Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Global Cybersecurity Director - Risk & Compliance

$176k

Boston Consulting Group

Locations: Boston | WashingtonWho We AreBoston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.What You'll DoBCG Federal operates within a federally regulated environment supporting consulting, cloud, software, data, and emerging AI technology capabilities. The Director, Federal Security Governance, Risk & Compliance (SGRC) serves as the senior accountable lead for the SGRC pillar. This role drives the strategy, risk governance, regulatory compliance, certification readiness, and control maturity agenda across all BCG Federal offerings.The Director leads enterprise readiness and audit defense across key federal frameworks; including CMMC Level 2, NIST SP 800-171/53, FedRAMP and DFARS. Working closely with Security Architecture, the Director translates complex regulatory requirements into policy and control objectives, establishing the governance framework while Architecture designs the technical controls and secure cloud baselines.Furthermore, this role pioneers Federal AI Governance, establishing guardrails, risk assessment protocols, and approval pathways for Generative AI and machine learning tools deployed across federal boundaries.YOU’RE GOOD AT You excel at leading complex federal cybersecurity and compliance programs by combining technical GRC expertise, executive communication, organizational change management, and trusted stakeholder relationships.YOUR DUTIES WILL INCLUDELead the Federal GRC pillar strategy, roadmap, operating model, governance rhythm, reporting structure, and control maturity agenda across BCG Federal.Direct enterprise compliance initiatives supporting DFARS, CMMC Level 2, NIST 800-171/, FedRAMP, AI governance, cloud security, and related federal cybersecurity requirements.Partner closely with Security Architecture to align policies with technical engineering; defining what control outcomes are required while Architecture designs how technical controls and baselines are configured.Own organizational readiness for federal assessments and certifications, including assessment scoping, SSP development, evidence preparation, stakeholder preparation, audit defense, C3PAO engagement, and executive reporting.Establish and mature Federal AI Governance, including risk methodologies, safety frameworks (e.g., NIST AI RMF), boundary protections, and approval pathways for secure adoption of Generative AI and LLMs.Own the federal risk register governance model, including risk identification, severity assessment, mitigation planning, exception management, escalation, and reporting.Lead cybersecurity review of federal contracts, RFPs, client opportunities, software approvals, cloud service reviews, and third-party vendor risk management to support secure technology adoption.Lead organizational change management for federal cybersecurity and compliance initiatives, including stakeholder alignment, communications, training, readiness tracking, and sustainment of new governance processes.Oversee continuous monitoring (CONMON) governance, evidence traceability, recurring review cadences, POA&M tracking, and management reporting.Define and deliver executive-level metrics, dashboards, QBR content, risk reporting, compliance status updates, and decision-ready materials for leadership.Lead, mentor, onboard, and develop GRC personnel while improving team operating rhythms, accountability, prioritization, and delivery quality.What You'll Bring10+ years of experience in cybersecurity, information security, GRC, audit, compliance, risk management, or technology governance environments.Demonstrated experience leading federal cybersecurity compliance programs (preferably supporting CMMC Level 2, NIST 800-171/53, FedRAMP) in consulting, cloud, SaaS, or federal contracting environments.Direct experience leading or materially supporting external assessments, regulatory inquiries, audit readiness efforts, C3PAO assessments, evidence preparation, and audit defense.Proven track record establishing AI Security Governance, evaluating machine learning/GenAI security risks, and applying federal AI risk management frameworks.Proven ability to partner with Security Architecture, DevSecOps, and IT engineering teams to translate complex legal and federal requirements into practical operating baselines.Strong organizational change management experience, including leading cross-functional process adoption, stakeholder readiness, communications, training, and sustainment of new operating models.Excellent written and verbal communication skills, including experience developing executive briefings, policies, audit materials, and management-level reporting.Ability to obtain and maintain a U.S. Government Secret Clearance where required.Additional info*** For US locations only ***In the US, we have a compensation transparency approach.Total compensation for this role includes base salary, annual discretionary performance bonus, retirement contribution, and a market leading benefits package described below.The base salary range for this role begins at $176,000.00 in our lowest cost US region and goes up to $199,830.00 in our highest cost US region. Your recruiting contact can share more about the specific salary range for your preferred location during the hiring process.This is an estimated range, however, specific base salaries within the range depend on various factors such as experience and skill set. It is not common for new BCG employees to be hired at the high-end of the salary range. BCG regularly reviews its ranges to ensure market competitiveness.In addition to your base salary, your total compensation will include a bonus of up to 30% and a generous retirement contribution that starts at 5% and moves to 10% after 2 years.All of our plans provide best in class coverage:Zero dollar ($0) health insurance premiums for BCG employees, spouses, and childrenLow $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugsDental coverage, including up to $5,000 in orthodontia benefitsVision insurance with coverage for both glasses and contact lenses annuallyReimbursement for gym memberships and other fitness activitiesFully vested Profit Sharing Retirement Fund contributions made annually, whether you contribute or not, plus the option for employees to make personal contributions to a 401(k) planPaid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursementGenerous paid time off including 12 holidays per year, an annual office closure between Christmas and New Years, and 15 vacation days per year (earned at 1.25 days per month)Paid sick time on an as needed basisBoston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws. BCG is an E - Verify Employer. Click here for more information on E-Verify.Job SummaryJob number: 58850Profession: Legal Team and Risk Management

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Global Cybersecurity Director - Risk & Compliance in Washington DC vacancy
  • Capital One is seeking an experienced Director, Assistant General Counsel for the Global Payment Network, Network Participant Risk. The role advises on legal risks across issuers, acquirers, and network alliances, translating laws into actionable risk guidance and coordinating... 
    Suggested

    Socket

    Mc Lean, VA
    5 days ago
  • $121.2k - $163.9k

    We are seeking a Sr. Risk Manager to own and mature the risk, controls, and compliance framework within Amazon Leo's Global Service Compliance (GSC) organization, with a focus on Network and Security compliance obligations. Amazon Leo is an initiative to launch a constellation... 
    Suggested
    Permanent employment
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago
  • $145.5k - $241.5k

    FTI Consulting in Washington, DC is looking for a Director of Compliance — Americas to lead the risk and compliance programs across North and Latin America. This role collaborates closely with the Global Chief Risk & Compliance Officer on enterprise-wide compliance initiatives... 
    Suggested

    FTI Consulting

    Washington DC
    3 days ago
  •  ...Mission (IJM) is seeking a Grants Compliance Manager to strengthen IJM’s...  ...grant compliance and donor risk. The role oversees grant...  ...and works with regional and global teams to maintain audit-ready...  ...candidates, reporting to the Director, Grants Portfolio. U.S. work... 
    Suggested
    Local area
    Remote work

    International Justice Mission

    Arlington, VA
    2 days ago
  •  ...fun for people to hang out before, during, and after playing games. Discord's Legal team is looking for a Director, Product Risk and Compliance to lead our global product compliance function, focusing on privacy, safety, security, and consumer protection. This is a senior... 
    Suggested

    EngineersOfAI

    Washington DC
    3 days ago
  • $164k - $239k

    Compliance Manager, Global Governance and Risk, Public Sector Share Compliance Manager, Global Governance and Risk, Public Sector Copy link Google Reston...  ...subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc... 
    Temporary work
    Local area

    Google Inc.

    Washington DC
    2 days ago
  • $269.6k - $307.7k

     ...Sr. Business Director, Credit Settlement Risk (Global Payment Network) As the head of the Global Network’s Credit Settlement Risk team, you will...  ...new and evolving payment flows. Operational Health & Compliance : Ensure transactions flow reliably, issues are... 
    Full time
    Part time
    Local area

    Socket.dev

    McLean, VA
    4 days ago
  • EngineersOfAI is seeking a Director, Product Risk and Compliance in Washington, DC to lead product compliance functions focusing on privacy, safety, and security. This senior role includes guidance on compliance obligations, leading three teams, and developing compliance... 

    EngineersOfAI

    Washington DC
    3 days ago
  • McKinsey & Company is seeking a Manager for Third-Party Risk Strategy in the Optimize team. Based in one of multiple U.S. offices, you will shape the global TPRM program, collaborate with Ethics & Compliance, Finance, Legal, and Cyber teams, and drive improvements across... 

    McKinsey & Company

    Washington DC
    1 day ago
  • $147.9k - $200.1k

     ...cloud? Amazon Web Services (AWS) is leading the next paradigm shift in computing and the AWS Global Government Delivery Organization (GGDO) team is looking for a motivated Risk Manager to join our fast-paced organization. The GGDO, manages direct US Government programs... 
    Worldwide
    Flexible hours
    Shift work

    Socket.dev

    Arlington, VA
    4 days ago
  • Capital One Financial Corporation in McLean, VA seeks a Director to lead the PMO within the Global Payment Network Business Risk Office. The role drives strategic governance, executive communication, and cross-functional program delivery across a regulated financial services... 
    Work at office

    Capital One Financial Corporation

    Mc Lean, VA
    3 days ago
  • $128k - $212.5k

     ...AreFTI Consulting is the leading global expert firm for organizations facing...  ..., navigating crises, managing risk and optimizing performance, our teams...  ...RoleFTI Consulting, Inc.’s Risk& Compliance Department is seeking a Senior Manager/Director of Compliance -- Americas to... 
    Full time
    Work at office

    FTI Consulting

    Washington DC
    3 days ago
  • $269.6k - $307.7k

     ...Overview Sr. Business Director, Credit Settlement Risk (Global Payment Network) As the head of the Global Network’s Credit Settlement Risk team...  ...and evolving payment flows. Operational Health & Compliance : Ensure transactions flow reliably, issues are identified... 
    Full time
    Part time
    Local area

    Capital One

    McLean, VA
    7 days ago
  •  ...Trading and Markets, seeks applicants for a Senior Officer-Associate Director position within the Office of Broker-Dealer Finances (OBDF)....  ...gained in private or public sectors. The incumbent will monitor risk management practices at large broker-dealers, approve and #J-18... 
    Work at office

    U.S.-Securities-and-Exchange-Commission

    Washington DC
    4 days ago
  • $254.9k

     ...We’ll help you succeed in a globally connected powerhouse of diverse...  ...The Global Lead Security Compliance & Enforcement owns the strategy...  ...within Technology Assurance, Risk & Policy. The role transforms...  ...audit-ready governance. The Director creates clear global... 
    Full time
    Summer holiday
    Local area
    Flexible hours

    EY

    Washington DC
    1 day ago
  •  ...Investment Bank (AIIB) seeks a strategic leader to head Capital Markets Risk and Quantitative Analytics. You will guide development of risk...  ...to strengthen capital adequacy and risk capabilities for AIIB’s global portfolio. #J-18808-Ljbffr Asian Infrastructure Investment Bank

    Asian Infrastructure Investment Bank

    Washington DC
    3 days ago
  • $114.6k - $191k

     ...Specialist Manager role is critical to ensuring regulatory compliance, managing risk, and ensuring essential security operations for our 300+ classified...  ...recruiting process, please direct your inquiries to the Global Call Center (GCC) at ****@*****.***.... 
    Contract work
    For subcontractor

    Deloitte

    Rosslyn, VA
    1 day ago
  • Capital One is seeking an experienced Director, Assistant General Counsel for the Global Payment Network - Network Participant Risk. The role advises on legal risks in network participant relationships, including issuers, acquirers, and network alliances. The attorney will... 

    Capital One National Association

    Mc Lean, VA
    2 days ago
  •  ...Capital One seeks a Director of Product Management for the GRCx Product Management team to drive transformation of core risk management products. You will lead cross-functional teams to deliver customer-focused, technology-driven solutions and align product strategy with... 

    Jobleads-US

    McLean, VA
    4 days ago
  • $99k - $232k

    The Opportunity As a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Manager, you will play a pivotal role in guiding organizations through...  ...expectations Guiding teams in the application of cybersecurity risk management and compliance frameworks... 
    H1b

    PwC

    Washington DC
    4 days ago
  • $47.35 - $76.2 per hour

     ...Senior Manager Of Risk Management And Compliance This is a temporary position. Job Summary The...  ...comply with applicable regulations, and cybersecurity and IT policies. This strategic role...  .... You will help Marriott's Global Technology team build the audit and... 
    Hourly pay
    Temporary work
    Remote work
    Flexible hours

    Marriott International

    Bethesda, MD
    16 hours ago
  • $90.6k - $140k

     ...office presence as needed based on business needs. Overview: The Compliance, Risk and Business Manager is responsible for advancing the Company...  ...environment preferred. Experience collaborating across global teams, including U.S. and India-based stakeholders, is preferred... 
    Work experience placement
    H1b
    2 days per week

    Inovalon Inc

    Bowie, MD
    4 days ago
  •  ...Who We Are FTI Consulting is the leading global expert firm for organizations facing crisis...  ...disputes, navigating crises, managing risk and optimizing performance, our teams respond...  ...to manage change, mitigate risk, ensure compliance, resolve disputes, execute significant... 
    Work at office
    Flexible hours

    FTI Consulting

    Washington DC
    3 days ago
  • $145.5k - $241.5k

    FTI Consulting is seeking a Director of Compliance to oversee risk, compliance, and ethics programs for North America and Latin America. The position is located in Washington, DC and involves collaboration with business units to ensure adherence to compliance strategies... 

    Andersch Ag

    Washington DC
    1 day ago
  • S&P Global, a leader in ratings and data analytics, seeks a Chief Legal Officer to guide governance, regulatory strategy, and enterprise risk across a global footprint. The role partners with the CEO and Board to drive growth, ensure regulatory readiness, and lead AI‑enabled... 

    S&P Global

    Washington DC
    3 days ago
  • $134.5k - $265.1k

     ...Defense & Resilience - Insider Risk Manager Are you interested in...  ...of different risk and compliance programs that extend well beyond...  ...responding to and recovering from cybersecurity incidents • Hands-on...  ...direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox... 
    Local area
    Visa sponsorship

    Deloitte

    McLean, VA
    3 days ago
  • PwC is seeking a Manager in Security Risk & Engineering within Tech and Cyber Risk & Compliance to guide clients through regulatory landscapes and strengthen internal controls. You will lead engagements, mentor staff, and drive adherence to standards while leveraging technology... 

    PwC

    Washington DC
    4 days ago
  • $317.5k - $365k

     ...the foundation of a more open, global economy through digital...  ...Global Head of Product Security & Risk, you will define and lead the...  ...of Product, Security, Compliance, Risk, Legal, Policy, and Engineering...  ...evolving AML, payments, cybersecurity, and digital asset regulations... 
    Worldwide
    Flexible hours

    Circle

    Washington DC
    3 days ago
  • $101.12k - $139.04k

     ...Job Description: The Global Risk Financing Manager will reinforce the Corporate Risk Management philosophy to Mars, Incorporated's...  ...summaries, premium allocations, and claim support.  Support the Director of Global Risk Financing implementing the strategies, goals, objectives... 
    Contract work
    For contractors
    Work experience placement
    Local area
    McLean, VA
    a month ago
  • $101.12k - $139.04k

    Position Overview The Global Risk Financing Manager will reinforce the Corporate Risk Management philosophy within Mars, Incorporated's...  ...summaries, premium allocations, and claim support. Support the Director of Global Risk Financing in implementing strategies, goals,... 
    Contract work
    Local area

    Mars

    Mc Lean, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Global Cybersecurity Director - Risk & Compliance. Be the first to apply!