CFGI · 5 months ago
Cybersecurity - Director
CFGI is a unique and highly specialized financial consulting firm that assists the office of the CFO through various business scenarios. The Director of Cybersecurity will build and manage cybersecurity frameworks, conduct risk assessments, and guide clients on compliance and governance in cybersecurity.
AccountingConsultingFinancial Services
Responsibilities
Build cybersecurity Process Risk & Control frameworks for clients that are rationalized against applicable laws and standards
Conduct Risk Assessment and Maturity Assessments for clients
Audit Control definition and control testing against client’s Internal Audit framework, or against industry standards or laws & regulations
Conduct Cybersecurity and Data Privacy Compliance readiness assessments for clients
Guide clients in establishing cybersecurity policies, standards, and procedures
Manage cybersecurity training & awareness services for clients from design to implementation
Oversee the implementation and management of security tools, technologies, and processes
Advise clients on cybersecurity functions’ metrics and reporting for various level of client audiences including Audit Committee and Board of Directors
Be the client’s Subject Matter Expert on compliance questions for cybersecurity regulations and industry practices
Provide governance services for clients to oversee their cybersecurity functions and practices, including governance over: Policies & Procedures, Risk Management, Vulnerability Management, Incident Management, etc
Build Risk Management practices for clients, including policies, procedures, Risk Register, etc
Assist clients in implementing market GRC tools
Lead Third Party Risk Management (TPRM) for clients, including designing and operationalizing a TPRM framework, reviewing existing and new vendors for clients, and provide ongoing monitoring services
Needs strong understanding/experience of the German/EU regulatory compliance landscape in Cybersecurity / Data Privacy space and its impact on businesses
Ability to prioritize and multitask. Flexibility and adaptability in work approach
Ability to manage project plans for client various data privacy engagements, including creating tasks, timeline and budgets
Ability to report to leadership and clients on status updates periodically, including progress and challenges
Strong interpersonal and communication skills; experience with cross-cultural communications
Agile and flexible, capable of dealing with ambiguity, and confront challenges and opportunities with speed, endurance and decisiveness
Manage a team of consultants and managers on various projects
Qualification
Required
Build cybersecurity Process Risk & Control frameworks for clients that are rationalized against applicable laws and standards
Conduct Risk Assessment and Maturity Assessments for clients
Audit Control definition and control testing against client's Internal Audit framework, or against industry standards or laws & regulations
Conduct Cybersecurity and Data Privacy Compliance readiness assessments for clients
Guide clients in establishing cybersecurity policies, standards, and procedures
Manage cybersecurity training & awareness services for clients from design to implementation
Oversee the implementation and management of security tools, technologies, and processes
Advise clients on cybersecurity functions' metrics and reporting for various level of client audiences including Audit Committee and Board of Directors
Be the client's Subject Matter Expert on compliance questions for cybersecurity regulations and industry practices
Provide governance services for clients to oversee their cybersecurity functions and practices, including governance over: Policies & Procedures, Risk Management, Vulnerability Management, Incident Management, etc
Build Risk Management practices for clients, including policies, procedures, Risk Register, etc
Assist clients in implementing market GRC tools
Lead Third Party Risk Management (TPRM) for clients, including designing and operationalizing a TPRM framework, reviewing existing and new vendors for clients, and provide ongoing monitoring services
Needs strong understanding/experience of the German/EU regulatory compliance landscape in Cybersecurity / Data Privacy space and its impact on businesses
Ability to prioritize and multitask. Flexibility and adaptability in work approach
Ability to manage project plans for client various data privacy engagements, including creating tasks, timeline and budgets
Ability to report to leadership and clients on status updates periodically, including progress and challenges
Strong interpersonal and communication skills; experience with cross-cultural communications
Agile and flexible, capable of dealing with ambiguity, and confront challenges and opportunities with speed, endurance and decisiveness
Manage a team of consultants and managers on various projects
Language preference – German, French & English
Bachelor's degree in business, computer science, information systems, engineering, or a related discipline
Strong knowledge in national and global industry practices and regulations in Cybersecurity and Data Privacy, including NIST CSF, CIS, PCI DSS, HIPAA, ISO27001, CMMC, FedRAMP, SOX, GDPR, CCPA, etc
Preferred
Industry certifications would be preferred but not required: CISSP, CISM, etc
Company
CFGI
CFGI is a corporate finance and financial consulting firm that specializes in complex accounting, reporting, tax, and compliance issues.
H1B Sponsorship
CFGI has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)
Funding
Current Stage
Late StageTotal Funding
unknownKey Investors
The Carlyle Group
2021-09-15Acquired
2018-03-01Private Equity
Recent News
Research and Markets
2025-09-02
Computer Weekly
2025-07-10
Company data provided by crunchbase