on global security policies, standards and technology.
About the teamDeloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.
Enough about us, let's talk about youDo you possess the following?:
• Bachelor's Degree or higher in business administration, a technology-related field, or equivalent
experience.
• One to three (1-3) years demonstrated experience in applying leading practices in a large-scale Information
Security, Technology Risk or Operational Risk environments, including strategy development and
execution, risk and governance experience.
• Basic knowledge of Information Systems Security, cyber security, IT auditing, IT risk management and compliance and/or vendor security risk management.
• Working knowledge of various IT risk frameworks, methodologies, leading industry/assurance standard and regulations, as well as attestation reporting frameworks, such as the ISO family of standards 27001/2, ISO 22301, ISO 27017, etc.), NIST, COBIT, SOC2 reporting framework.
• Basic knowledge of GRC tools (e.g., ServiceNow).
• Strong analytical and problem-solving skills.
Total RewardsThe salary range for this position is $69,000 - $114,000, and individuals may be eligible to participate in our bonus program. Deloitte is fair and competitive when it comes to the salaries of our people. We regularly benchmark across a variety of positions, industries, sectors, targets, and levels. Our approach is grounded on recognizing people's unique strengths and contributions and rewarding the value that they deliver.
Our Total Rewards Package extends well beyond traditional compensation and benefit programs and is designed to recognize employee contributions, encourage personal wellness, and support firm growth. Along with a competitive base salary and variable pay opportunities, we offer a wide array of initiatives that differentiate us as a people-first organization. On top of our regular paid vacation days, some examples include: $4,000 per year for mental health support benefits, a $1,300 flexible benefit spending account, firm-wide closures known as "Deloitte Days", dedicated days of for learning (known as Development and Innovation Days), flexible work arrangements and a hybrid work structure.