Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Risk Management Consultant

Deloitte

Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success. Work You’ll Do As a US Delivery Center Delivery Senior Consultant, Software Engineering Solutions on the team, you will: Advise Government & Public Services clients in executing the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) lifecycle to mitigate cyber risk and threatsAdvise federal agency clients on cyber risk posture and RMF compliance strategies aligned to FISMA, NIST, and agency-specific requirementsLead the development and/or review of Authority to Operate (ATO) packages (e.g., System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action & Milestones (POA&Ms))Assess or develop an organization's cyber risk strategy as it relates to data risk, cyber risk management, risk frameworks and policies, and risk measures and reportingStrategically drive the development and execution of risk assessments and mitigation plans to enhance the client's ability to identify, evaluate, prioritize, and mitigate risksImplement risk management solutions aligned to the client's vision and strategic prioritiesDrive development and implementation of cyber strategies grounded in leading practices, industry frameworks, and targeted to the client's risk and business needsSynthesize technical findings and risk data into actionable reports and executive-level briefingsDevelop impactful presentations that support engagement goals, communicate technical findings clearly to both technical and executive audiencesDeliver key messages with clarity and confidence; tailor communication style to the audienceUnderstand how business functions operate and how industry trends impact a client's cyber posture and risk profileIdentify and evaluate complex business and technology risks, and connect findings to business impactProvide guidance and quality review to junior team members on RMF documentation, assessment artifacts, and deliverable developmentParticipate in team problem-solving efforts and offer ideas to address client challengesIdentify opportunities for efficiencies in work processes and innovative approaches to completing scope of workOwn assigned work products through final review, client submission, and resolution of quality-review commentsAssist in proposal development, as requested A successful candidate would possess these skills: Ability to work independently and collaborate as part of a teamEffective written and verbal communication skillsMeticulous attention to detail and quality of work productAbility to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-paced and dynamic environmentStrong interpersonal skills and professional demeanorAbility to meet deadlinesAbility to provide clear guidance to others The Team Deloitte’s Government & Public Services (GPS) practice – our people, ideas, technology and outcomes – is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise. Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments. This opportunity sits within our Deloitte US Delivery Center model, which is dedicated to driving impactful business services. It leverages Deloitte’s scale and talent, as well as a center delivery model to provide high-quality, cost-effective service with standardized processes and procedures to service businesses across Deloitte. The Deloitte US Delivery Center has a small-business feel with a big-business impact. With the resources of Deloitte and a community feel, the delivery center model provides high-quality services to our clients. USDC professionals work out of one of our specific delivery center locations, and each location presents dynamic career opportunities for professionals to focus on their work with nominal travel requirements. Qualifications Required: Bachelor’s degree in cybersecurity, information technology, information systems, computer science, risk management, business, mathematics, decision sciences, or a related field, or an equivalent combination of education, professional training, and relevant cybersecurity experience in accordance with applicable talent policies.Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future 4+ years of professional experience in cybersecurity, information assurance, governance, risk and compliance, cybersecurity risk management, or federal security compliance, including at least 2 years supporting NIST RMF or an equivalent authorization process including participation in at least one end-to-end authorization cycle or multiple lifecycle phases across two or more systems.2+ years of experience applying NIST RMF concepts and NIST SP 800-37 to information-system authorization, security assessment, or continuous-monitoring activities, including 1+ year applying NIST SP 800-53 controls. Experience with the NIST CSF, FedRAMP, or agency-specific security requirements is preferred.2+ years of experience implementing, documenting, assessing, or managing NIST SP 800-53 security controls, including at least 1 year preparing control narratives, reviewing implementation evidence, documenting assessment results, or tracking remediation activities.2+ years of experience developing, updating, or quality-reviewing cybersecurity policies, procedures, standards, or implementation guidance mapped to NIST SP 800-53 controls or an equivalent federal security baseline, including experience supporting at least one moderate-impact information system.At least 2 years of experience in RMF documentation and control implementation, plus at least 1 year in three of the following: system categorization, boundary definition, control tailoring, continuous monitoring, risk assessment, vulnerability management, or GRC tool administration.Ability to obtain and maintain the level of federal security clearance or Public Trust designation required for client engagementsDelivery Center Location & Travel Requirements:Hybrid Work Model: Operate under a hybrid system requiring residence within a commutable distance to one of the US Delivery Center locations (Gilbert, Lake Mary, or Mechanicsburg) or Geo-Hub locations (Atlanta, Charlotte, Dallas, Houston, and Philadelphia)Co-location Expectation: Spend up to 30% of working time co-located at an assigned office for orchestrated opportunities, including projects, practice sessions, training, and Moments That Matter at a Deloitte Delivery Center location, Geo-Hub location, approved site, or project locationTravel Requirement: Maximum of 10% overnight travel for client or project purposesRelocation Requirement: If relocation is necessary, complete the move within 12 weeks from the start date to reside within a commutable distance Preferred: Previous federal or government consulting experience1+ year applying NIST SP 800-171, CMMC, or equivalent controlled-unclassified-information security requirements.1+ year of experience analyzing or documenting enterprise, mission-critical, cloud, or multi-system technology environments, including business processes, system dependencies, data flows, security vulnerabilities, or operational risks.1+ year of experience supporting a FedRAMP authorization, cloud security assessment, or RMF activity for AWS GovCloud, Azure Government, or an equivalent federal cloud environment.1+ year of experience delivering cybersecurity or RMF work in an Agile, hybrid-Agile, or iterative federal program environment, including sprint planning, backlog management, or incremental deliverable reviews.2+ years of experience in at least one technical domain relevant to RMF, such as security architecture, network security, cloud infrastructure, identity and access management, endpoint security, or vulnerability management.CISSP, CISM, CISA, or CEH certification Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at View email address on click.appcast.io. Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters. BenefitsAt Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you. Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work. Our purpose Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more. Professional development From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte Transactions and Business Analytics LLP, a subsidiary of Deloitte LLP. Please see for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law. Requisition code: 366149 Job ID 366149 Engineering and Product | Software Engineering SolutionsSame job available in 8 locations

