Cyber Security & Risk Strategy Consultant
$82.6k - $162.8kDeloitte
Position Summary Cyber Security & Risk Strategy Consultant Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success. Recruiting for this role ends on 05/31/2027. Work you'll do As a Consultant, Strategy, Growth & Transformation on the Cyber Strategy team, you will be responsible for… Supporting cyber strategy engagements across multiple service types, including cyber risk and maturity assessments, target operating model design, and technology risk initiativesProviding PMO support for cyber and technology programs, including tracking milestones, maintaining RAID logs (risks, actions, issues, decisions), and coordinating cross-functional workstreamsAssisting with the development of methods, templates, and deliverables that support cyber strategy, assessment, and transformation servicesAssessing client cyber and information technology environments, including infrastructure, databases, applications, workflows, and business processesSupporting the design of target operating models, including organizational structure, governance, roles and responsibilities, and process design for cyber and technology functionsCollaborating with client stakeholders and cross-functional Deloitte teams to support assessment, operating model, and transformation engagementsDelivering project work through research, analysis, documentation, recommendations, and implementation support across domestic and global engagements A successful candidate would possess these skills: Ability to work independently and collaborate as part of a teamEffective written and verbal communication skillsMeticulous attention to detail and quality of work productAbility to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-paced and dynamic environmentStrong interpersonal skills and professional demeanorAbility to meet deadlinesAbility to provide clear guidance to others The team Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments. Qualifications Required: Bachelor’s degree2+ years of experience in cyber security, information security, or technology risk2+ years of experience in consulting, global system integrators, or large enterprise project teamsExperience in one or more of the following: cyber risk or maturity assessments, operating model design, or program/project management for cyber or technology initiativesExperience with cyber assessments or security frameworks, including National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), NIST Special Publication 800-53, or ISO 27001Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.Limited immigration sponsorship may be available. Preferred: Bachelor’s degree in Computer Science, Information Technology, Risk Management, Engineering, or a similar fieldProfessional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH), ITIL, Project Management Professional (PMP), or Certified in Privacy Information Management (CIPM)Experience in banking and finance, aviation, transportation, property development, or pharmaceuticalsExperience with Cyber Mergers and Acquisitions diligence, sign to close, carveouts and Integrations expertise and supportExperience with governance, risk, and compliance tools, identity and access management solutions, security information and event management platforms, or data loss prevention solutionsExperience with cloud platforms such as Amazon Web Services (AWS) or Microsoft Azure and their security practicesExperience collaborating with finance, human resources, information technology, and other business workstreams during assessment, operating model, or transformation initiativesExperience supporting PMO functions, including program governance, status reporting, and stakeholder managementExperience designing or implementing target operating models, including organizational design and process reengineering The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $82,600 to $162,800. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at View email address on click.appcast.io. Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters. Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work. Our purpose Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more. Professional development From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law. Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles’s Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers Requisition code: 366768 Job ID 366768 Strategy, Growth, and Transformation | Enterprise Technology Strategy and TransformationSame job available in 68 locations
$105.4k - $207.8k
Position Summary Cyber Security & Risk Strategy Senior Consultant Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing...SuggestedLocal areaVisa sponsorship$62.98 - $104.95 per hour
...Summary Our Deloitte Cyber team understands the... ...proactively manage to secure success.Work You’ll... ...and Technology (NIST) Risk Management Framework (RMF... ...posture and RMF compliance strategies aligned to FISMA, NIST,... ...federal or government consulting experience.1+ year...SuggestedFull timeWork at officeLocal areaRelocationNight shift- Job Family:Cyber ConsultingTravel Required:Up to 10%Clearance... ...)What You Will Do:The Cyber Strategy Consultant will provide research, analysis... ..., technology, national security, defense, government operations... ...critical infrastructure, or risk management.Experience developing...SuggestedFull timeFlexible hours
$130k - $216k
Job Family:Cyber ConsultingTravel Required:Up to 10%Clearance Required... ...:Active SecretThe Managing Consultant will oversee three... ...Senior Consultants Cybersecurity, Risk & Compliance. Management role... ...ACTIVE and CURRENT SECRET federal security clearance.Bachelor’s Degree...SuggestedFull timeFlexible hours$110.18k - $183.63k
...seeking a Cybersecurity and Risk Analyst to join our team in Arlington... ...in alignment with federal security frameworks such as NIST SP 80... ....Document risk mitigation strategies, vulnerability management... ...and application services. our consulting and Industry solutions help organizations...SuggestedFull timeTemporary workWork at officeRemote workFlexible hours$99k - $225k
...Cybersecurity GRC Governance AnalystThe Opportunity: The Enterprise Cybersecurity (ECS) Governance, Risk, and Compliance (GRC) team is seeking an experienced Information System Security Officer (ISSO) to bridge the gap between high-level policy and technical execution. In this...Full timeContract workPart timeWork at officeLocal areaRemote work$100k - $150k
...Cybersecurity Risk AnalystSalary Range: $100,000 – $150,000Clearance: TS/SCI + CI PolyLocation... ...to support enterprise cybersecurity and cyber defense operations in the Washington, D.C... ...supports a high-visibility national security customer and requires on-site work within...Contract work- Ops Tech Alliance seeks a Cybersecurity Risk Analyst to support enterprise cyber defense in the Washington, D.C. metro area. You will assess cybersecurity capabilities, identify operational risks and process gaps, support incident-response, and translate complex cyber...
$110.18k - $183.63k
...Summary The Cybersecurity and Risk Analyst is a critical member... ...activities in alignment with federal security frameworks such as NIST SP 80... .... Document risk mitigation strategies, vulnerability management... ...application services. our consulting and Industry solutions help organizations...Temporary workWork at officeRemote workFlexible hours- Kids for the Future is seeking a Business Management Analyst II to support CISA Sector Risk Management activities in Arlington, VA. The role focuses on governance, risk management, stakeholder engagement, and executive-level deliverables to strengthen cross-sector coordination...
