Manager - Cyber Risk Consulting (8-12 years)

Location: Mumbai
Discipline: Governance, Risk & Compliance
Job type: Permanent
Contact name: Nishant Sharma

Contact email:
Job ref: 37084
Published: 6 days ago

Manager – Cyber Risk Consulting - IT Consulting (7-12 years)

An exciting Job opportunity in Mumbai for a working professional holding at least 3 years of experience in supporting the clients for cyber risk consulting, Risk Management/Assessment as well as Risk/security audits.

Location: Mumbai

Your Future Employer: A leading, global group with a strong foothold in Risk Management, Investment advisory & Management consulting.


  • Providing complete support to delivery of the desired deliverables as per the agreed scope of work with the client, and provide an efficient delivery model.

  • Playing a key role in leading the delivery of multiple CRC projects with frequent on-site travels

  • Responsible for review and training of junior colleagues to ensure the deliverable is as per the expected quality framework

  • Supporting the Mumbai COE CRC practice, and be hands-on in delivery of the consulting projects and mentor the junior colleagues in their projects

  • Preparing deliverables for cyber consulting practice under the guidance of the CRC practice

  • Conducting research on the client’s cybersecurity risk areas and prepare a point of view for consulting

  • Supporting the team towards constant innovation of cybersecurity approach and go-to-market strategy

  • Quick learner of the CRC practices’ procedures and policies, and is able to explain the same to non-technical clients/colleagues

  • Understanding different domains within cybersecurity space and demonstrate passion

  • Contributing in research support for building a robust CRC practice deliverable

  • Will be responsible to maintain key project track record and detailed process documentations

  • Delivery of the projects would be done either remotely or onsite depending on the client requirement

  • Ability to motivate the team members and take the high road to ensure client success


  • Post Graduate or equivalent from an institute of repute

  • 7 to 12 years professional experience in cybersecurity consulting domain in Big 4 or equivalent firms

  • Valid Passport and ready for frequent travel to Middle East countries for client deliveries/workshops

  • Experience in cybersecurity GRC specially – cybersecurity frameworks such as NIST and ISO 27001 (gap assessments, policies, procedures, governance documentation, etc.)

  • ISO 27001 certified candidates will be preferred

  • Expertise in ICT security principles and controls. Candidate should ideally have hands on experience in conducting Cyber risk assessments, designing cyber security framework (including policies, procedures), vendor risk management, DLP, IRM, compliance management.

  • Knowledge on Cyber Security standards / regulations. E.g. COBIT, NIST, ISO, GDPR, RBI Guidelines etc.

  • Experience in Business Continuity Management.

  • Ability to develop quality reports, presentations, project trackers.

  • Should be proficient in Ms. Office applications such as Word, PowerPoint, and Excel. Basic knowledge in Project, Teams, and Visio.

  • Effective communicator who is able to share insights with clients/stakeholders

  • Strong analytical problem solving skills and experience

  • Smart, collaborative, relationship and outcome focused with the ability to make decisions where ambiguity exists;

  • Ability to demonstrate sound judgment in the prioritization of competing work assignments, escalation of issues and the formulation of solutions;

  • Effective organization skills with key attention to detail and delivery of high quality documentation with the ability to implement/influence change;

  • Strong sense of business ethics and principles;

  • Excellent English language skills, both verbal and written with the ability to communicate technical matters to a non-technical audience.

What is good to have:

  • Experience in data governance/data privacy

  • Experience of internal or external IT audit

  • OT/ICS Cybersecurity knowledge

  • Knowledge of technical assessments (VA/PT, WAPT, Config. Review etc.)

  • Experience with developing cyber security strategies

  • Fluency in Arabic constitutes an advantage.

  • Graduate/Post Graduate degree in Computer Science or Engineering.

  • Excellent English language skills, both verbal and written with the ability to communicate technical matters to a non-technical audience.

  • Fluency in additional languages constitutes an advantage.

What is in it for you?

An opportunity to work with global clientele in a fast-paced environment with a growth oriented & enthusiastic team.

Reach us: If you think that this role will add value to your career, kindly write me an email along with your updated CV on


Disclaimer: Crescendo Global is an ISO 9001:2015 certified Leadership Hiring consulting arm of Crescendo Group with expertise in mid to senior level niche recruitment. We are passionate about empowering job seekers and employers with an engaging memorable job search and leadership hiring experience. Crescendo Global does not discriminate on the basis of race, religion, color, origin, gender, sexual orientation, age, marital status, veteran status or disability status.