Cyber Security Consultant - GRC
Core
Supports the delivery of cyber security and risk engagements by performing assessments, documentation, and analysis activities under senior guidance.
Role type
Junior-to-mid level GRC consultant
Builds
Risk assessments, audit documentation, policies, procedures, and risk registers
Domain
Cyber security, IT risk, and compliance
Deliverable
client delivery
Required skills
Cyber security risk assessment, audit support, policy and procedure documentation, control assessments, evidence review, remediation tracking, regulatory change awareness
Preferred skills
Consulting or government environment experience, Security+ certification, ISO 27001 Foundation certification
Technologies
ISO 27001, Essential Eight, NIST frameworks
Responsibilities
Assist in cyber security risk assessments, audits, and uplift activities; Support documentation development including policies, procedures, and risk registers; Conduct control assessments and evidence reviews; Track remediation actions and support implementation activities; Maintain awareness of emerging cyber threats and regulatory changes; Work closely with internal team members and client stakeholders; Participate in workshops and client meetings
Seniority
Junior to mid-level, hands-on IC