Назад
Company hidden
3 дня назад

Global Cybersecurity Manager - Governance and Compliance (Cybersecurity)

Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Global Cybersecurity Manager - Governance and Compliance (Cybersecurity): Supporting client information security due diligence, assurance responses, and governance processes across a global consulting environment with an accent on security frameworks, compliance requirements, and stakeholder communication. Focus on responding to questionnaires and audits, maintaining assurance knowledge assets, translating technical controls for business audiences, and improving CAS tools and processes.

Company

hirify.global is a global management consulting firm delivering business strategy, technology, design, and transformation services.

What you will do

  • Support strategic clients and prospects with information security due diligence, questionnaires, RFPs, audits, calls, and workshops.
  • Explain BCG’s security controls, certifications, policies, and risk management practices to client stakeholders.
  • Maintain and improve Client Assurance Services tools, templates, automation initiatives, knowledge repositories, and response libraries.
  • Collaborate with Information Security, Legal, Risk, Compliance, and client-facing teams to provide accurate and consistent responses.
  • Support assurance activities related to ISO 27001, SOC 2, GDPR, NIST CSF, and regional data protection regulations.
  • Identify opportunities to improve response quality, operational efficiency, documentation, and knowledge management.

Requirements

  • 5–8 years of experience in information security, cybersecurity, risk management, compliance, or a related field.
  • Experience with client-facing security assurance, audits, compliance activities, due diligence requests, questionnaires, or RFPs.
  • Strong understanding of ISO 27001, SOC 2, NIST CSF, GDPR, and relevant regional data protection regulations.
  • Ability to communicate technical security concepts clearly to non-technical audiences and collaborate across global, matrixed organizations.
  • Fluent written and spoken English and German are required.
  • Experience in professional services, financial services, technology, or consulting is preferred.

Nice to have

  • CISSP, CISM, CISA, Security+, or ISO 27001 Lead Auditor/Implementer certification.

Culture & Benefits

  • Work with global teams across information security, legal, risk, compliance, and client-facing functions.
  • Support strategic client relationships at the intersection of information security, client trust, and business development.
  • Some international travel may be required for client engagements.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →