You will lead workstreams and select engagements and drive client impact across:- Cybersecurity and AI maturity assessments and strategic roadmaps, using leading frameworks including NIST, CIS and CRI
- Cybersecurity strategy, operating models, and transformation programs
- Cyber and AI risk governance, executive and board reporting
- Third-party cyber and AI risk management
- Cyber resilience, incident preparedness, and executive tabletop exercises
- Cybersecurity and AI benchmarking assessments
- Cyber risk quantification and business-impact analysis
Key responsibilities include:- Support multidisciplinary teams through complex cybersecurity and AI risk programs, managing scope, schedule, resources, quality, and client satisfaction
- Translate complex technical and risk findings into clear executive-level insights, business implications, and board-ready recommendations
- Build and deepen client relationships through technical credibility and strategic thinking
- Identify follow-on opportunities, contribute to proposals and pursuit activity, and support the continued growth of client accounts and the practice
- Scope and shape new cybersecurity and AI risk engagements in collaboration with senior staff, Managing Directors and other BRG leaders
- Mentor junior staff and contribute to coaching and team development
- Develop methodologies, intellectual property, thought leadership collateral, and market-facing propositions
Basic Qualifications:- Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, Business Administration, Risk Management, or a related discipline
- Minimum 4 years of professional experience in cybersecurity, technology risk, or enterprise risk consulting
- Demonstrated experience leading consulting engagements or complex cybersecurity/risk programs
- Demonstrated understanding of emerging AI governance, risk, and control requirements; experience designing or implementing AI governance or control frameworks e.g. NIST AI RMF, CRI FS AI RMF, ISO/IEC 42001 is preferred
- Experience managing client relationships and communicating with senior executive stakeholders
- Strong written and verbal communication skills, including the ability to communicate technical risks in business terms
- Strong analytical and problem-solving skills, with the ability to structure ambiguous issues, synthesize complex information, and develop practical recommendations
Preferred Qualifications:- CISSP, CISM, CRISC, or another relevant advanced security or risk certification
- Experience within a Big 4 firm, specialist cybersecurity consultancy, or comparable advisory firm
- Experience scoping and proposing cybersecurity and AI risk engagements with demonstrated contribution to business development and sales
- Track record of delivering enterprise cybersecurity transformations, large-scale governance programs, or risk-management implementations
- Experience presenting cybersecurity or technology-risk issues to executive leadership
Salary Range: $130,000 - $150,000 per year. Bonus Eligible.
Candidate must be able to submit verification of his/her legal right to work in the U.S. or Canada, without company sponsorship.