Senior Consultant, Cybersecurity - Platinion
Boston Consulting Group
Locations: Atlanta | Austin | Boston | Chicago | Dallas | Denver | Houston | Miami | Nashville | Summit | New York | Philadelphia | Pittsburgh | Durham | Washington
Who We Are
Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.
To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.
About BCG Platinion
BCG Platinion's presence spans across the globe, with offices in Asia, Europe, and South and North America. We achieve digital excellence for clients with sustained solutions to the most complex and time-sensitive challenge. We guide clients into the future to push the status quo, overcome tech limitations, and enable our clients to go further in their digital journeys than what has ever been possible in the past. At BCG Platinion, we deliver business value through the innovative use of technology at a rapid pace. We roll up our sleeves to transform business, revolutionize approaches, satisfy customers, and change the game through Architecture, Cybersecurity, Digital Transformation, Enterprise Application and Risk functions. We balance vision with a pragmatic path to change transforming strategies into leading-edge tech platforms, at scale.
What You'll Do
As a Senior Consultant, you'll be given end-to-end responsibility for an individual 'module' within a BCG client engagement and begin to develop specialized knowledge to help you solve our clients' problems. You'll work on a variety of cybersecurity and digital risk topics, applying generalist consulting skills to strategic cybersecurity & digital risk questions. We are looking for a someone who can address our clients’ strategic, organizational, managerial, and operational issues using the most advanced cybersecurity methodologies, tools, and techniques.
Cybersecurity Senior Consultants at BCG Platinion:
- Technical experts. They are critical thinkers and have extensive cybersecurity expertise that drives innovative solutions.
- Business-minded story tellers. They leverage their deep-technical understanding of cybersecurity challenges and translate that into implications across the business value chain.
- They understand and leverage cutting-edge cybersecurity approaches and tactics to create customized solutions for clients.
- Comfortable with ambiguity. They know the path forward isn’t always well-defined. They are comfortable and confident working through the unknown
- Change agents. They know how to make change happen across an organization. They can align and onboard teams to implement new cybersecurity process and toolsets. They embrace complex challenges and guide an organization to optimize their cybersecurity practices.
- They are interdisciplinary team players who seek alignment and establish relationships ranging from cross-functional stakeholder groups to existing security teams.
You’re Good At:
- Understanding the role technology plays in enabling businesses to execute their strategies and decomposing the cybersecurity implications of this relationship
- Analyzing cybersecurity standards, regulatory requirements, and best practices and translating that into a meaningful set of recommendations tailored to a client’s unique environment and circumstances
- Communicating complex and technical concepts in a concise and business value-centric written form
- Implementing cybersecurity transformation and culture change initiatives
- Conducting cybersecurity assessments including gap analysis and roadmap development in multiple contexts, including organizations, product development, and cloud security
- Developing cybersecurity strategies, policies, processes, and procedures to protect clients’ internal infrastructure and their customers
- Understanding data protection, data security, and privacy drivers that influence organizations today
- Developing cybersecurity business strategies for technology product vendors that are integrated in the organizations overall business strategy and increase revenue and profits
- Working with leadership teams, including facilitating board and senior management cybersecurity awareness workshops
- Embedding product security and DevSecOps practices into the software development lifecycles, system designs, and IT architectures
- Utilizing cyber risk quantification to reduce uncertainty around cyber risk and improve executive decision making
- Creating and facilitating table-top exercises
- Delivering operational resilience through incident response, business continuity, and disaster recovery planning
What You'll Bring
- 4+ years of practical experience in cybersecurity consulting or cybersecurity management (with teams of five persons or more) in a variety of sectors and contexts
- BS in cybersecurity, information systems, mathematics, natural sciences, business management, or similar degree
- Hands-on experience with, or extensive knowledge of some of the following:
- Developing cybersecurity strategies or policies
- Quantifying and managing cybersecurity risk
- Leading security assessments
- Designing, transforming, implementing, and running cybersecurity programs
- Developing security architectures
- Integrating security into applications and systems
- Implementing cloud security
- Managing cybersecurity risk arising from third parties and the supply chain
- Designing / implementing identity and access management
- Developing and upskilling a cybersecurity workforce
- Delivering cybersecurity culture change, awareness, and training
- Performing continuous monitoring activities such as using SIEM tools, APT hunting, implementing UBA, etc.
- Designing / implementing vulnerability management, including conducting vulnerability assessments
- Performing penetration testing, incident management, BCP, and/or DRP
- Broad knowledge of cybersecurity technologies throughout organizational and acquisition lifecycle
- Working knowledge of at least two different cybersecurity frameworks:
- NIST Cybersecurity Framework
- C2M2
- NIST SP 800-53 and companion publications
- ISO/IEC 27000 family of standards, etc.
- Cloud Security Alliance CCM
- Team-oriented attitude
- Strong communication and presentation skills
- Outstanding analytical and conceptual skills
- Results-orientated mindset
- Confidence and persuasiveness
- Business-fluent written and spoken English language skills
- Willingness to travel around the globe to work with clients and BCG teams. At times, this role involves significant travel to client sites. The amount of travel will depend on client needs and nature of projects
Additional info
What We Offer:
At BCG, we care about our people, and offer best in class benefits to support you personally and professionally throughout your different life experiences including:
- An opportunity to work organically across disciplines and across BCG, we offer a unified and unrivaled opportunity that combines strategic thinking with hands-on applications.
- A unique experience to work alongside a team of passionate and driven problem-solvers with a mission to deliver innovative and valuable digital solutions in a supportive environment. BCG pioneered strategy consulting more than 50 years ago, and we continue to innovate and redefine the industry. We offer multiple career paths for the world's best talent to have a real impact on business and society. As part of our team, you will benefit from the breadth and diversity of what we are doing today and where we are headed next. We count on your authenticity, exceptional work, and strong integrity. In return we are committed to supporting you in discovering the most fulfilling career journey possible-and unlocking your potential to advance the world.
FOR U.S. APPLICANTS:
The first year base compensation for this role is $140,000 in USD. In addition to your base salary, you will also be eligible for an annual discretionary performance bonus and BCG's Profit Sharing and Retirement Fund (PSRF) contribution. BCG also provides a market leading benefits package described below. At BCG, we are committed to offering a comprehensive benefit program that includes everything our employees and their families need to be well and live life to the fullest. We pay the full cost of medical, dental, and vision coverage for employees - and their eligible family members. That's zero dollars in premiums taken from employee paychecks.
All our plans provide best in class coverage:
- Zero dollar ($0) health insurance premiums for BCG employees, spouses, and children
- $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugs
- Dental coverage, including up to $5,000 (USD) in orthodontia benefits
- Vision insurance with coverage for both glasses and contact lenses annually
- Reimbursement for gym memberships and other fitness activities
- Fully vested retirement contributions made annually, whether you contribute or not
- Generous paid time off including vacation, holidays, and annual office closure between Christmas and New Years
- Paid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursement
- Employees, spouses, and children are covered at no cost. Employees share in the cost of domestic partner coverage.
To learn more about our employee benefit please check our BCG Benefits page.
Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.
BCG is an E - Verify Employer. Click here for more information on E-Verify.