Qualifications: - Bachelor's degree in Computer Science, Information Security, or a related field; Master's degree or MBA preferred.
- 8-12 years of experience in cybersecurity, technology risk, or AI governance consulting, with significant experience in client-facing leadership and strategic advisory roles (Big 4 or equivalent advisory experience strongly preferred).
- Demonstrated experience advising and presenting to C-suite and Board-level stakeholders.
- AI & Cybersecurity Expertise: Deep knowledge of AI governance principles, cybersecurity fundamentals, emerging AI threat models, and risk management methodologies.
- Leadership: Strong leadership and strategic planning skills to drive engagement teams and cross-practice initiatives to results.
- Client Management: Executive presence and excellent relationship-building skills to engage senior executives, Boards, and Audit/Risk Committees.
- Problem-Solving: Ability to translate complex technical AI and cyber risk issues into business, financial, and regulatory risk language.
- Engagement Management: Proficiency managing large-scale, multi-workstream advisory engagements, including scope, budget, staffing, and timeline management.
- Substantial consulting experience, preferably with big four and strategy consulting firms
Framework and Regulatory experience in one or more of the following:- NIST AI RMF, ISO/IEC 42001, EU AI Act, NIST CSF 2.0, NIST 800-53, NIST 800-171, NIST 800-30, ISO 27001/27002, HIPAA, GDPR, FFIEC, CIS Controls, COBIT, HITRUST, CSA CCM, AICPA SOC 2, Third-Party/Vendor Risk Management, IT Risk Management
Industry Experience - significant experience in one or more of the following industries:- Financial Services, Health & Life Sciences, Utilities & Energy, Oil & Gas, Retail, Public Sector, Technology, Mergers & Acquisitions
AI and Cybersecurity Risk Experience RequirementsCandidate must be experienced across the AI governance and cybersecurity risk lifecycle, including: AI system risk and impact assessments, AI governance program development, AI policy and control design, model risk management, algorithmic bias and transparency review, and cybersecurity domains such as Identity & Access Management (IAM), Cloud Security, Data Protection, Business Continuity Management, Disaster Recovery, Incident Response and Recovery, and Threat Identification and Analysis.
Want to learn more about Consulting & Security Services? Check us out on our platform:https://www.wwt.com/consulting-services
https://www.wwt.com/category/security-transformation
Certain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $153,200 to $191,500 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay.
The well-being of WWT employees is essential. When it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
- Health and Wellbeing: Health (Medical & Prescription), Dental, and Vision Care, Onsite Health Centers (MO & IL), Employee Assistance Program, Wellness program
- Financial Benefits: Competitive Pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Flexible Spending Accounts, Tuition Reimbursement
- Paid Time Off: PTO & Holidays, Parental Leave, Medical Leave, Military Leave, Bereavement, Day of Caring
- Additional Perks: Family Planning Benefits, Nursing Mothers Benefits, Voluntary Legal, Voluntary Supplemental Accident/Illness/Hospital, Voluntary ID Theft, Pet Insurance, Employee Discount Program
Note: This is not an all-encompassing list and should not be used as a complete description of the plan's benefits. For more information, see our US benefits website at wwt.com/us-benefits.
Position Overview:As a Principal in our AI and Cyber Risk & Strategy practice, you will lead high-impact advisory engagements at the intersection of artificial intelligence adoption, cybersecurity risk, and enterprise governance. You will serve as a trusted advisor to Chief Information Security Officers (CISOs), Chief Risk Officers (CROs), Chief Information Officers (CIOs), Chief Technology Officers (CTOs), and Boards of Directors at Fortune 500 and Global 2000 organizations, translating emerging AI regulation, evolving threat landscapes, and governance gaps into board-ready risk strategy and executable remediation roadmaps.
In this role, you will lead engagement teams, own client delivery and relationships, and drive the growth of the AI and Cyber Risk & Strategy practice. You will bring deep technical and regulatory expertise together with executive-level communication skills to help clients responsibly adopt AI while strengthening their overall cyber resilience and risk posture.
Principals lead the day-to-day delivery and growth of AI and Cyber Risk advisory work for large, complex organizations. They build material executive and board level business cases, cultivate senior client relationships, and bring the full breadth of the firm's capabilities to bear on clients' most critical AI governance and cybersecurity challenges.
Essential Functions: - Lead client engagements delivering AI risk assessments, AI governance framework design (e.g., NIST AI RMF, ISO/IEC 42001), and enterprise cyber risk assessments (CIS, NIST CSF 2.0, NIST 800.53, ISO 27001) for large, regulated organizations.
- Advise CISOs, CROs, CIOs, and CTOs on AI-specific threat vectors - including model poisoning, data leakage, shadow AI, third-party/foundation model risk, and adversarial AI - and integrate these into enterprise risk strategy.
- Design AI governance operating models, risk appetite statements, and control frameworks, and present findings and recommendations directly to Audit Committees, Risk Committees, and Boards.
- Own end-to-end delivery on complex engagements: project ownership, workplan management, quality of analysis and deliverables, and overall client satisfaction.
- Serve as the primary day-to-day point of contact - the "face" of the engagement - for senior client stakeholders and internal firm leadership.
- Lead, manage, coach, and develop cross-functional engagement teams across the firm
- Build and maintain trusted-advisor relationships with C-suite clients; identify and cultivate follow-on engagement opportunities and expanded scopes of work.
- Business development: Lead proposals, RFP responses, and statement-of-work creation, including scope, deliverables, timelines, and pricing.
- Develop practice methodologies, accelerators, and intellectual property for AI risk quantification, AI regulatory compliance (EU AI Act, NIST AI RMF, sector-specific guidance), and cyber risk offerings.
- Develop thought leadership - white papers, points of view, and client briefings
- Own engagement economics, including utilization, profitability, and revenue growth targets for the practice.
- Understand the firm's broader service portfolio and proactively introduce and cross-sell adjacent offerings to expand account footprint.