Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Lead BISO Analyst image - Rise Careers
Job details

Lead BISO Analyst - job 1 of 2

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.Recruiting for this role ends on Dec 17, 2024Work you'll doWe are seeking a highly skilled and motivated professional to join our Government & Public Services (GPS) BISO team. The ideal candidate will be responsible for overseeing the security of information systems within the organization. The GPS BISO Analysis ensures compliance with relevant regulations and standards, including NIST, CMMC and other cybersecurity frameworks. This role involves implementing security measures, conducting risk assessments, and providing guidance on security best practices to protect sensitive information and maintain integrity of the organizations IT infrastructure.Responsibilities:• Lead other analysts on the BISO team. Develop, implement and maintain information security policies, procedures, and standards.• Assist with regular risk assessments and vulnerability assessments of information systems.• Lead tasks that support daily GPS operations. Ensure support for compliance requirements.• Monitor security alerts and respond to security incidents in a timely manner.• Ensure compliance with applicable security frameworks and regulations• Maintain documentation related to security policies, procedures, and compliance.The teamDeloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.The 3,000 professionals in DT - US deliver services including:• Cyber Security• Technology Support• Technology & Infrastructure• Applications• Relationship Management• Strategy & Communications• Project Management• FinancialsCyber SecurityCyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.Areas of focus include:• Risk & Compliance• Identity & Access Management• Data Protection• Cyber Design• Incident Response• Security Architecture• Business PartnershipRequired Qualifications:• Bachelor's degree or equivalent in Information Technology, Computer Science.• Minimum of 8 years of various technology experience.• Minimum 5 years of experience in cybersecurity, compliance, or risk management, with a focus DOD/Federal Frameworks.• Limited immigration sponsorship may be available.Preferred Qualifications:• Working knowledge of information security standards and risk assessment frameworks such as Cybersecurity Maturity Model Certification (CMMC), NIST 800-53, SOC 2, NIST 800-32, Cloud Control Matrix (CCM) desired.• Familiarity with federal regulations and compliance requirements related to cybersecurity (e.g. DFARS, FAR)• Strong understanding of NIST Standards, security controls, and risk management practices.• Understanding of cloud service models (IAAS, PAAS, SAAS) and deployment models (public, private, hybrid)• Experience across multiple security domains such as identity and access management (IAM), Access Control, incident response, threat & vulnerability management.• Relevant certifications (CISSP, CISM, CISA, Security + or CMMC Registered Practitioner).The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600 - $200,600Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.htmlEA_ExpHireRITM7948426All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Deloitte Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Deloitte DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Deloitte
Deloitte CEO photo
Jason Girzadas
Approve of CEO

Average salary estimate

Estimate provided by employer
$132500 / ANNUAL (est.)
min
max
$120K
$145K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Lead BISO Analyst, Deloitte

Are you ready to take your career to the next level as a Lead BISO Analyst at Deloitte Technology US (DT - US) in Davenport, IA? If you're someone who thrives in a collaborative environment, loves technology, and enjoys challenging the status quo, this role might be just what you’re looking for! In this position, you’ll oversee the security of information systems, ensuring compliance with vital regulations and standards including NIST and CMMC. As a key part of the Government & Public Services (GPS) BISO team, you’ll develop, implement, and maintain information security policies while leading a talented group of analysts. Your responsibilities will include conducting risk assessments, responding to security incidents, and providing expert guidance on security measures to protect sensitive information. With your strong understanding of cybersecurity frameworks and risk management practices, you'll be instrumental in fostering a culture of security within the organization and ensuring that our IT infrastructure is robust and reliable. At Deloitte, we pride ourselves on our innovative approach to technology, making this an exciting opportunity for someone eager to make a real impact. The work you do here will not only help protect our organization but will also contribute to safeguarding the reputation of Deloitte as a leader in the industry. Join us and be part of an inspiring team that thrives on continuous learning and excellence!

Frequently Asked Questions (FAQs) for Lead BISO Analyst Role at Deloitte
What are the primary responsibilities of the Lead BISO Analyst at Deloitte Technology US?

