A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat. Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role, you'll be encouraged to challenge the norm, investigate ideas outside of your role, and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
Responsibilities
- Hands‑on exposure to cyber maturity assessments, risk quantification, and regulatory readiness programs. Proven experience presenting to C‑level executives, risk committees, or regulatory auditors.
- Understanding of designing, implementing, and managing security controls across multi‑cloud environments (AWS, Azure, GCP) to ensure that cloud solutions are compliant with organizational security policies, regulatory requirements, and industry best practices.
- This role combines strong technical expertise in cloud‑native security tools with hands‑on experience in risk management, compliance, and security operations.
- Support clients in designing and executing cyber transformation programs, including:
- Target Operating Model (TOM) design
- Security architecture alignment
- Identity & Access Management governance
- Data protection and resilience initiatives
- Experience assessing, designing, implementing, and managing security controls that protect infrastructure, servers, networks, and endpoints across hybrid IT environments. This requires a good understanding of endpoint protection, vulnerability management, patch governance, identity and privilege management, and network defense to enhance the organization’s cyber resilience.
- The consultant will work closely with IT, SOC, and compliance teams to ensure that infrastructure and endpoint security controls are aligned with business objectives, regulatory standards, and global cybersecurity frameworks.
Pre‑requisites
- 10–15 years of versatile experience in cybersecurity consulting, security architecture, risk management, or governance advisory. Experience supporting clients in government (preferred) and / or regulated industries such as banking, insurance, or telecommunications.
- Proven and experience with Cloud Security Platforms.
- Hands‑on experience integrating alerts into SIEM/SOAR tools.
- Familiar with cloud‑native and hybrid environment architecture in AWS, Azure, or GCP
- Familiar with compliance frameworks: NIST CSF, CIS, GDPR, PCI DSS.
- Familiar with EDR/XDR platforms, vulnerability management programs, IAM and PAM solutions.
- Experienced with incident response, patch governance, and endpoint hardening.
Soft Skills
- Strong analytical and problem‑solving abilities with keen attention to detail.
- Excellent communication and collaboration skills, with the ability to interact effectively with stakeholders at all levels.
- Capable of managing multiple priorities in a fast‑paced, dynamic environment.
Education
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
Preferred Certifications
- -CCSP, GCSA, CISSP, CRISC, CISA, AWS/Azure/GCP Security Specialty (or any cloud platform‑specific certs)