Senior Analyst/Analyst, Security Inquiry Response Center (SIRC)
Reference Code 4791
Location:
Country: Canada; United States
US Locations: USA - Hermitage; USA - Nashville; USA - Tampa
Non-US Locations: CAN - Saint John; CAN - Halifax; CAN - Toronto
Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization.
Work you'll do
In this role, you prepare responses that are thorough, accurate, and reflective of Deloitte's commitment to security and data protection. This position requires a proactive mindset, strong analytical capabilities as your contributions will be essential in maintaining our clients' trust and upholding our reputation. As part of the Security Inquiry Response Center you will:
- Address member firm, client, regulatory, and audit-related information security requests.
- Identify, gather, and pre-populate responses using Standard Answer Banks (SABs).
- Determine remaining questions needing consultation with Management, Client Security Leads (CSLs), or Subject Matter
- Experts (SMEs).
- Ensure the quality and consistency of work been done by other team members.
- Assign and plan tasks for other team members.
- Highlight and address issues in SABs and assist with their maintenance, improving quality of responses and expanding scope as necessary.
- Support service queue and mailbox rotation for consistent coverage.
- Analyze and evaluate security requests, internal/external assessments, and audits.
- Coordinate internal/external audit requests, including scoping, data gathering, and refinement.
- Assist with evidence gathering and sanitization activities.
- Build strong relationships with internal stakeholders and maintain regular communication with the management team,member firm CSLs and various SMEs to improve deliverable quality.
- Contribute to the development of best practices and stay up to date on global security policies, standards and technology.
The team
Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.
Qualifications
Do you possess the following?:
- Bachelor’s Degree or higher in business administration, a technology-related field, or equivalent
experience. - One to three (1-3) years demonstrated experience in applying leading practices in a large-scale Information
Security, Technology Risk or Operational Risk environments, including strategy development and
execution, risk and governance experience. - Basic knowledge of Information Systems Security, cyber security, IT auditing, IT risk management and compliance and/or vendor security risk management.
- Working knowledge of various IT risk frameworks, methodologies, leading industry/assurance standard and regulations, as well as attestation reporting frameworks, such as the ISO family of standards 27001/2, ISO 22301, ISO 27017, etc.), NIST, COBIT, SOC2 reporting framework.
- Basic knowledge of GRC tools (e.g., ServiceNow).
- Strong analytical and problem-solving skills.
Limited immigration sponsorship may be available in some locations.
Our Culture
At Deloitte Global people are valued and respected for who they are – with opportunities to bring their unique perspectives, talents and passions to business challenges. Our global workspace creates room for individuality and collaboration. Ours is an inclusive, supportive, connected culture with a focus on development, flexibility, and well-being. This culture makes Deloitte Global one of the most rewarding places to work, and to transform your career.
Recruiting for this role ends on 09/01/2026.
Deloitte Global is required by local law to include a reasonable estimate of the compensation range for this role for individuals applying to work in our Toronto, Halifax and St John locations. This compensation range takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and delivery model. We would not anticipate that the individual hired into this role would land at or near the top end of the range, but such a decision will be dependent on the facts and circumstances of each case. A reasonable estimate of the range is - for individuals applying to work in these locations.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.