Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Global Cybersecurity Director - Risk & Compliance

$31.25 per hour
Full-time

Boston Consulting Group

Locations: Boston | WashingtonWho We AreBoston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.What You'll DoBCG Federal operates within a federally regulated environment supporting consulting, cloud, software, data, and emerging AI technology capabilities. The Director, Federal Security Governance, Risk & Compliance (SGRC) serves as the senior accountable lead for the SGRC pillar. This role drives the strategy, risk governance, regulatory compliance, certification readiness, and control maturity agenda across all BCG Federal offerings.The Director leads enterprise readiness and audit defense across key federal frameworks; including CMMC Level 2, NIST SP 800-171/53, FedRAMP and DFARS. Working closely with Security Architecture, the Director translates complex regulatory requirements into policy and control objectives, establishing the governance framework while Architecture designs the technical controls and secure cloud baselines.Furthermore, this role pioneers Federal AI Governance, establishing guardrails, risk assessment protocols, and approval pathways for Generative AI and machine learning tools deployed across federal boundaries.YOU’RE GOOD AT You excel at leading complex federal cybersecurity and compliance programs by combining technical GRC expertise, executive communication, organizational change management, and trusted stakeholder relationships.YOUR DUTIES WILL INCLUDELead the Federal GRC pillar strategy, roadmap, operating model, governance rhythm, reporting structure, and control maturity agenda across BCG Federal.Direct enterprise compliance initiatives supporting DFARS, CMMC Level 2, NIST 800-171/, FedRAMP, AI governance, cloud security, and related federal cybersecurity requirements.Partner closely with Security Architecture to align policies with technical engineering; defining what control outcomes are required while Architecture designs how technical controls and baselines are configured.Own organizational readiness for federal assessments and certifications, including assessment scoping, SSP development, evidence preparation, stakeholder preparation, audit defense, C3PAO engagement, and executive reporting.Establish and mature Federal AI Governance, including risk methodologies, safety frameworks (e.g., NIST AI RMF), boundary protections, and approval pathways for secure adoption of Generative AI and LLMs.Own the federal risk register governance model, including risk identification, severity assessment, mitigation planning, exception management, escalation, and reporting.Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.Lead organizational change management for federal cybersecurity and compliance initiatives, including stakeholder alignment, communications, training, readiness tracking, and sustainment of new governance processes.Oversee continuous monitoring (CONMON) governance, evidence traceability, recurring review cadences, POA&M tracking, and management reporting.Define and deliver executive-level metrics, dashboards, QBR content, risk reporting, compliance status updates, and decision-ready materials for leadership.Lead, mentor, onboard, and develop GRC personnel while improving team operating rhythms, accountability, prioritization, and delivery quality.What You'll Bring10+ years of experience in cybersecurity, information security, GRC, audit, compliance, risk management, or technology governance environments.Demonstrated experience leading federal cybersecurity compliance programs (preferably supporting CMMC Level 2, NIST 800-171/53, FedRAMP) in consulting, cloud, SaaS, or federal contracting environments.Direct experience leading or materially supporting external assessments, regulatory inquiries, audit readiness efforts, C3PAO assessments, evidence preparation, and audit defense.Proven track record establishing AI Security Governance, evaluating machine learning/GenAI security risks, and applying federal AI risk management frameworks.Proven ability to partner with Security Architecture, DevSecOps, and IT engineering teams to translate complex legal and federal requirements into practical operating baselines.Strong organizational change management experience, including leading cross-functional process adoption, stakeholder readiness, communications, training, and sustainment of new operating models.Excellent written and verbal communication skills, including experience developing executive briefings, policies, audit materials, and management-level reporting.Ability to obtain and maintain a U.S. Government Secret Clearance where required.Additional info*** For US locations only ***In the US, we have a compensation transparency approach.Total compensation for this role includes base salary, annual discretionary performance bonus, retirement contribution, and a market leading benefits package described below.The base salary range for this role begins at $176,000.00 in our lowest cost US region and goes up to $199,830.00 in our highest cost US region. Your recruiting contact can share more about the specific salary range for your preferred location during the hiring process.This is an estimated range, however, specific base salaries within the range depend on various factors such as experience and skill set. It is not common for new BCG employees to be hired at the high-end of the salary range. BCG regularly reviews its ranges to ensure market competitiveness.In addition to your base salary, your total compensation will include a bonus of up to 30% and a generous retirement contribution that starts at 5% and moves to 10% after 2 years.All of our plans provide best in class coverage:Zero dollar ($0) health insurance premiums for BCG employees, spouses, and childrenLow $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugsDental coverage, including up to $5,000 in orthodontia benefitsVision insurance with coverage for both glasses and contact lenses annuallyReimbursement for gym memberships and other fitness activitiesFully vested Profit Sharing Retirement Fund contributions made annually, whether you contribute or not, plus the option for employees to make personal contributions to a 401(k) planPaid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursementGenerous paid time off including 12 holidays per year, an annual office closure between Christmas and New Years, and 15 vacation days per year (earned at 1.25 days per month)Paid sick time on an as needed basisBoston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws. BCG is an E - Verify Employer. Click here for more information on E-Verify.Job SummaryJob number: 58850Profession: Legal Team and Risk Management

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Global Cybersecurity Director - Risk & Compliance in Washington DC vacancy
  • $176k

     ...human capabilities. Our diverse, global teams bring deep industry and...  ...AI technology capabilities. The Director, Federal Security Governance, Risk & Compliance (SGRC) serves as the senior accountable...  ...at leading complex federal cybersecurity and compliance programs by combining... 
    Suggested
    Work at office
    Local area

    The Boston Consulting Group

    Washington DC
    3 days ago
  • $121.2k - $163.9k

    We are seeking a Sr. Risk Manager to own and mature the risk, controls, and compliance framework within Amazon Leo's Global Service Compliance (GSC) organization, with a focus on Network and Security compliance obligations. Amazon Leo is an initiative to launch a constellation... 
    Suggested
    Permanent employment
    Flexible hours

    Amazon

    Arlington, VA
    13 hours ago
  • $208.55k - $254.85k

     ...facilitating messages between providers.Job Summary:The Director of Governance, Risk and Compliance provides strategic oversight of the Governance Risk...  ...such as finance, technology, human resources, cybersecurity, competition, and environmentalExperience managing a... 
    Suggested
    Full time
    Casual work
    Work at office
    Local area
    Immediate start
    Flexible hours

    Surescripts

    Arlington, VA
    5 hours ago
  • $147.9k - $200.1k

     ...cloud? Amazon Web Services (AWS) is leading the next paradigm shift in computing and the AWS Global Government Delivery Organization (GGDO) team is looking for a motivated Risk Manager to join our fast-paced organization. The GGDO, manages direct US Government programs... 
    Suggested
    Worldwide
    Flexible hours
    Shift work

    Socket.dev

    Arlington, VA
    5 days ago
  • $128k - $212.5k

     ...AreFTI Consulting is the leading global expert firm for organizations facing...  ..., navigating crises, managing risk and optimizing performance, our teams...  ...RoleFTI Consulting, Inc.’s Risk& Compliance Department is seeking a Senior Manager/Director of Compliance -- Americas to... 
    Suggested
    Full time
    Work at office

    FTI Consulting

    Washington DC
    4 days ago
  • $269.6k - $307.7k

     ...Overview Sr. Business Director, Credit Settlement Risk (Global Payment Network) As the head of the Global Network’s Credit Settlement Risk team...  ...and evolving payment flows. Operational Health & Compliance : Ensure transactions flow reliably, issues are identified... 
    Full time
    Part time
    Local area

    Capital One

    McLean, VA
    23 days ago
  • $114.6k - $191k

     ...Specialist Manager role is critical to ensuring regulatory compliance, managing risk, and ensuring essential security operations for our 300+ classified...  ...recruiting process, please direct your inquiries to the Global Call Center (GCC) at ****@*****.***.... 
    Contract work
    For subcontractor