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Risk Management Consultant in Houston, TX vacancy
  •  ...is seeking a highly skilled Principal Cybersecurity Analyst to serve as a technical authority...  ...advancing enterprise-wide governance, risk, and compliance (GRC) programs, with expanded...  ...effectiveness across cybersecurity risk management practices. The Principal... 
    Suggested
    Full time
    Work experience placement
    Local area
    Remote work
    Relocation package

    MD Anderson

    Houston, TX
    5 days ago
  •  ...ID#: 11270 Job Category: Treasury Position Type: Full Time, RegularWe are seeking a highly motivated and detail-oriented Risk Management Analyst to support the Risk Management team with the analysis, evaluation, and management of insurance policies, claims, renewals... 
    Suggested
    Full time
    Work at office

    EOG Resources

    Houston, TX
    4 days ago
  •  ...organization as we fuel the world and each other!Summary:We are seeking a detailed-oriented and proactive Credit Risk Analyst to join the Energy Transfer Credit Risk Management group which reports to the Manager - Credit Risk Management. The Credit Risk Analyst will be involved... 
    Suggested
    Work experience placement
    Work at office
    Relocation package
    Night shift

    Energy Transfer Partners

    Houston, TX
    3 days ago
  •  ...world's trusted infrastructure consulting firm, partnering with...  ...innovators, program and construction managers and other professionals...  ...support function within the Cybersecurity Engineering team, with an initial...  ..., enterprise reporting and risk visibility remain core to... 
    Suggested
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours

    AECOM

    Houston, TX
    1 day ago
  •  ...brokerage firm delivering expertly crafted Commercial Insurance and Risk Management, Private Insurance and Risk Management, Employee Benefits...  ...by the State Department of Insurance to provide service, consultation, and financial risk transfer solutions in states where the... 
    Suggested
    Full time
    Contract work
    Work at office

    The Baldwin Group

    Houston, TX
    3 days ago
  • POSITION OVERVIEWThe Senior/Lead Analyst, Market Risk, reports directly to the Manager, Market Risk, and is responsible for developing the Risk Department’s capabilities and delivering the current Risk Management requirements, including daily risk reporting to ensure compliance... 
    Work at office
    Work from home
    Flexible hours
    Weekend work

