Global Cybersecurity Manager - Client Assurance

Boston Consulting Group (BCG)

Greater London

On-site

GBP 90,000 - 130,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Boston Consulting Group is seeking a Global Information Security Manager within the Client Assurance Services (CAS) team. You will support strategic clients with information security due diligence and communicate BCG's security posture to clients and prospects globally.

You will collaborate with Information Security, Legal, Risk, and client-facing teams to develop CAS tools, templates, and knowledge assets, ensuring high-quality responses and compliant, consistent client engagements across the

Qualifications

  • 5–8 years of experience in information security, cybersecurity, risk management or related field.
  • Experience supporting client-facing information security, assurance, audit, compliance, or advisory activities.
  • Strong understanding of ISO 27001, SOC 2, NIST CSF, GDPR and regional data protection regulations.
  • Experience responding to client security questionnaires, due diligence requests, audits or RFPs.
  • Certifications such as CISSP, CISM, CISA, Security+ or ISO 27001 Lead Auditor/Implementer preferred.
  • Excellent communication, organization, and stakeholder management; able to collaborate across global teams.
  • Experience in professional services/financial services/tech/consulting preferred.
  • Fluent written and spoken English; another European language preferred.

Responsibilities

  • Serve as a key contact for clients and prospects for information security assessments.
  • Respond to security questionnaires, RFPs, and audit requests; explain controls.
  • Support CAS tools, templates, knowledge repositories, and automation initiatives.
  • Collaborate with Information Security, Legal, Risk, Compliance, and client teams.
  • Help clients understand compliance with ISO 27001, SOC 2, GDPR, NIST and related frameworks.
  • Maintain high-quality documentation, templates, and best practices for consistent service delivery.
  • Maintain the CAS knowledge base and response library.

Skills

Information security
Risk management
Compliance
Client-facing communication
Stakeholder management
Cross-functional collaboration

Education

CISSP
CISM
CISA
ISO 27001 Lead Auditor/Implementer

Job description

Who We Are

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.

To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

What You'll Do

As a Global Information Security Manager / Global Client Assurance Services Manager within BCG's Client Assurance Services (CAS) team, you will play an important role in supporting BCG's strategic clients with their information security due diligence activities. You will work closely with Information Security, Legal, Risk, and client-facing teams to help communicate BCG's security posture, policies, and practices to clients and prospects globally.

Responsibilities

In this role, you will contribute to the delivery of client assurance activities and support the ongoing development of CAS tools, processes, and knowledge assets that enable the team to operate effectively and consistently across BCG's client portfolio. Your key responsibilities will include:

  • Client Due Diligence Support: Serve as a key contact for clients and prospects conducting information security assessments of BCG. Respond to security questionnaires, RFPs, and audit requests; participate in client calls and workshops; and provide clear explanations of BCG's security controls, certifications, and risk management practices.
  • CAS Tool & Process Support: Support the maintenance and continuous improvement of CAS tools, templates, knowledge repositories, and automation initiatives to improve the efficiency and consistency of client assurance activities.
  • Stakeholder Collaboration: Partner closely with BCG's Information Security, Legal, Risk, Compliance, and client-facing teams to gather accurate information regarding BCG's security posture and ensure consistent and compliant responses to client inquiries.
  • Risk & Compliance Support: Support clients in understanding BCG's compliance with relevant frameworks (e.g. ISO 27001, SOC 2, GDPR, NIST) and help translate technical security concepts into business-relevant assurance responses.
  • Quality & Continuous Improvement: Support the continuous improvement of Client Assurance Services by identifying opportunities to enhance response quality, improve operational efficiency, and strengthen knowledge management. Contribute to maintaining high-quality documentation, templates, and best practices that enable consistent service delivery across client engagements.
  • Knowledge Management & Documentation: Maintain and enhance the CAS knowledge base, standard response library, and supporting documentation to ensure client assurance materials remain accurate, current, and easily accessible across the team.
What You'll Bring
  • Minimum 5–8 years of experience in information security, cybersecurity, risk management, compliance, or a related field.
  • Experience supporting client-facing information security, assurance, audit, compliance, or advisory activities.
  • Strong understanding of information security frameworks and standards including ISO 27001, SOC 2, NIST CSF, GDPR, and relevant regional data protection regulations.
  • Experience responding to client security questionnaires, due diligence requests, audits, or RFPs, with the ability to communicate technical concepts clearly to non-technical audiences.
  • Relevant professional certifications such as CISSP, CISM, CISA, Security+, or ISO 27001 Lead Auditor/Implementer are preferred.
  • Strong communication, organization, and stakeholder management skills, with the ability to collaborate effectively across global and matrixed organizations.
  • Prior experience in a professional services, financial services, technology, or consulting environment is preferred.
  • Fluent written and spoken English and preferably another European Language are required.

Who You'll Work With

BCG’s Client Assurance Services (CAS) team sits at the intersection of information security, client trust, and business development. We support BCG’s most important global client relationships by serving as the dedicated team that handles information security due diligence requests, security assessments, and assurance inquiries from current and prospective clients. As client expectations around data protection and cybersecurity continue to evolve, CAS plays a critical role in demonstrating BCG’s security maturity, building client confidence, and enabling BCG to win and retain strategic engagements. The team partners closely with Information Security, Legal, Risk, and client-facing teams across the firm.

Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.

BCG is an E - Verify Employer. Click here for more information on E-Verify.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Global Information Security & Client Assurance Lead
Global Information Security & Client Assurance Lead

Boston Consulting Group (BCG) • Greater London

On-site
GBP 90,000 - 130,000
Global Cybersecurity Senior Manager – Program Management
Global Cybersecurity Senior Manager – Program Management

Boston Consulting Group (BCG) • Greater London

Hybrid
GBP 110,000 - 150,000
Hybrid work model
Global Risk Manager
Global Risk Manager

The Boston Consulting Group GmbH • Greater London

Hybrid
GBP 110,000 - 180,000
Cyber Defence Senior Director
Cyber Defence Senior Director

Boston Consulting Group (BCG) • Greater London

Hybrid
GBP 180,000 - 240,000
Global Product Senior Manager - Risk-InfoEx
Global Product Senior Manager - Risk-InfoEx

Boston Consulting Group (BCG) • Greater London

On-site
GBP 90,000 - 130,000
Compliance Monitoring & Oversight Director
Compliance Monitoring & Oversight Director

Boston Consulting Group (BCG) • Greater London

On-site
GBP 80,000 - 100,000
Global Compliance Monitoring & Oversight Director
Global Compliance Monitoring & Oversight Director

Boston Consulting Group (BCG) • Greater London

On-site
GBP 80,000 - 100,000
Global Risk Manager
Global Risk Manager

Boston Consulting Group (BCG) • Greater London

On-site
GBP 90,000 - 120,000
Contract Compliance Senior Analyst – Risk & Reporting
Contract Compliance Senior Analyst – Risk & Reporting

Boston Consulting Group (BCG) • Greater London

On-site
GBP 55,000 - 75,000
Global Learning Experience Design Manager
Global Learning Experience Design Manager

The Boston Consulting Group GmbH • Greater London

On-site
GBP 50,000 - 70,000