    Deloitte

    Rosslyn, VA
    2 days ago
  •  ...office presence as needed based on business needs. Overview: The Compliance, Risk and Business Manager is responsible for advancing the Company...  ...environment preferred. Experience collaborating across global teams, including U.S. and India-based stakeholders, is preferred... 
    Work experience placement
    H1b
    2 days per week

    Inovalon Inc

    Bowie, MD
    1 day ago
  • $134.5k - $265.1k

     ...Defense & Resilience - Insider Risk Manager Are you interested in...  ...of different risk and compliance programs that extend well beyond...  ...responding to and recovering from cybersecurity incidents • Hands-on...  ...direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    4 days ago
  • $97.9k - $132.2k

    Amazon is seeking a results-driven financial services compliance professional to support the compliance program for Amazon Payments, Inc....  ...services.As a Compliance Manager within the 2nd line North America Risk and Compliance Office, you'll be instrumental in ensuring... 
    Work experience placement
    Work at office
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago
  • $134.5k - $265.1k

    Position Summary Cyber Security & Risk Strategy ManagerOur Deloitte Cyber team...  ...challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful...  ..., please direct your inquiries to the Global Call Center (GCC) at ****@*****.***... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    1 day ago
  • $145k - $200k

     ...advisory solutions spanning accounting and risk, technology-enabled transformation, and...  ...for future success. As an Associate Director at CrossCountry Consulting specializing...  ...Outsourcing/Co-sourcing. Sarbanes-Oxley Compliance (SOX), and Governance, Risk and Compliance... 
    Local area
    Flexible hours

    CrossCountry Consulting

    Mc Lean, VA
    3 days ago
  • $81.6k - $142.8k

     ...talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join the Transportation Risk and Compliance (TRC) team at Amazon. Amazon Transportation Services have built world-class Middle Mile operations, which rely on an... 
    Flexible hours

    Amazon

    Arlington, VA
    13 hours ago
  • $100k

     ...customers! Become a member of a global community! The international logistics...  ...us! Job Description The Director, Global Legal Services (Compliance) (“DGLSC”), will join a world-class...  ...to analyze complex issues, manage risk, and drive practical business solutions... 
    Work at office
    Flexible hours

    Expeditors

    Washington DC
    14 days ago
  • $120k - $160k

     ...with you! Job Summary:  Miller Kaplan’s Risk Advisory team is looking for a Manager to join our Cybersecurity practice. The Manager is responsible for leading...  ...risk assessments, network and security reviews, compliance, assessments, and system configuration review... 
    Work at office
    Remote work
    Flexible hours
    Day shift

    Miller Kaplan Arase LLP

    Washington DC
    6 days ago
  •  ...Executive Director, Market Risk for Credit Trading About the Company Globally-recognized banking group Industry Banking Type Public Company Founded...  ...taking, support senior management, and ensure compliance with regulatory requirements. The Executive... 

    Confidential

    Washington DC
    3 days ago
  • $115k - $135k

     ...adoption projects to drive adoption of Diligent’s Governance, Risk and Compliance solutions.Key ResponsibilitiesAct as a trusted advisor and...  ...the future - you’re an agent of positive change, joining a global community on a mission to make an impact.Learn more at diligent... 
    Work at office
    Local area
    Visa sponsorship
    Flexible hours
    Shift work

    Diligent

    Washington DC
    4 days ago
  •  ...is looking for a Cyber Security Product Risk Manager to who works with specialists from...  ...execute Risk Management Framework (RMF) CyberSecurity, CyberResilience, Cyber Survivability...  ...system boundary.Proactively engages with Compliance and Legal to ensure adherence with all... 
    Contract work
    Work at office
    Local area
    Visa sponsorship

    AIRBUS U.S. Space & Defense, Inc.

