1. Home
  2. Jobs
  3. Deloitte
  4. Information Security GRC Lead
AI

Information Security GRC Lead

Deloitte
Cairo, Egypt Listed 1h ago via Naukrigulf
python sql aws azure terraform ansible ci/cd llm security

Job Description Roles & Responsibilities Location Cairo, Egypt Delivery Center Information Security GRC Lead Connect to your career at Deloitte Deloitte, established globally in 1845, is the world s largest and leading professional services firm, providing Audit & Assurance, Tax & Legal and Consulting and related services to public and private clients spanning multiple industries. Presented in more than 150 countries, Deloitte is distinct in its ability to help clients solve their most complex problems, from strategy to implementation. Deloitte Innovation Hub (DIH) is a strategic initiative to support our ambition to become the leading business transformation partner of choice for our clients and to expand and scale our delivery footprint across EMEA. With access to a scaled, diverse, highly skilled, motivated, and engaged workforce, DIH is delivering complex technical solutions for clients most complex business problems, across portfolios that include Strategy & Transactions , Customer , Engineering, AI & Data, Enterprise, Technology & Performance and Cyber . DIH is aiming to become the destination for top talents in Egypt for a long, exciting career. We invest in outstanding people of diverse talents and backgrounds and empower them to achieve more than they could elsewhere. Our work combines advice with action and integrity. We believe that when our clients and society are stronger, so are we. Our organization has grown in scale and diversity, providing services across the region, with our shared culture remaining the same. We aim to help clients realize their ambitions, make a positive difference in society, and maximize the success of our people. This drive fuels the commitment and humanity that run deep through our every action. Connect to your opportunity As an internal Information Security GRC Lead, you will run the compliance and risk framework for DIH applications, software and internal IT ecosystem. Hands-on experience evaluating AI/ML infrastructure or algorithmic risk is required. Your primary responsibilities will include Internal Governance Enforcement maintaining and updating the DIH internal Information Security Management System (ISMS) to ensure the adherence of the Deloitte standards and regulations. Work directly with internal application development squads to validate that new internal tools and platforms are built securely, mapping controls to ISO 27001 baselines before deployment. Drive internal continuous compliance monitoring, collecting log evidence, tracking patch deployments, and managing user access reviews. Oversee the DIH internal Risk Register, identifying vulnerabilities within our IT ecosystem and work with the technical teams to remediate them. Evaluate and approve third-party software, SaaS tools, and technical vendors before they are cleared for use by internal DIH employees. Promote a strong security and data privacy culture helping teams to understand their role and responsibility in protecting Deloitte brand and business. You will use your strong communication skills in promoting standards, reusage, simplification and cost-effective technology solutions. Connect to your skills and professional experience Essentials Bachelor s degree in computer science, Cyber Security, Management Information Systems, or a related technical discipline. 7+ relevant years of experience. Experience in GRC, IT security operations, or internal IT auditing in an IT or technology enterprise line of business. Practical, hands-on experience implementing ISO/IEC 27001 controls and managing evidence collection for internal and external audits. A solid understanding of identity management (IAM/SSO), cloud platform basics (AWS/Azure), and secure software lifecycles (CI/CD pipelines). Strong communication skills, with the ability to influence internal technical leads and developers without direct authority. Develop and enforce security guardrails for internal Generative AI usage, Large Language Model (LLM) integrations, and automated decision systems. Ensure all deployments align with internal risk tolerances and emerging regulations (e.g., EU AI Act, NIST AI RMF). Conduct targeted risk assessments on internal AI applications to mitigate unique vulnerabilities, including data leakage, prompt injection risks, shadow AI usage, and unauthorized data ingestion into public models. Preferred certification: CISA, CISM, CRISC, ISO 27001 Internal Auditor and AI-specific credentials like the Artificial Intelligence Governance Professional (AIGP). English language fluency. Desirables Knowledge in Scripting & Query Capabilities (Python / SQL). Familiarity with scanning tools like Terraform or Ansible scripts. Understanding of Postman or API security concepts. Prior exposure to adversarial testing on Large Language Models. Connect to your business Technology & Transformation Distinctive thinking, deep expertise, and collaborative working. That s what connects us. That s what makes us Deloitte. If you want to help solve some of the biggest challenges around, join us. Together, we ll make an impact that matters. Desired Candidate Profile Connect to your skills and professional experience Essentials Bachelor s degree in computer science, Cyber Security, Management Information Systems, or a related technical discipline. 7+ relevant years of experience. Experience in GRC, IT security operations, or internal IT auditing in an IT or technology enterprise line of business. Practical, hands-on experience implementing ISO/IEC 27001 controls and managing evidence collection for internal and external audits. A solid understanding of identity management (IAM/SSO), cloud platform basics (AWS/Azure), and secure software lifecycles (CI/CD pipelines). Strong communication skills, with the ability to influence internal technical leads and developers without direct authority. Develop and enforce security guardrails for internal Generative AI usage, Large Language Model (LLM) integrations, and automated decision systems. Ensure all deployments align with internal risk tolerances and emerging regulations (e.g., EU AI Act, NIST AI RMF). Conduct targeted risk assessments on internal AI applications to mitigate unique vulnerabilities, including data leakage, prompt injection risks, shadow AI usage, and unauthorized data ingestion into public models. Preferred certification: CISA, CISM, CRISC, ISO 27001 Internal Auditor and AI-specific credentials like the Artificial Intelligence Governance Professional (AIGP). English language fluency. Desirables Knowledge in Scripting & Query Capabilities (Python / SQL). Familiarity with scanning tools like Terraform or Ansible scripts. Understanding of Postman or API security concepts. Prior exposure to adversarial testing on Large Language Models. Company Industry BankingFinancial ServicesBroking Department / Functional Area IT Software Keywords Information Security GRC Lead Get real-time job updates only on our App

Ready to apply?

You are viewing this role on JobSphere AI. Applications are completed on the original employer / source website.

Apply Now

Opens the employer's site in a new tab

  • CompanyDeloitte
  • LocationCairo, Egypt
  • CategoryAI
  • SourceNaukrigulf
  • Listed1h ago

Related AI jobs

More AI