Risk Management Consultant - Cyber
Full Time
Mid Level
3+ years
Visa Sponsorship
Posted 2 weeks ago
Interested in this position?
Upload your resume and we'll match you with this and other relevant opportunities.
Upload Your ResumeAbout This Role
The Risk Management Consultant is an experienced technology pioneer who will identify, assess, and prioritize risks for clients in a collaborative environment. This role maintains cyber risk registers and performs periodic risk and control assessments for Deloitte's Cyber team.
Responsibilities
- Collaborate with cross-functional client teams to identify, assess, and prioritize risks
- Maintain and refresh clients' cyber risk register (e.g., risk owners, treatments, due dates)
- Perform periodic risk and control assessments
- Document and follow up upon risk treatment actions
- Produce risk reporting for leadership
- Communicate regularly with Engagement Managers, project team members, and representatives from various functional and/or technical teams, escalating matters as needed
Requirements
- 3+ years experience performing risk assessments (inherent/residual risk), documenting findings, and recommending mitigations
- 3+ years familiarity with key cyber domains: identity and access management (IAM), vulnerability management, incident response, data protection, logging/monitoring
- 3+ years strong written communication skills (clear risk narratives, executive-ready summaries) and stakeholder management
- 3+ years experience in cybersecurity, technology risk, IT audit, GRC (governance, risk & compliance), or risk management
- Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience
Qualifications
- Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience
- 3+ years of experience performing risk assessments, documenting findings, and recommending mitigations; 3+ years familiarity with key cyber domains; 3+ years strong written communication and stakeholder management; 3+ years in cybersecurity, technology risk, IT audit, GRC, or risk management
Nice to Have
- Working knowledge of common control frameworks (e.g., NIST CSF, NIST 800-53, ISO 27001, CIS Controls) and how to map controls to risks
- Familiarity with GRC tooling (e.g., ServiceNow GRC, OneTrust)
Skills
Communication Skills
*
Decision-making
*
Written communication
*
Stakeholder Management
*
NIST 800-53
*
Incident Response
*
Identity and Access Management (IAM)
*
Analytical ability
*
ISO 27001
*
NIST CSF
*
Vulnerability Management
*
CIS Controls
*
ServiceNow GRC
*
Data protection
*
OneTrust
*
* Required skills
Certifications
CISSP
(Required)
CISA
(Required)
Security+
(Required)
About Deloitte
A company transforming technology platforms, driving innovation, and transforming mission-critical operations for clients, especially in the Life Sciences sector.
Professional Services
View all jobs at Deloitte →
Related Searches
Similar Jobs
Workday HCM Functional Senior Consultant
Active
Deloitte
·
Dallas, TX
·
$107,600 - $198,400
Problem Solving
Microsoft Visio
Workday HCM
Workday Talent
+6 more
1 week ago
Manager - Mergers & Acquisitions Financial Due Diligence
Active
Deloitte
·
Cincinnati, OH
·
$131,175 - $229,500
Power BI
Alteryx
1 week ago
Physical AI Senior Manager
Active
Deloitte
·
Tampa, FL
·
$175,300 - $322,900
Robotics
AWS
NVIDIA
Computer Vision
+5 more
1 week ago
Sr. SRE Engineer Consultant
Active
Deloitte
·
Baltimore, MD
Cloud
SRE principles
Automation
Infra
+1 more
1 week ago
Policy Administrative Specialist
Active
Deloitte
·
Detroit, MI
·
$130,800 - $241,000
MS PowerPoint
Agile
MS Visio
Oracle Cloud Supply Planning
+5 more
1 week ago