    Arlington, VA
    11 days ago
  •  ...SET Development is seeking a Cyber Security Product Risk Manager to support the security and resilience of...  ...hardware. This role sits at the intersection of cybersecurity, space systems engineering, and compliance , ensuring that cyber risks are identified, assessed... 

    SET Development

    Arlington, VA
    22 days ago
  •  ...practices. ProSidian provides enterprise services/solutions for Risk Management, Compliance, Business Process, IT Effectiveness, Engineering,...  ...our multidisciplinary teams bring together the talents of global professionals to complete a wide range of engagements for... 
    Full time
    Contract work
    Temporary work
    For contractors
    Work at office
    Remote work
    Flexible hours

    Prosidian Consultng

    Washington DC
    2 days ago
  • $150k - $160k

     ...the Bank's technology governance, risk management, and compliance (GRC) program. Serves as a primary...  ...engagements related to technology, cybersecurity, and operational risk. Monitors and...  ...INFORMATION:The wage range for the SVP & Director of IT Governance position is $150,0... 
    Contract work
    Temporary work
    Work at office
    Flexible hours

    WesBanco

    Bowie, MD
    4 days ago
  •  ...Description CyberLinx Solutions LLC is seeking a forward thinking Cybersecurity GRC Lead / Cyber Risk Manager responsible for leading the organization’s cybersecurity governance, risk, and compliance (GRC) program. This role oversees enterprise risk assessments, regulatory... 

    CyberLinx Solutions LLC

    Washington DC
    12 days ago
  • $162k - $310k

    About the TeamGovernance, Risk, and Compliance (GRC) is foundational to Security delivering mission outcomes at OpenAI. We’re excited about building...  ...disabilities, and requests can be made via this link.OpenAI Global Applicant Privacy PolicyAt OpenAI, we believe artificial... 
    Work at office
    Local area
    Relocation package
    Flexible hours

    OpenAI

    Washington DC
    1 day ago
  •  ...practices. ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness | Engineering |...  ...our multidisciplinary teams bring together the talents of global professionals to complete a wide range of engagements for... 
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    Prosidian Consultng

    Alexandria, VA
    2 days ago
  • $137.5k - $229.1k

     ...business solutions. Work You’ll Do As a Manager of Supply Chain Risk Management, Strategy and Transformation on the Government and Public...  ...in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at ****@*****.***.... 
    Work at office
    Local area

    Deloitte

    Rosslyn, VA
    2 days ago
  • $125.4k - $219.96k

     ...Risk Management DirectorUnder the general direction of MedStar Health's System Risk Management Office and the Vice President of Medical...  ...established by both the hospital and MedStar leadership the Director develops and implements operating policies and procedures for the... 
    Work at office

    MedStar Health

    Washington DC
    5 days ago
  •  ...Risk Manager, Senior Category: Leadership and Management Roles Main location: United...  ...risks to management, ensuring regulatory compliance, and promoting risk awareness throughout...  ...with teammates and clients while accessing global capabilities to scale your ideas, embrace... 
    Full time

    CGI

    Arlington, VA
    2 days ago
  • $127.1k - $171.9k

     ...Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people who keep the...  .... You will evaluate the impact of identified site risks and constraints on development costs and schedules. The right... 
    Flexible hours

    Amazon Data Services, Inc.

    Washington DC
    1 day ago
  •  ...North American Investigations, Diligence and Compliance practice is seeking a Senior Manager...  ...caseload. A key interest in business strategy, global events and markets, with an awareness of...  ...(client) investigations, insider risk compliance assessments, consulting projects... 
    Temporary work

    Kroll

    Washington DC
    4 days ago
  • $99.2k - $145k

     ...organization, partnering closely with Global Banking & Markets (GBAM) Chief Information...  ..., technology strategy, and associated cybersecurity risks.Through strong partnerships and risk-...  ...risk management, regulatory, and compliance objectives.• Collaborate with Risk, Technology... 
    Full time
    Work at office
    Flexible hours
    Day shift

    Bank of America

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Global Cybersecurity Director - Risk & Compliance. Be the first to apply!