$109k - $124.4k
Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst Security is essential to what we do at Capital One, from protecting customer data to the associate experience. As a Cyber Exceptions Analyst within the Governance and Risk division, you see security as...Full timePart timeH1bLocal area- Tlingit Haida Tribal Business Corporation (THTBC) seeks a Senior Cybersecurity Analyst to join our risk-based, defense-in-depth program. You will collaborate with IT leadership, system admins, compliance personnel, vendors, auditors, and stakeholders to protect critical...Remote job
$77.6k - $176k
Phase2 Technology is seeking a Cybersecurity Compliance Analyst to design and manage policies ensuring software and database security. The role requires extensive experience in compliance analysis and the ability to communicate cybersecurity posture effectively. Responsibilities...- ...Responsible for assessing and managing technical risks across the organization’s IT and... ...risks, implement risk management strategies, and maintain compliance with industry standards... ...corrective actionsCollaborate with security and IT teams to develop response strategies...InternshipMonday to Friday
$99k - $225k
Information Security Risk SpecialistThe Opportunity:As an Information Security Risk Specialist on... ...and developers, to identify cyber risks, analyze applicable policies, and develop comprehensive mitigation strategies. Utilizing insights from subject matter experts...Full timeContract workPart timeFor contractorsWork at officeLocal areaRemote work- ...DescriptionProSidian is a Management and Operations Consulting Services Firm focusing on providing... ...services focus on the broad spectrum of Risk Management, Compliance, Business Process... ...and services you buy on a daily basis.Security Clearance: Due to the nature of our...Contract workFor contractorsWork at officeFlexible hours
- Kids for the Future seeks a Senior Business Management Analyst to support the Cybersecurity and Infrastructure Security Agency’s Sector Risk Management Engagement activities in Arlington, VA. The role provides analytical, governance, project-management, and executive-level...
- EY is seeking a Senior Consultant to join its Cyber Strategy practice. You will evaluate cybersecurity programs, strengthen governance, and develop practical strategies aligned with business objectives. The role spans multiple industries with opportunities to develop expertise...Remote job
- EY is seeking a Senior Consultant in Cyber Strategy to help clients evaluate cybersecurity programs and translate findings into practical risk-based actions. You will work with EY teams across industries on strategy, governance, operating models, and transformation, delivering...
- ...Risk AnalystThe Risk Analyst is responsible for providing guidance on tools to measure... ...include assessing the adequacy of security strategies, adherence to security guardrails and calculating... ...intent, objectives, and activities of cyber threat actors and support the cyber...Work experience placement
- RSM is seeking a Technology Risk Consultant Associate to join its Risk Consulting team. You will analyze IT controls, assist with risk assessments, and support assurance services for middle-market clients. Ideal candidates will have a BA/BS degree, majors in Accounting...
- Ruleset Security is offering an exciting internship opportunity for a Governance, Risk, and Compliance (GRC) Analyst. This role is perfect for students or recent graduates looking to gain hands-on experience in cybersecurity, compliance, and risk management. The internship...Full timeInternship
$105k - $200k
...Description: We are seeking a Cyber Risk Analyst (SME-level). This... ..., developing mitigation strategies, and enabling proactive enterprise... ..., and validation of complex security risks and associated... ...vulnerabilities. Provide expert consultation on risk acceptance,...For contractorsRemote workShift work- ...a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive... ...digital asset market dynamics from regulatory, supervisory, and risk management perspectives.The ideal candidate will bring strong...InternshipLocal area
- Booz Allen Hamilton is seeking an experienced Cybersecurity professional to translate security concepts for clients and lead risk assessments with government counterparts. You’ll develop mitigation plans, guide the client through action items, and craft presentations and...
- NTT DATA seeks a Cybersecurity and Risk Analyst to join the VAPT team, identifying and mitigating cybersecurity risks across enterprise... ...audits, and collaborate with cross‑functional teams to improve security posture and compliance across federal directives and #J-18808-...
- Computer Technologies Consultants (CTC) is seeking a ServiceNow Business Analyst to support the Department of State in Arlington, VA... ...services, agile software development, DevOps, Test Automation, Cyber Security, and infrastructure solutions. Additionally, we provide...Full timeContract workFor contractorsLocal areaRemote work
- ...a safer, healthier, and more secure nation and world. Our workplace... ...to ensure acquisition strategies reinforce — rather than constrain... ...prioritization, sequencing, and risk trade-offs to improve... ...experience defense, technology, or consulting industries.Experience working...Work experience placementInternshipLocal area
- Celestar Corporation is seeking a Senior Risk Mitigation Specialist to support DIA... ...ownership, control, and influence management strategies.Helps coordinate multiple reports,... ...collection of legal business entities’ security data.Prepares detailed correspondence on...Local area
- ...opportunities. The program duration is up to 180 days. The Skillbridge Risk Consultant will work 8-hour shifts, Monday through Friday.The... ...clients directly and will require the candidate to provide general security support, risk monitoring and updates as well as be able to...Work experience placementMonday to FridayShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security & Risk Strategy Consultant. Be the first to apply!
- cyber security consultant McLean, VA
- cyber security specialist McLean, VA
- risk consultant McLean, VA
- it risk analyst McLean, VA
- operational risk specialist McLean, VA
- risk analyst McLean, VA
- third party risk analyst McLean, VA
- risk officer McLean, VA
- senior quantitative risk analyst McLean, VA
- operational risk consultant McLean, VA



