A complete application in a minute — tailored resume and cover letter, ready to send.
Deloitte is seeking a Cyber Security & Risk Strategy Consultant in the United States to help clients navigate evolving cyber threats and drive transformation. You will work on strategy engagements, designs of operating models, and governance structures with cross-functional Deloitte teams.
The role emphasizes independent work, strong communication, and ability to lead projects while delivering clear, actionable recommendations to clients. Travel up to 50% is expected as projects require.
Cyber Security & Risk Strategy Consultant
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for this role ends on 05/31/2027.
As a Consultant, Strategy, Growth & Transformation on the Cyber Strategy team, you will be responsible for...
Supporting cyber strategy engagements across multiple service types, including cyber risk and maturity assessments, target operating model design, and technology risk initiatives
Providing PMO support for cyber and technology programs, including tracking milestones, maintaining RAID logs (risks, actions, issues, decisions), and coordinating cross-functional workstreams
Assisting with the development of methods, templates, and deliverables that support cyber strategy, assessment, and transformation services
Assessing client cyber and information technology environments, including infrastructure, databases, applications, workflows, and business processes
Supporting the design of target operating models, including organizational structure, governance, roles and responsibilities, and process design for cyber and technology functions
Collaborating with client stakeholders and cross-functional Deloitte teams to support assessment, operating model, and transformation engagements
Delivering project work through research, analysis, documentation, recommendations, and implementation support across domestic and global engagements
A successful candidate would possess these skills:
Ability to work independently and collaborate as part of a team
Effective written and verbal communication skills
Meticulous attention to detail and quality of work product
Ability to build and sustain professional relationships
Ability to lead projects or workstreams
Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
Strong interpersonal skills and professional demeanor
Ability to meet deadlines
Ability to provide clear guidance to others
Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.
Bachelor's degree
2+ years of experience in cyber security, information security, or technology risk
2+ years of experience in consulting, global system integrators, or large enterprise project teams
Experience in one or more of the following: cyber risk or maturity assessments, operating model design, or program/project management for cyber or technology initiatives
Experience with cyber assessments or security frameworks, including National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), NIST Special Publication 800-53, or ISO 27001
Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
Limited immigration sponsorship may be available.
Bachelor's degree in Computer Science, Information Technology, Risk Management, Engineering, or a similar field
Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH), ITIL, Project Management Professional (PMP), or Certified in Privacy Information Management (CIPM)
Experience in banking and finance, aviation, transportation, property development, or pharmaceuticals
Experience with Cyber Mergers and Acquisitions diligence, sign to close, carveouts and Integrations expertise and support
Experience with governance, risk, and compliance tools, identity and access management solutions, security information and event management platforms, or data loss prevention solutions
Experience with cloud platforms such as Amazon Web Services (AWS) or Microsoft Azure and their security practices
Experience collaborating with finance, human resources, information technology, and other business workstreams during assessment, operating model, or transformation initiatives
Experience supporting PMO functions, including program governance, status reporting, and stakeholder management
Experience designing or implementing target operating models, including organizational design and process reengineering
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $82,600 to $162,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.