Cybersecurity - Director jobs in United States
cer-icon
Apply on Employer Site
company-logo

CFGI · 5 months ago

Cybersecurity - Director

CFGI is a unique and highly specialized financial consulting firm that assists the office of the CFO through various business scenarios. The Director of Cybersecurity will build and manage cybersecurity frameworks, conduct risk assessments, and guide clients on compliance and governance in cybersecurity.

AccountingConsultingFinancial Services
check
Work & Life Balance
check
H1B Sponsor Likelynote

Responsibilities

Build cybersecurity Process Risk & Control frameworks for clients that are rationalized against applicable laws and standards
Conduct Risk Assessment and Maturity Assessments for clients
Audit Control definition and control testing against client’s Internal Audit framework, or against industry standards or laws & regulations
Conduct Cybersecurity and Data Privacy Compliance readiness assessments for clients
Guide clients in establishing cybersecurity policies, standards, and procedures
Manage cybersecurity training & awareness services for clients from design to implementation
Oversee the implementation and management of security tools, technologies, and processes
Advise clients on cybersecurity functions’ metrics and reporting for various level of client audiences including Audit Committee and Board of Directors
Be the client’s Subject Matter Expert on compliance questions for cybersecurity regulations and industry practices
Provide governance services for clients to oversee their cybersecurity functions and practices, including governance over: Policies & Procedures, Risk Management, Vulnerability Management, Incident Management, etc
Build Risk Management practices for clients, including policies, procedures, Risk Register, etc
Assist clients in implementing market GRC tools
Lead Third Party Risk Management (TPRM) for clients, including designing and operationalizing a TPRM framework, reviewing existing and new vendors for clients, and provide ongoing monitoring services
Needs strong understanding/experience of the German/EU regulatory compliance landscape in Cybersecurity / Data Privacy space and its impact on businesses
Ability to prioritize and multitask. Flexibility and adaptability in work approach
Ability to manage project plans for client various data privacy engagements, including creating tasks, timeline and budgets
Ability to report to leadership and clients on status updates periodically, including progress and challenges
Strong interpersonal and communication skills; experience with cross-cultural communications
Agile and flexible, capable of dealing with ambiguity, and confront challenges and opportunities with speed, endurance and decisiveness
Manage a team of consultants and managers on various projects

Qualification

Cybersecurity Process Risk & ControlRisk AssessmentCybersecurity ComplianceGovernance ServicesGRC Tools ImplementationThird Party Risk ManagementGerman/EU Regulatory ComplianceIndustry CertificationsLanguages GermanLanguages FrenchLanguages EnglishProject ManagementInterpersonal SkillsTeam ManagementCommunication Skills

Required

Build cybersecurity Process Risk & Control frameworks for clients that are rationalized against applicable laws and standards
Conduct Risk Assessment and Maturity Assessments for clients
Audit Control definition and control testing against client's Internal Audit framework, or against industry standards or laws & regulations
Conduct Cybersecurity and Data Privacy Compliance readiness assessments for clients
Guide clients in establishing cybersecurity policies, standards, and procedures
Manage cybersecurity training & awareness services for clients from design to implementation
Oversee the implementation and management of security tools, technologies, and processes
Advise clients on cybersecurity functions' metrics and reporting for various level of client audiences including Audit Committee and Board of Directors
Be the client's Subject Matter Expert on compliance questions for cybersecurity regulations and industry practices
Provide governance services for clients to oversee their cybersecurity functions and practices, including governance over: Policies & Procedures, Risk Management, Vulnerability Management, Incident Management, etc
Build Risk Management practices for clients, including policies, procedures, Risk Register, etc
Assist clients in implementing market GRC tools
Lead Third Party Risk Management (TPRM) for clients, including designing and operationalizing a TPRM framework, reviewing existing and new vendors for clients, and provide ongoing monitoring services
Needs strong understanding/experience of the German/EU regulatory compliance landscape in Cybersecurity / Data Privacy space and its impact on businesses
Ability to prioritize and multitask. Flexibility and adaptability in work approach
Ability to manage project plans for client various data privacy engagements, including creating tasks, timeline and budgets
Ability to report to leadership and clients on status updates periodically, including progress and challenges
Strong interpersonal and communication skills; experience with cross-cultural communications
Agile and flexible, capable of dealing with ambiguity, and confront challenges and opportunities with speed, endurance and decisiveness
Manage a team of consultants and managers on various projects
Language preference – German, French & English
Bachelor's degree in business, computer science, information systems, engineering, or a related discipline
Strong knowledge in national and global industry practices and regulations in Cybersecurity and Data Privacy, including NIST CSF, CIS, PCI DSS, HIPAA, ISO27001, CMMC, FedRAMP, SOX, GDPR, CCPA, etc

Preferred

Industry certifications would be preferred but not required: CISSP, CISM, etc

Company

CFGI

twittertwitter
company-logo
CFGI is a corporate finance and financial consulting firm that specializes in complex accounting, reporting, tax, and compliance issues.

H1B Sponsorship

CFGI has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)

Funding

Current Stage
Late Stage
Total Funding
unknown
Key Investors
The Carlyle Group
2021-09-15Acquired
2018-03-01Private Equity

Leadership Team

leader-logo
Nicholas J. Nardone
Co-CEO
linkedin
leader-logo
Steven M Michienzi
Chief Financial Officer
linkedin
Company data provided by crunchbase