Manager - Risk Advisory (Cyber, Tech, and Operational Risk)
McLean, VA
CrossCountry Consulting
Learn More With integrated solutions for the office of the CFO, private equity sponsors, and other corporate leaders, we partner with you to solve today’s…Our commitment to our people has earned us numerous awards including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work. Explore what our employees have to say about our unique culture by clicking here.
From the beginning, our goal was to establish an advisory firm that stands apart from the rest – one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our success. With advisory solutions spanning accounting and risk, technology-enabled transformation, and transactions, we partner with our clients to solve today’s challenges and deliver present and future value.
Our commitment to our people has earned us numerous awards including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work. Explore what our employees have to say about our unique culture by clicking here.
By joining our rapidly growing Risk Advisory practice you will serve as a trusted partner to our clients. You’ll bring your first-hand experience, unique perspectives, and functional knowledge to deliver tailored integrated solutions that help our clients solve today's challenges and set the foundation for future success. As a Manager at CrossCountry Consulting you will be responsible for a mix of client delivery, leading teams and developing junior team members, and participating in business development activities. In this role, you will deliver and develop services in one of the following areas: Financial and Compliance Risk (e.g., SOX and FIDICA compliance, ESG, regulatory reporting); Technology Risk (e.g., IT controls, cybersecurity, cloud, emerging technology); Strategic and Operational Risk (e.g., privacy, data governance, third party risk), and Enterprise-Wide Risk (e.g., Internal Audit, enterprise risk management programs and risk transformation).
What You'll Do:
- Provide excellent client service and develop and nurture client relationships, serving as a liaison between clients and project teams, understanding their business needs, and delivering responsive and high-quality service
- Apply specialized knowledge in particular non-financial risk domains, and broad acumen across facets of all domains including cybersecurity, technology, cloud, operational resiliency, data, third party, privacy, and product risk
- Conduct research and analysis, leveraging data to derive valuable insights and actionable recommendations for clients
- Lead working meetings with clients and participate in formal client briefings
- Oversee the operational aspects of ongoing projects, including engagement planning, budget development, progress monitoring, and quality control of deliverables
- Lead development of compelling, easy-to-consume, data-driven deliverables that pragmatically solve client problems
- Structure, implement, and synthesize research and analysis on a range of key industry developments and trends to inform client deliverables, proposals, marketing materials, and market strategies
- Participate in advancing the Risk Advisory service line through internal initiatives such as recruiting, business development, thought leadership, and knowledge sharing
- Serve as a coach and mentor to team members, fostering their professional growth and development
- Lead CrossCountry teams on engagements such as:
-Risk Transformation: Maturity assessments and roadmaps; operating models; program and process builds; executive advisory-Risks & Controls: Risk assessments; frameworks; RCSAs; testing methodologies; testing execution and reporting-Internal Audit: Audit planning, execution, and reporting-Regulatory Compliance: Regulatory mapping and horizon scanning; compliance readiness and remediation activities; exam and reporting support-Reporting & Metrics: KPI and KRI development; automation and operations; dashboards and reporting; risk appetite analysis
What You'll Bring:
- 5+ years prior experience in professional services (public accounting, advisory firm, or management consulting firm)
- Experience with the major cybersecurity, technology, and operational risk frameworks and standards such as NIST CSF, CRI Cybersecurity Profile, CSA Cloud Controls, ISO 27000 series, COBIT, and Basel Operational Risk Principles
- Experience delivering security solutions across major cloud service provider (AWS, Azure, GCP) platforms
- Understanding of comprehensive risk management programs, including governance, policy, organizational design, awareness and training, architecture, technologies, processes, and controls
- Experience mentoring and developing junior team members and helping project teams resolve multifaceted issues
- Passion for learning new technologies and staying current with trends in cyber, technology, and operational risk management.
Qualifications:
- Bachelor’s degree from an accredited university
- Professional certification (CISA, CISM, CISSP, CIPT, CIPP, CIPM).
- Willingness to travel domestically up to 20%-30% (varies by client).
- Availability to work on client site or in office 3 days a week, with 2 days remote (hybrid environment).
Benefits SummaryThe CrossCountry total rewards package includes comprehensive healthcare options, including medical, dental, and vision coverage; flexible spending accounts; and a 401(k) with company matching. Additionally, employees can take advantage of generous parental and maternity leave policies, technology stipends, and wellness reimbursement programs, all designed to support both professional growth and personal well-being. For detailed information about benefits at CrossCountry, please visit our dedicated benefits site: https://www.crosscountry-consulting.com/careers/benefits/.
Equal Employment Opportunity (EEO)CrossCountry provides equal employment opportunities (EEO) to all employees and applicants for employment and believes that respect and fair treatment are critical to creating a productive and inclusive workplace.
As an equal opportunity employer, CrossCountry is fully committed to comply with all federal, state, and local laws and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability, pregnancy, genetics, sexual orientation, veteran status, gender identity or expression or any other protected characteristic. The company also complies with pay transparency and labor laws applicable to all terms and conditions of employment.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation AWS Azure CIPP CISA CISM CISSP Cloud COBIT Compliance GCP Governance ISO 27000 Monitoring NIST Privacy Risk assessment Risk management SOX
Perks/benefits: Career development Flex hours Health care Medical leave Parental leave Startup environment Transparency Travel Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.