Consultant jobs in United States
cer-icon
Apply on Employer Site
company-logo

Deloitte · 1 day ago

Consultant

Deloitte is a leading professional services firm, and they are seeking a CMAQ Consultant to join their Cyber team. The role involves delivering advisory and implementation services to help clients measure, analyze, and manage cyber risk, while developing executive-level cyber risk reporting solutions aligned to business domains and industry frameworks.

AccountingConsultingFinancial ServicesLegalProfessional ServicesRisk Management
check
Growth Opportunities
check
H1B Sponsorednote

Responsibilities

Supporting cyber risk quantification engagements by assessing client environments, identifying data sources and data availability, defining metrics (Key Performance Indicators and Key Risk Indicators), develop custom risk aggregation and scoring methodologies, and designing and building automated reporting solutions across industries, including highly regulated sectors
Developing comprehensive cyber risk quantification methodologies, translating technical and organizational insights into detailed long-term strategies that help clients prioritize areas of risk to their organizations and guide risk management efforts
Designing and documenting cyber domain metrics and risk aggregation that align with industry standards, organizational objectives, and leading quantification methodologies (such as FAIR or Deloitte's proprietary frameworks)
Differentiating between business requirements and technical integration, ensuring both metrics frameworks and operational practices reflect accurate data collection, risk modeling and aggregation, and reporting aligned to domains such as incident management, vulnerability management, IAM, etc
Facilitating stakeholder engagement by leading workshops, requirements-gathering sessions, and effectively communicating complex cyber risk and quantification concepts to technical and non-technical audiences at all organizational levels
Collaborating with client leaders (such as CIOs, CISOs, IT, compliance, risk, and business stakeholders) to develop a unified cyber risk management approach, drive program adoption, and advance the organization's overall cyber resilience
Delivering tailored training, executive awareness sessions, and technical workshops focused on cyber risk analytics, metrics interpretation, and effective risk communication
Exhibiting adaptability, initiative, and a self-starter mindset to proactively prioritize tasks and deliver high-quality outcomes in dynamic, client-facing environments

Qualification

CybersecurityRisk managementCyber analyticsRisk quantification frameworksMetrics developmentCyber risk assessmentsData visualizationCISSPCISMCISAFAIRNIST CSFPower BITableau

Required

2+ years of experience in cybersecurity, risk management, or cyber analytics consulting, with a focus on risk quantification frameworks such as FAIR, NIST CSF, or similar
2+ years of experience conducting cyber risk assessments, analytics maturity reviews, or risk quantification and reporting engagements for regulated industries or global organizations
2+ years of experience designing and implementing cyber risk measurement policies, metrics frameworks, and analytics-driven processes aligned to business objectives and regulatory expectations
Demonstrated understanding of cyber risk quantification concepts, metrics development, and business-aligned cyber reporting methodologies
2+ years of experience working with clients to define business and analytic requirements and supporting the implementation of cyber risk quantification and reporting solutions
BA/BS Degree in Cybersecurity, Information Security, Data Science, Computer Science, Engineering, Information Technology, or related field
Ability to travel up to 50%, on average, based on project requirements and client needs
Limited sponsorship may be available

Preferred

Previous consulting or Big 4 experience
Experience supporting organizations in the commercial space across various industries, including Financial Services, Healthcare / Pharmaceutical, Retail / Consumer, etc
Certifications such as CISSP, CISM, CISA, or similar; technical certifications related to AWS, Azure or data visualization tools such as Power BI, Tableau, etc
Experience with security tools and platforms related to cyber risk (e.g., GRC, vulnerability management, incident management, endpoint security), or data visualization (e.g., Power BI, Tableau)

Benefits

Discretionary annual incentive program

Company

Deloitte

company-logo
Deloitte is a business consulting company that offers audit, consulting, financial advisory, and tax services.

H1B Sponsorship

Deloitte has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (6871)
2024 (4911)
2023 (5604)
2022 (8090)
2021 (5993)
2020 (10388)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Anne Muraya
Chief Executive Officer - East Africa
linkedin
leader-logo
Joe Ucuzoglu
Global Chief Executive Officer
linkedin
Company data provided by crunchbase