riveron - Cyber Security - Strategy Lead
Requirements
• Bachelor's degree in Cybersecurity, Computer Information Systems, or a related field. • 5+ years of experience in cybersecurity consulting, advisory services, or a client-facing security role. • Hands-on experience delivering security assessments, risk advisory, or program development engagements. • Familiarity with common cybersecurity frameworks including NIST CSF, ISO 27001, HIPAA, SOC 2, and PCI-DSS. • Strong written and verbal communication skills with experience presenting to senior business and technical stakeholders. • Technical familiarity with one or more security domains such as cloud security, identity and access management, security operations, or data protection is a plus. • Relevant certification preferred, such as CISSP, CISM, CISA, or equivalent. • Bonus experience: Hands-on tooling experience in either Cloud Security, DevSecOps, Vulnerability Management, End Point Security, or Log Management. • You take ownership of your work and your client relationships. You bring people along rather than waiting to be told what to do. • You communicate well across audiences. You are as comfortable in a working session with an engineer as you are presenting to a CISO or CFO. • You think about security in terms of business impact, not just technical controls. • You are adaptable. You can move between a strategy, compliance, and a technical architecture conversation without losing your footing. • You are a natural collaborator. You work well across teams, and you make the people around you better. • You are curious and motivated to keep growing. The security landscape moves fast, and you stay with it. • You enjoy being part of something bigger, including recruiting, training, firm events, and building a practice that stands out in the market.
Responsibilities
• Lead day-to-day project execution across cybersecurity strategy and advisory engagements, keeping work on track and clients well informed. • Serve as the primary client contact throughout engagements, managing expectations, communicating progress, and building trust with stakeholder teams. • Facilitate workshops, discovery sessions, and working meetings with client teams including senior technical and business leadership. • Deliver high-quality work product including assessment reports, risk analyses, program roadmaps, and executive presentations. • Support security maturity assessments, gap analyses, vCISO advisory engagements, and bespoke security program projects. • Contribute to scoping discussions and proposal development under the guidance of practice leadership. • Collaborate with Riveron's GRC and Security Engineering teams to support engagements that require a broader set of capabilities. • Lead client status updates and reporting to keep stakeholders aligned between engagements. • Support business development by identifying expansion opportunities within existing client relationships. • Review and provide feedback on the work of Senior Associates and Associates, supporting their professional development. • Contribute to internal practice development such as methodology, templates, and delivery frameworks. • Stay current on the evolving threat landscape, emerging frameworks, and security tooling relevant to our clients. • Participate in recruiting, internal training, and thought leadership initiatives that contribute to the growth of the practice.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT