Cyber Security Consulting Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

QBE Insurance · 1 month ago

Cyber Security Consulting Lead

QBE Insurance is seeking an experienced Information Security Consultant to lead transformational change in cyber and information security risk management across their North America operations. The role involves conducting comprehensive security assessments, identifying and mitigating risks, and collaborating with various teams to ensure the protection of QBE’s systems and data from cyber threats.

Insurance
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Lead the development and delivery of a robust cyber and information security capability by partnering with stakeholders to proactively identify, assess, and mitigate risks across the organization
Drive the implementation and continuous improvement of a mature cybersecurity practice through the adoption of effective policies, standards, processes, and templates that enhance risk management and organizational resilience
Align security frameworks and standards with enterprise business and technology strategies to ensure cohesive and scalable security solutions
Determine security requirements by evaluating business strategies and ensuring security standards are embedded throughout the software development lifecycle
Define and maintain security requirements for software development, balancing business functionality with cybersecurity best practices
Collaborate with Cyber Security, Architecture, and supporting teams to define security architecture components that proactively mitigate risks across both application and cloud infrastructure environments
Provide security leadership and support across both application-level and cloud infrastructure projects, ensuring alignment with enterprise security goals
Conduct comprehensive system security and vulnerability assessments, risk analyses, and architectural reviews to identify integration challenges and emerging threats
Build and maintain strong cross-functional relationships to identify root-cause issues, provide actionable guidance, and drive sustained reduction of threats and vulnerabilities
Represent the security function in architecture review boards and project planning forums, ensuring security is embedded from the outset of all initiatives

Qualification

Information SecurityCyber Risk AssessmentsSecurity ProtocolsCloud SecurityDevSecOpsISO 27001NIST Cybersecurity FrameworkVulnerability ManagementClient CounselingCustomer ServiceManaging PerformanceIndividual ResilienceQuality Control (QC)Communication SkillsProblem SolvingCritical ThinkingConflict Management

Required

Extensive background in information security and IT risk management, with a focus on security, performance, and reliability
Experienced in conducting cyber risk assessments and implementing effective security solutions
Proven ability to collaborate with Application Development, Infrastructure, and Project teams to align on security goals and meet deadlines
Solid understanding of security protocols, cryptography, authentication, and authorization
Familiar with industry-recognized frameworks such as ISO 27001 and NIST Cybersecurity Framework (CSF)
Adept at communicating and enforcing security measures across diverse teams and stakeholders
Broad technical knowledge across security, networking, web applications, firewalls, vulnerability management, and risk management
Self-motivated and adaptable, with the ability to work independently in fast-paced, evolving environments

Preferred

Over 7 years of experience in Information Security consulting roles
Hands-on experience with DevSecOps practices and tools such as SAST, DAST, and SCA
Experienced in developing reference security architectures
Experienced working in a regulated financial setting, ensuring adherence to data protection, risk management, and regulatory standards
Strong understanding of security controls in cloud environments, particularly Microsoft Azure
Proficient in working with major cloud platforms including Azure, AWS, and Google Cloud
Excellent written and verbal communication skills along with business acumen and a commercial outlook
Good working knowledge of current IT risks and mitigation strategies

Benefits

Hybrid Working – a mix of working from home and in the office
22 weeks of paid leave for family growth, with 12 weeks available to all parents on a gender-equal basis
Competitive 401(k) program with company match up to 8%
Well-being program including holistic wellbeing coaching, gym membership, confidential counselling, financial and legal advice
Tuition Reimbursement for professional certifications, and continuing education
Employee Network and Community – QBE actively supports six Employee Networks, and many ways to give back to your community

Company

QBE Insurance

company-logo
At QBE we’re driven by our purpose of enabling a more resilient future.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Vincent P. DiFiglia
CTO - Enterprise Architecture
linkedin
leader-logo
Amanda Phillips
Lead Communications Partner
linkedin
Company data provided by crunchbase