The Lead BISO Analyst at Deloitte Technology US is responsible for overseeing the security of information systems, leading other analysts, and ensuring compliance with cybersecurity regulations and standards such as NIST and CMMC. The role includes conducting risk assessments, implementing information security policies, and monitoring security incidents.

Join Rise to see the full answer
What qualifications do I need to apply for the Lead BISO Analyst position at Deloitte?

To apply for the Lead BISO Analyst position at Deloitte Technology US, you should have a Bachelor's degree in Information Technology or a related field, at least 8 years of technology experience, and 5 years of specific experience in cybersecurity or risk management, particularly focused on DOD/Federal Frameworks.

Join Rise to see the full answer
What types of experience are preferred for a Lead BISO Analyst at Deloitte Technology US?

Preferred experience for a Lead BISO Analyst at Deloitte includes familiarity with various information security standards such as CMMC and NIST, and knowledge of compliance regulations like DFARS and FAR. Additionally, experience across security domains like identity management and incident response is highly valued.

Join Rise to see the full answer
How does the Lead BISO Analyst contribute to Deloitte’s mission in cybersecurity?

The Lead BISO Analyst plays a critical role in Deloitte's mission by leading cybersecurity initiatives that protect both Deloitte and client data. They help develop a strategic cyber risk program that adapts to changes in the threat landscape, ensuring resilient cybersecurity measures are in place.

Join Rise to see the full answer
What are the salary expectations for the Lead BISO Analyst role at Deloitte Technology US?

The salary range for the Lead BISO Analyst position at Deloitte Technology US is approximately $97,600 - $200,600. This range considers various factors including skills, experience, and qualifications relevant to the role.

Join Rise to see the full answer
Common Interview Questions for Lead BISO Analyst
What experience do you have with compliance frameworks relevant to cybersecurity?

In your answer, focus on your knowledge and hands-on experience with frameworks like NIST and CMMC. Provide specific examples where you ensured compliance or led compliance initiatives in previous roles.

Join Rise to see the full answer
How would you approach conducting a risk assessment for a new system?

Discuss the steps you would take to identify vulnerabilities, evaluate potential threats, and determine the necessary controls to mitigate risks. Highlight your methodical approach and any tools you would use.

Join Rise to see the full answer
Can you describe a time when you led a team through a security incident?

Share a specific scenario where you took charge during a security incident, detailing your decision-making process, team coordination, and the outcomes. Emphasize your leadership and communication skills.

Join Rise to see the full answer
What measures do you believe are essential for maintaining information security?

Discuss key measures like implementing strong access controls, regular audits and assessments, continuous monitoring, and employee training. Relate these measures to industry standards for credibility.

Join Rise to see the full answer
How do you keep up-to-date with the evolving cybersecurity landscape?

Discuss your approach to continuous learning through online courses, attending conferences, or participating in cybersecurity forums. Mention specific resources or networks you follow for updates.

Join Rise to see the full answer
What role does documentation play in information security management?

Explain how documentation helps maintain compliance, provides a historical record for audits, and acts as a reference for training and incident response. Highlight your experience in maintaining clear documentation.

Join Rise to see the full answer
Describe your experience with conducting vulnerability assessments.

Provide examples of previous vulnerability assessments you've conducted, including methodologies used, tools applied, and how you reported and mitigated findings to enhance security.

Join Rise to see the full answer
How do you prioritize tasks when managing multiple security projects?

Discuss your organizational skills and strategies for prioritization, such as evaluating project impact, urgency, and compliance deadlines. Mention any tools you use for project management.

Join Rise to see the full answer
What do you consider the biggest challenge in cybersecurity today?

Share your perspective on current cybersecurity challenges, such as evolving threats, staffing shortages, or regulatory changes, and how you believe these can be addressed effectively.

Join Rise to see the full answer
Can you explain the importance of a security culture within an organization?

Discuss how fostering a security culture among employees enhances overall security posture, reduces human error, and encourages proactive reporting of potential security issues. Share any initiatives you've led in this domain.

Join Rise to see the full answer

Deloitte provides industry-leading audit, consulting, tax and advisory services to many of the world’s most admired brands, including nearly 90% of the Fortune 500® and more than 7,000 private companies. Our people come together for the greater go...

400 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 22, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!