Managing Consultant - Risk Advisory (Internal Audit & SOX)
McLean, VA
CrossCountry Consulting
Learn More With integrated solutions for the office of the CFO, private equity sponsors, and other corporate leaders, we partner with you to solve today’s…
In this role, you’ll have the opportunity to drive positive impacts through the design, build, execution, and assessment of risk programs across cyber, technology, and operational risk (non-financial risk) domains.
We are looking for passionate self-starters who enjoy learning and staying current with industry trends and technologies, excel at leading teams and mentoring others, and get excited about helping our clients strategically solve complex risk challenges.
We are looking for passionate self-starters who enjoy learning and staying current with industry trends and technologies, excel at leading teams and mentoring others, and get excited about helping our clients strategically solve complex risk challenges.
What You'll Do:
- Provide excellent client service and develop and nurture client relationships, serving as a liaison between clients and project teams, understanding their business needs, and delivering responsive and high-quality service
- Lead CrossCountry teams on engagements such as:
- Apply specialized knowledge in particular non-financial risk domains, and broad acumen across facets of all domains including cybersecurity, technology, cloud, operational resiliency, data, third party, privacy, and product risk
- Conduct research and analysis, leveraging data to derive valuable insights and actionable recommendations for clients
- Lead working meetings with clients and participate in formal client briefings
- Oversee the operational aspects of ongoing projects, including engagement planning, budget development, progress monitoring, and quality control of deliverables
- Lead development of compelling, easy-to-consume, data-driven deliverables that pragmatically solve client problems
- Structure, implement, and synthesize research and analysis on a range of key industry developments and trends to inform client deliverables, proposals, marketing materials, and market strategies
- Participate in advancing the Risk Advisory service line through internal initiatives such as recruiting, business development, thought leadership, and knowledge sharing
- Serve as a coach and mentor to team members, fostering their professional growth and development
o Risk Transformation: Maturity assessments and roadmaps; operating models; program and process builds; executive advisoryo Risks & Controls: Risk assessments; frameworks; RCSAs; testing methodologies; testing execution and reportingo Internal Audit: Audit planning, execution, and reportingo Regulatory Compliance: Regulatory mapping and horizon scanning; compliance readiness and remediation activities; exam and reporting supporto Reporting & Metrics: KPI and KRI development; automation and operations; dashboards and reporting; risk appetite analysis
What You'll Bring:
- 5+ years prior experience in professional services (public accounting, advisory firm, or management consulting firm)
- Experience with the major cybersecurity, technology, and operational risk frameworks and standards such as NIST CSF, CRI Cybersecurity Profile, CSA Cloud Controls, ISO 27000 series, COBIT, and Basel Operational Risk Principles
- Experience delivering security solutions across major cloud service provider (AWS, Azure, GCP) platforms
- Understanding of comprehensive risk management programs, including governance, policy, organizational design, awareness and training, architecture, technologies, processes, and controls
- Experience mentoring and developing junior team members and helping project teams resolve multifaceted issues
- Passion for learning new technologies and staying current with trends in cyber, technology, and operational risk management.
Qualifications:
- Bachelor’s degree from an accredited university
- Professional certification (CISA, CISM, CISSP, CIPT, CIPP, CIPM).
- Willingness to travel domestically up to 20%-30% (varies by client).
- Availability to work on client site or in office 3 days a week, with 2 days remote (hybrid environment).
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Categories:
Compliance Jobs
Consulting Jobs
Tags: Automation AWS Azure CIPP CISA CISM CISSP Cloud COBIT Compliance GCP Governance ISO 27000 Monitoring NIST Privacy Risk assessment Risk management SOX
Perks/benefits: Career development Travel
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Systems Security Officer jobsInformation System Security Officer jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsInformation Security Specialist jobsInformation Security Manager jobsSecurity Consultant jobsSenior Network Security Engineer jobsCyber Security Specialist jobsIT Security Engineer jobsSecurity Specialist jobsSenior Information Security Analyst jobsIT Security Analyst jobsSenior Cyber Security Engineer jobsSystems Engineer jobsSenior Penetration Tester jobsChief Information Security Officer jobsSystems Administrator jobsStaff Security Engineer jobsInformation System Security Officer (ISSO) jobsThreat Intelligence Analyst jobsSenior Product Security Engineer jobsSecurity Operations Analyst jobsPrincipal Security Engineer jobsInformation Systems Security Engineer jobs
Java jobsPowerShell jobsEncryption jobsDevSecOps jobsGDPR jobsIDS jobsSaaS jobsSplunk jobsIPS jobsTop Secret jobsSDLC jobsRMF jobsIntrusion detection jobsThreat detection jobsSQL jobsBash jobsActive Directory jobsOWASP jobsDoDD 8570 jobsCompTIA jobsDocker jobsITIL jobsGIAC jobsUNIX jobsCRISC jobs
Finance jobsClearance Required jobsCISO jobsTCP/IP jobsIndustrial jobsHIPAA jobsBanking jobsJavaScript jobsTerraform jobsOSCP jobsSANS jobsSOC 2 jobsVPN jobsMITRE ATT&CK jobsIT infrastructure jobsCCSP jobsSOAR jobsDNS jobsSOX jobsJira jobsPolygraph jobsData Analytics jobsGCIH jobsMachine Learning jobsNIST 800-53 jobs