Sobre esta vaga de Principal, Digital Advisory na Control Risks
We seek an established consulting leader and expert to help manage and grow our Digital Risks consulting business globally, encompassing our threat intelligence, information protection and information security advisory and response capabilities. The successful candidate will have and will leverage at least ten years of expertise in consulting and/or industry roles, with experience planning and implementing cybersecurity and risk technology, operations, and controls. The successful candidate will contribute to the development, refinement, and execution of the Global Digital Risks consulting strategy, business development, opportunity capture and delivery, as a leader in the Digital Advisory team and working closely with Control Risks’ wider technology and security businesses.
Role tasks and responsibilities
- Strategy and business management
- Contribute to the development, refinement and execution of the Control Risks Global Digital Risks consulting strategy, leveraging both Control Risks’ Security and Technology capabilities and market positions.
- Coordinate closely with the Digital Risks consulting teams and leaders in other regions to ensure a globally consistent offering.
- Help manage the Digital Risks Advisory business and contribute to performance, financial success and profitable revenue expansion globally, working closely with other Control Risks practices.
- Maintain and build knowledge of industry trends and new technologies relevant to growing the Digital Risks team across all business lines (Advisory, Assurance, Threat Intelligence, and Incident Response).
- Grow and improve / innovate on existing Digital service offerings, and assist in development of new service offerings.
- Support the development and delivery of AI risk and governance advisory services, including AI use-case assessment, model and agent inventories, risk tiering, governance workflows, control design, monitoring and evidence capture for audit, regulatory and executive assurance purposes.
Business development
- Cultivate relationships across the firm within other Control Risks business lines (within and outside of Digital) and our Clients & Market team, to go to market jointly as one firm, leverage existing client relationships and business leads from non-Digital client relationships, and expand Digital advisory services into ongoing, broader non-Digital Control Risks services.
- Cultivate client relationships and accounts and become a trusted advisor by demonstrating a high level of partnership and commitment to client success.
- Generate and deliver annual sales across Digital Risks and broader Control Risks’ offerings on a personal basis and support members of the Digital Risks team to deliver personal sales targets.
- Work closely with other Control Risks account managers, subject matter experts and Marketing to craft and execute campaigns to build Control Risks’ market position and profile for Digital Risks.
- Lead on proposals and engagement on emerging client opportunities.
Client project management and delivery
- Act as a senior project leader on complex engagements; exceed client expectations while identifying and mitigating business risks associated with projects.
- Employ a structured, disciplined and flexible approach to project management to ensure complete client satisfaction and project profitability.
- Oversee consistent gathering of client and project requirements and ensuring requirements are properly documented and managed.
- Lead on threat identification and related frameworks and oversee incident analyses using technology experts and tools.
- Become a trusted business advisor and subject matter expert globally for internal and external clients at the intersection of cyber, forensics and analytics.
- Advise on high-profile, challenging and multi-jurisdictional matters particularly related to cyber response and investigations.
- Introduce other Control Risks crisis management, security, technology, compliance and analytical capabilities and expertise when appropriate.
- Develop executive-level recommendations, roadmaps and business cases that help clients improve cyber resilience, strengthen governance and make informed decisions on emerging technology risk.
Team management
- Be ready to maintain direct line management and leadership for the Digital Risks team including recruitment, hiring, performance management and talent development.
- Act as a key member of the Digital Risks departmental management team.
- Mentor and guide junior consultants across the business.
- Act as a representative to the global Digital Risks leadership team.
Requirements
- 10+ years of relevant experience
- Bachelor's degree in information security, computer science, or related field. Post graduate degree a plus.
- Demonstrated ability in an executive-level role to help manage and grow a cyber security consulting business, including a proven record of business development and sales.
- Experience managing third parties and sub-contractors and working across business segments and practices at professional services organizations.
- Demonstrated success in integrating cyber, forensics and analytics capabilities in a consulting context in support of corporate clients and external counsel.
- Industry-recognized subject matter expertise in information security risk mitigation and cyber incident response.
- Strong working knowledge of AI risk and governance, including AI use-case assessment, risk classification, accountability models, regulatory and ethical considerations, third-party AI risk, and the practical controls needed to support responsible AI adoption.
- Familiarity with relevant cyber, technology risk and AI governance frameworks and standards, such as NIST, ISO 27001, ISO/IEC 42001, and emerging AI regulatory expectations.
- Preferred: Experience building or managing a cybersecurity program in industry.
- Preferred: Understanding of IT infrastructure, systems and controls and familiarity with data loss prevention.
- Preferred: Deep understanding of the application of computer forensics and knowledge of electronic discovery in cyber investigations.
- Preferred: Industry-recognized personal subject matter expertise in threat modeling, testing and use of analytics.
- Preferred: Spanish and/or Portuguese language proficiency.
The base salary range for this position is $220,000-$250,000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience.
Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.
Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit www.uscis.gov.
Benefits
- Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
- Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
- Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.