Posted on: 18/09/2026
Role & Responsibilities :
- Lead cybersecurity consulting engagements, including security assessments, risk assessments, gap assessments, and security maturity reviews.
- Assess clients' cybersecurity posture against frameworks and standards such as ISO 27001, NIST CSF, CIS Controls, PCI DSS, SOC 2, and applicable regulatory requirements.
- Identify, analyze, and prioritize cybersecurity risks and recommend appropriate remediation strategies.
- Develop and review cybersecurity policies, standards, procedures, guidelines, and governance frameworks.
- Conduct Vulnerability Assessment and Penetration Testing (VAPT) coordination and support remediation of identified vulnerabilities.
- Perform security reviews of applications, infrastructure, cloud environments, networks, and third-party/vendor ecosystems.
- Support Security Architecture and Design reviews, including network security, IAM, cloud security, endpoint security, and data protection.
- Advise clients on cloud security across platforms such as AWS, Azure, or GCP.
- Support Identity and Access Management (IAM) initiatives, including privileged access, access reviews, authentication, and authorization controls.
- Conduct cybersecurity audits and support internal, external, and regulatory audits.
- Develop risk registers, security assessment reports, executive dashboards, and remediation roadmaps.
- Assist with incident response, cybersecurity investigations, and security improvement initiatives where required.
- Evaluate third-party and supplier security risks and perform vendor security assessments.
- Stay current with emerging threats, vulnerabilities, attack techniques, cybersecurity technologies, and regulatory changes.
- Lead client discussions, workshops, presentations, and cybersecurity awareness sessions.
- Mentor junior cybersecurity consultants and review their deliverables.
- Manage multiple cybersecurity projects simultaneously while ensuring quality, timelines, and client expectations are met.
Preferred Candidate Profile :
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline.
- 5 - 10 years of relevant experience in cybersecurity, information security, GRC, security consulting, risk management, or a related field.
- Strong understanding of cybersecurity principles, enterprise security architecture, risk management, and security controls.
Core Competencies :
- Cybersecurity Governance, Risk & Compliance (GRC)
- Vulnerability Management / VAPT
- Cloud Security
- IAM / PAM
- Security Architecture
- Incident Response / SOC
- Third-Party Risk Management
- Data Security
- Application Security
Requirements :
- Strong knowledge of cybersecurity frameworks and standards such as ISO 27001, NIST, CIS, PCI DSS, SOC 2, and relevant regulatory requirements.
- Experience conducting security assessments, audits, risk assessments, and gap assessments.
- Strong analytical and problem-solving skills with the ability to translate technical risks into business impact.
- Excellent communication and presentation skills, with the ability to interact effectively with C-level executives, business stakeholders, IT teams, and technical teams.
- Strong report-writing and documentation skills.
- Ability to independently manage cybersecurity consulting engagements from scoping through delivery and remediation.
- Relevant certifications are preferred, such as CISSP, CISM, CISA, CRISC, ISO 27001 Lead Auditor/Implementer, Security+, CEH, OSCP, or cloud-security certifications.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1672422