A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.
As a seasoned Security Consultant specializing in Enterprise CyberSecurity Strategy, Risk, and Compliance, you will help Client IT and business executives understand key Security Governance, Risk, and Compliance issues, exposures, and vulnerabilities.
You will define business drivers and associated Tactical and Strategic roadmaps and plans to aid Clients in achieving their business and security objectives.
Your primary responsibilities will include
- Develop Strategic Roadmaps: Define business drivers and create tactical and strategic plans to help clients achieve their business and security objectives, leveraging your deep expertise in security governance, risk, and compliance.
- Conduct Workshops and Assessments: Lead workshops and assessments to educate Client IT and business executives on key Security Governance, Risk, and Compliance issues, exposures, and vulnerabilities that inform technical security tools or AI implementation.
- Drive Business Objectives: Help clients achieve their objectives by identifying and addressing security risks and vulnerabilities, and developing strategies to mitigate them. Demonstrate ability to configure and deploy security or AI tools.
- Collaborate with Stakeholders: Demonstrated ability to communicate complex and technical cybersecurity topics with senior stakeholders. Work closely with Client IT and business executives, as well as CISO/BISO organizations, to ensure alignment and effective implementation of security strategies. An active Top Secret clearance and CISSP or CISM certification is required for this role.
- Deep Expertise in Security Governance and technical cybersecurity implementation: Proven experience in defining business drivers and creating tactical and strategic plans to achieve business and security objectives, with a strong understanding of security governance principles. Strong hands on knowledge and expertise to deploy security and AI tools.
- Security Architecture: Proven ability to Design and deploy complex security solutions.
- Risk Management Expertise: Experience in identifying and addressing security risks and vulnerabilities, with the ability to develop strategies to mitigate them. Align risk to NIST best practices.
- Strategic Planning and Implementation: Proven ability to develop and implement strategic roadmaps and plans to aid clients in achieving their business and security objectives.
- Collaboration with Senior Stakeholders: Experience working closely with senior stakeholders, including CISO/BISO organizations, to ensure alignment and effective implementation of security strategies. An active Top Secret clearance and CISSP or CISM certification is required for this role.
Preferred
- Professional and Technical Expertise
- Auditing Background: Experience in auditing is beneficial, as practitioners in this specialty may come from an auditing background and will work closely with CISO/BISO organizations to ensure compliance with various regulations.
- Compliance and Regulatory Familiarity: Familiarity with compliance/regulations such as ISO 27001, SOC2, PCI DSS, and SOX is advantageous, as it enables effective collaboration with CISO/BISO organizations to ensure compliance.
- Strategic Planning Skills: Experience with strategic planning and implementation is desirable, as it aids in developing and implementing strategic roadmaps and plans to achieve business and security objectives.
Required Education
- Bachelor's Degree Security Clearance: Active Top Secret
- Cybersecurity Services Knowledge: Deep understanding of cybersecurity services, including threat management, incident response, and security consulting.
- Contract Negotiation Skills: Experience with contract negotiation, including terms and conditions, pricing, and scope of work.
- Financial Management Tools: Familiarity with financial management tools and systems, including budgeting, forecasting, and financial reporting. United States Project Management Hybrid Professional WASHINGTON, US (0147) International Business Machines Corporation