Control Management Manager
Deloitte Technology Information Technology Posted: 20-Feb-2025
Hermitage, Tennessee, United States
Nashville, Tennessee, United States
Tampa, Florida, United States
Work you'll do
This role is within the Technology Control Management Team and reports to the Control Management Team Leader. You will be working within a dedicated team to deliver Technology and Cyber Security controls processes using extensively ServiceNow Integrated Risk Management modules supporting the definition and delivery of controls across Deloitte Technology including management of a control library, control assessment processes for other teams that undertake control testing and assessments.
As part of your role, you will:
- Support IT organizational maturity development of controls leveraging Global and DT standards, Maturity Assessment, and Compliance activity;
- Develop the control management elements, including automation, of test and assessment processes to increase validation of controls across DT;
- Utilize the full functionality of ServiceNow Integrated Risk Management to deliver control management.
- Assist teams in developing and populating their controls within ServiceNow to support their risk and control processes.
- Work within and support IT Risk Management processes within a 3 Lines model.
- Participate in Assessments where required within Deloitte Technology;
- Offer on-going support and assistance to Member Firms or Deloitte Technology Service lines as they progress on their action plans.
- Support MF Services Leader to develop and manage relationships with Member Firms,
- Prepare reports as required for presenting results to Deloitte Technology leaders, Member Firms, and relevant stakeholders, including Global Risk Leaders, Executive and Board.
The team
Qualifications
Do you possess the following?:
- Experience of IT and Cyber control testing and risk assessments using ServiceNow
- Proven ability to develop controls in ServiceNow or similar risk and control tooling
- An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001,
- Cybersecurity and global experience background.
- A strong understanding of system development life cycles approaches and concepts (CMMI knowledge an asset)
- IT Operations and Service Management with strong understanding of ITIL framework or MOF (ITIL certification an asset)
- Diplomatic and persuasive with an ability to handle difficult conversations and confidently manage senior stakeholders such as CIOs and CEOs
- Good understanding of Workflow, Scripting and IRM indicators in a ServiceNow deployment
- Detailed knowledge of current Deloitte security policies and technology standards. Relevant industry verifications; such as CISSP, CISA, CISM, CRISC, ISO27032 Lead Cybersecurity Manager.
- Good working knowledge of ServiceNow Integrated Risk Management module or other ServiceNow experience.
- Ability to manage virtual teams in multiple time zones, culturally astute
- Be able to build key relationships across the GTS function and member firm network utilising excellent relationship management skills
- Ability to manipulate complex data
- Application development experience