    Cheniere Energy

    Houston, TX
    1 day ago
  •  ...Worley is hiring a Risk Management professional to lead risk analysis across multiple projects in a Houston-based role. You’ll educate managers, drive RM practices, and deliver timely risk reports while mentoring junior RM staff. Ideal candidates hold a BA/BSc in Risk... 
    Full time

    Worley

    Houston, TX
    1 day ago
  •  ...future of North America's energy landscape.ERM is seeking a Managing Consultant, Project Manager based in the Gulf Coast region (Louisiana) to...  ...depends on strong leadership, regulatory expertise, and effective risk management. In this role, you will serve as a trusted advisor... 
    Full time
    Work at office
    Local area

    ERM Group

    Houston, TX
    2 days ago
  • Control Management maintains a strong and consistent control environment across the firm, grounded in a deep understanding of the business, its processes, and the compliance and operational risk landscape. With Control Managers appointed for each Line of Business, Function... 

    JP Morgan Chase

    Houston, TX
    19 hours ago
  • $142.9k - $266k

    Commercial Cybersecurity Business Developer and Account, Senior ManagerThe...  .... Work with the team to manage and maintain the market’s pipeline...  ...5+ years of experience with consulting business development...  ...Office SuiteKnowledge of various risk management and security frameworksPossession... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Houston, TX
    1 day ago
  •  ...Private Risk Advisor The USI Insurance Services Personal Risk Practice provides comprehensive risk management and insurance consultation to high net worth individuals and family offices with complex financial and insurance needs. The Private Risk Advisor is an outside... 
    Work at office
    Local area

    USI Insurance Services

    Houston, TX
    1 day ago
  • Position Overview Reporting to the Director, Risk Management, the Sr. Analyst, Risk will play a critical role in providing analysis, evaluating...  ..., alerting the Director, Risk Management and providing consultation to the FP&A organization on budget projections. Research P&L... 
    Work at office
    Shift work

    Alpha Generation

    Houston, TX
    5 days ago
  • $115k

     ...A leading Austin-based management consulting firm that helps executives and management teams solve a broad range of financial, management and technology challenges. To improve performance, reduce risks, and bridge resource gaps, the firm’s highly skilled Consultants provide... 
    Full time
    Local area

    Bridgepoint Consulting

    Houston, TX
    11 hours ago
  •  ...Officer) Engineer serves as an embedded cybersecurity practitioner within a assigned business...  ..., and business stakeholders to identify risk, drive remediation, and translate security...  ...support risk assessments, vulnerability management reviews, and security posture... 
    Work at office

    VDart Inc

    Houston, TX
    2 days ago
  • $200k - $250k

     .... Louis, or Minneapolis.The Cybersecurity Advisor (or Security Advisor...  ...will primarily focus on Threat Management, with additional expertise...  ..., security needs, and risk appetite. Identify their security...  ...Management, preferably as a consulting advisor, architect, or engineer... 
    Full time
    Work experience placement
    Local area
    Remote work
    Work from home

    Optiv

    Houston, TX
    1 day ago
  • $67.13k - $89.52k

    Line of Business: Service & Support Pay Range: $67,130.00 – $89,516.66 The Risk Specialist I supports the administration and execution of Heidelberg Materials' North American risk management and insurance programs. This role is responsible for coordinating insurance-... 
    Temporary work
    Work at office
    Flexible hours

    50092 Heidelberg Materials US, Inc.

    Houston, TX
    19 hours ago
  • $200k - $350k

     ...procurement, and project and construction management services to the refining, LNG, midstream...  ...Our focus spans proprietary technology, consulting, and energy transition to complete...  ...acceleration, infrastructure integration, risk management, and delivery strategy.Lead qualification... 
    Full time
    Contract work
    Temporary work
    Local area
    Relocation package
    Flexible hours

    KBR

    Houston, TX
    19 hours ago
  •  ...leadership, operational leadership, client managers and Business Class Directors....  ...relationships with industry counterparts in other consulting and construction organizations.  Develop...  ...review on key projects to help ensure risk management, proper staffing, quality reviews... 
    Contract work
    Work at office
    Local area

    HDR

    Houston, TX
    2 days ago
  •  ...skilled Sr. Patching and Vulnerability Management Analyst to support enterprise-wide patch...  ...patch compliance and reducing security risk while working closely with peers, security...  ...dedicated to infrastructure reliability and cybersecurity.What You Will DoEssential Duties and... 

