Risk Consulting - Cybersecurity Manager - Multiple Cities Job at Ernst and Young
Ernst and Young, Annapolis, MD, United States, 21403
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture, and technology to become the best version of you. Join us and build an exceptional experience for yourself, and a better working world for all.
The opportunity
The objective of our Consulting risk services is to provide clients with a candid and reliable overview of their risk landscape. Our solutions can be used by our clients to build confidence and trust with their customers, the overall market, and when required by regulation or contract.
For our Cyber Risk services, the ideal candidate will be responsible for identifying, evaluating, and managing cyber risks across the organization. This role involves working closely with IT, security teams, and business units to ensure that our cyber risk posture is aligned with our business objectives and regulatory requirements.
Your key responsibilities
- Manage multiple client engagement teams at an executive level within the practice and the firm.
- Analyze, evaluate, and enhance information systems facilitating the business internal control process.
- Assist clients and other Risk Assurance professionals in performing information technology control and security engagements.
- Provide guidance and share knowledge with team members.
- Brief the engagement team on the client's IT environment and industry IT trends.
- Maintain relationships with client management to manage expectations of service.
- Conduct comprehensive cyber risk assessments to identify vulnerabilities, threats, and potential impacts to the organization.
- Develop and implement risk mitigation strategies and controls to protect against cyber threats.
- Collaborate with IT and security teams to ensure that cybersecurity policies and procedures are up-to-date and effectively implemented.
- Monitor the cyber threat landscape and provide timely intelligence to relevant stakeholders.
- Facilitate risk management discussions with business leaders.
- Oversee the cyber risk management lifecycle, including risk identification, analysis, response, and monitoring.
- Coordinate with external partners to manage and transfer cyber risks where appropriate.
- Prepare and present risk reports and dashboards to senior management and the board of directors.
- Ensure compliance with relevant laws, regulations, and industry standards related to cybersecurity and data protection.
- Conduct training and awareness programs to promote a culture of cybersecurity across the organization.
To qualify for the role, you must have
- A minimum of 5 years of experience working as an IT auditor or IT risk adviser.
- Bachelor's degree in Information Technology, Cybersecurity, Risk Management, or a related field.
- Professional certifications such as CISSP, CISM, CRISC, or similar are highly desirable.
- Minimum of 2 years of experience in cybersecurity, risk management, or a related role.
- Strong understanding of cybersecurity frameworks (e.g., NIST, ISO 27001) and regulatory requirements.
- Proven experience in risk assessment methodologies and tools.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills.
- Ability to work independently and as part of a team in a fast-paced environment.
- Availability to travel outside of their assigned office location at least 50% of the time.
Ideally, you’ll also have
- A bachelor's or master's degree in business, accounting, finance, computer science, information systems, engineering, or a related discipline.
- CPA, CA, CISA, CISSP, CISM, CBCP, CIA, CIPP, CGEIT certification is desired.
- Additional cloud-based certifications to credentialize.
What we look for
We’re looking for passionate leaders with strong vision and a desire to stay on top of trends in the risk industry. If you have a genuine passion for helping businesses achieve their full potential, this role is for you.
What we offer
We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business.
EY accepts applications for this position on an on-going basis. If you can demonstrate that you meet the criteria above, please contact us as soon as possible.
EY exists to build a better working world, helping to create long-term value for clients, people, and society.
EY is an equal opportunity, affirmative action employer providing equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis.
#J-18808-Ljbffr