Risk Management Consultant - Cyber

Deloitte Austin, TX $72,900 - $134,300
Full Time Mid Level 3+ years Visa Sponsorship

Posted 2 weeks ago

Interested in this position?

Upload your resume and we'll match you with this and other relevant opportunities.

Upload Your Resume

About This Role

The Risk Management Consultant is an experienced technology pioneer who will identify, assess, and prioritize risks for clients in a collaborative environment. This role maintains cyber risk registers and performs periodic risk and control assessments for Deloitte's Cyber team.

Responsibilities

  • Collaborate with cross-functional client teams to identify, assess, and prioritize risks
  • Maintain and refresh clients' cyber risk register (e.g., risk owners, treatments, due dates)
  • Perform periodic risk and control assessments
  • Document and follow up upon risk treatment actions
  • Produce risk reporting for leadership
  • Communicate regularly with Engagement Managers, project team members, and representatives from various functional and/or technical teams, escalating matters as needed

Requirements

  • 3+ years experience performing risk assessments (inherent/residual risk), documenting findings, and recommending mitigations
  • 3+ years familiarity with key cyber domains: identity and access management (IAM), vulnerability management, incident response, data protection, logging/monitoring
  • 3+ years strong written communication skills (clear risk narratives, executive-ready summaries) and stakeholder management
  • 3+ years experience in cybersecurity, technology risk, IT audit, GRC (governance, risk & compliance), or risk management
  • Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience

Qualifications

  • Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience
  • 3+ years of experience performing risk assessments, documenting findings, and recommending mitigations; 3+ years familiarity with key cyber domains; 3+ years strong written communication and stakeholder management; 3+ years in cybersecurity, technology risk, IT audit, GRC, or risk management

Nice to Have

  • Working knowledge of common control frameworks (e.g., NIST CSF, NIST 800-53, ISO 27001, CIS Controls) and how to map controls to risks
  • Familiarity with GRC tooling (e.g., ServiceNow GRC, OneTrust)

Skills

Communication Skills * Decision-making * Written communication * Stakeholder Management * NIST 800-53 * Incident Response * Identity and Access Management (IAM) * Analytical ability * ISO 27001 * NIST CSF * Vulnerability Management * CIS Controls * ServiceNow GRC * Data protection * OneTrust *

* Required skills

Certifications

CISSP (Required) CISA (Required) Security+ (Required)

About Deloitte

A company transforming technology platforms, driving innovation, and transforming mission-critical operations for clients, especially in the Life Sciences sector.

Professional Services
View all jobs at Deloitte →