    Kinder Morgan

    Houston, TX
    1 day ago
  • Position Title: Cybersecurity Risk & Compliance AnalystLocation: HOUSTON, TXFLSA Class: EXEMPTResponsible to: Senior Manager of Technical OperationsPosition Summary: VoltaGrid is seeking a Cybersecurity Risk & Compliance Analyst to help formalize and scale our risk governance... 
    Full time
    Local area

    VoltaGrid

    Houston, TX
    2 days ago
  •  ...The Vulcan Asset Management (VAM) Analyst is the primary driver of data integrity and strategic insight for our enterprise maintenance operations...  ...and implement solutions to improve data velocity and accuracy. Risk & Compliance: Assess risks within asset management practices... 

    Vulcan Materials

    Houston, TX
    4 days ago
  •  ...brokerage firm delivering expertly crafted Commercial Insurance and Risk Management, Private Insurance and Risk Management, Employee Benefits...  ...by the State Department of Insurance to provide service, consultation, and financial risk transfer solutions in states where the... 
    Full time
    Contract work
    Local area

    The Baldwin Group

    Houston, TX
    1 day ago
  • As an Associate in the Commercial Banking Credit Risk Business Management team, you will work at the intersection of strategy, operations, and financial oversight, supporting one of the firm's most critical risk functions. You will have the opportunity to build meaningful... 
    Shift work

    JP Morgan Chase

    Houston, TX
    1 day ago
  •  ...POSITION OVERVIEW: The Business Analyst III serves as a senior functional analyst supporting Musket's Enterprise Trade & Risk Management (ETRM) ecosystem and related business applications. This role partners with business stakeholders, developers, architects, and... 
    Work at office

    Loves Travel Stops & Country Store

    Houston, TX
    2 days ago
  • $117.3k - $179.86k

    As our Portfolio Management Advisor, you will be directly accountable to deliver expected gross margin originated from retail contract sales...  ...planning. The Advisor will be responsible for identifying risks, recommending hedge strategies, and taking direct action to hedge... 
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Work from home
    Work visa

    Engie

    Houston, TX
    more than 2 months ago
  •  ...initiatives. As a Lead Solutions analyst, you'll navigate ambiguity, manage change effectively, and communicate compellingly with diverse...  ...solutions which meets business requirements of ongoing KYC and Risk Assessment initiatives. Prepare detailed interface mapping... 
    Work at office

    JP Morgan Chase

    Houston, TX
    2 days ago
  • The Risk Management team is seeking a Senior Credit Risk Analyst to join the group, reporting to the Senior Manager of Credit Risk. The Analyst will be responsible for evaluating and managing credit risk across the company's commercial activities, including long-term power... 

    The AES Corporation

    Houston, TX
    1 day ago
  •  ...and operations — helping teams understand risk, make informed decisions, and move work...  ...are used in the real world and how cybersecurity can best support reliability, security,...  ...systems administration Cybersecurity, risk management, or vulnerability management Strong... 

    Delan Associates, Inc

    Houston, TX
    26 days ago
  •  ...Iapetus Infrastructure Services, LLC - Manager, Business Development Iapetus Infrastructure Services (IIS) oversees a portfolio of...  ...Relationship building and networking • Contract negotiation and risk management • Financial acumen and budgeting Skills &... 
    Contract work
    For contractors
    Remote work

    Iapetus Holdings LLC

    Houston, TX
    4 days ago
  • $134.5k - $265.1k

    Position Summary As a Senior Consultant in Deloitte Cyber’s Digital Trust & Privacy...  ...quality of work product, ability to manage and prioritize multiple tasks in a fast...  ..., Engineering, Information Technology, Cybersecurity, or a related field; alternatively, equivalent... 
    Local area
    Visa sponsorship

    Deloitte

    Houston, TX
    18 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Risk Management Consultant. Be the first to apply!