empty

Cybersecurity Experienced Senior Associate

BDO USA, LLP

Job Description

Posted on: 
September 19, 2024

Summary and company overview

Job Summary:

The Experienced Senior Cybersecurity and Compliance Advisor is involved in assisting BDO's clients with IT compliance, cybersecurity and multiple governance/controls frameworks that may be applicable to the organization. The Experienced Senior participates on security assessments and identifies and evaluates business and technology risks and controls to help companies with compliance and security to applicable frameworks, along with providing possible solutions for the mitigation of risks and/or continuous improvement with security. This position may also assist clients implement compliance, security, or governance programs and develops assessment reports, including observations and possible solutions.

Responsibilities

  • Participates and takes an active role in project tasks applicable to HIPAA, NIST CSF, PCI, data security, compliance and governance frameworks, security vendor assessments and IT controls assessments
  • Conducts and assesses compliance and governance requirements based on standard programs to assist the organization in meeting business needs
  • Identifies and evaluates business and technology risks to assist with possible options to mitigate risks
  • Works to understand the clients' business environment and risk management frameworks and approaches
  • Recognizes technical issues or possible areas of concern and reports those internally and to the client once validated
  • Documents interviews and meetings and captures action items, next steps and risks
  • Develops assessment and 'gap' reports, including observations and possible solutions
  • Prepares presentations for client meetings
  • Participates in remediation planning and outlines client requirements applicable to frameworks such as PCI, ISO, NIST, HIPAA, and CIS, for example
  • Develops and maintains relationships with client personnel
  • Budgets time and assists with multiple project requests simultaneously, as well as monitors project tasks and risks
  • Travels, as necessary

Job Requirements

Required Qualifications:

  • N/A

Preferred Qualifications:

  • Prior experience working within a national consulting organization or professional services, preferred
  • One (1) or more years of experience working on large, complex projects, preferred
  • Any security certifications such as CISA, CISM, CISSP, or other certifications, preferred
  • AWS Cloud Practitioner or Microsoft 365 Certified, preferred
  • Experience with AWS, Google Virtual Private Cloud, preferred
  • Multilingual capabilities (read, speak and/or write), preferred
  • Ability to interact effectively with people at all organizational levels
  • Capacity to build and maintain strong relationships with internal and client personnel
  • Solid organizational, verbal and written communication skills
  • Ability to meet project deadlines with a focus on details
  • Ability to successfully multi-task while working independently or within a group environment
  • Ability to work in a deadline-driven environment, and handle multiple projects simultaneously
  • Applied knowledge of technologies for data mapping, risk assessments, third party risk management, compliance tracking, security controls management

Additional commentary

Supervisory Responsibilities:

  • N/A

Keyword: Cyber, Security, Compliance, PCI, NIST, ISO, HIPAA, Compliance Senior, Google VPC, AWS Cloud, CISA, CISM, CISSP, AWS, Security Administrator

Summary and company overview

Job Summary:

The Experienced Senior Cybersecurity and Compliance Advisor is involved in assisting BDO's clients with IT compliance, cybersecurity and multiple governance/controls frameworks that may be applicable to the organization. The Experienced Senior participates on security assessments and identifies and evaluates business and technology risks and controls to help companies with compliance and security to applicable frameworks, along with providing possible solutions for the mitigation of risks and/or continuous improvement with security. This position may also assist clients implement compliance, security, or governance programs and develops assessment reports, including observations and possible solutions.

Apply now