CFGI Logo

CFGI

Cybersecurity - Director

Posted 8 Days Ago
Be an Early Applicant
Hybrid
United Kingdom
Senior level
Hybrid
United Kingdom
Senior level
The Director of Cybersecurity at CFGI will lead various client engagements involving risk assessments, compliance readiness, and the establishment of cybersecurity policies and procedures. Responsibilities include managing teams, overseeing projects, conducting audits, and building risk management frameworks. The role requires strong interpersonal skills for business development and communication with various stakeholders.
The summary above was generated by AI

CFGI is a unique and highly specialized financial consulting firm, strategically positioned to assist the office of the CFO through a range of routine and complex business scenarios. As an extension of your corporate finance team, CFGI works alongside your internal staff, serving in a variety of roles from cybersecurity, risk advisory, technical accounting, M&A support, tax services, etc. delivering seamless support services.

 

Technical & Domain Experience:

 

· Build cybersecurity process risk and control frameworks for clients that are rationalized against applicable laws and standards.

· Conduct risk assessment and maturity assessments for clients.

· Audit control definition and control testing against client’s internal audit framework or against industry standards or laws and regulations.

· Conduct cybersecurity and data privacy compliance readiness assessments for clients.

· Guide clients in establishing cybersecurity policies, standards, and procedures.

· Manage cybersecurity training and awareness services for clients from design to implementation.

· Advise clients on cybersecurity functions’ metrics and reporting for various level of client audiences, including Audit Committees and Board of Directors.

· Be the client’s Subject Matter Expert on compliance questions for cybersecurity regulations and industry practices.

· Provide governance services for clients to oversee their cybersecurity functions and practices, including governance over: policies and procedures, risk management, vulnerability management, incident management, etc.

· Build risk management practices for clients, including policies, procedures, Risk Register, etc.

· Assist clients in implementing market GRC tools.

· Lead Third Party Risk Management (TPRM) for clients, including designing and operationalizing a TPRM framework, reviewing existing and new vendors for client, and provide ongoing monitoring services.

 

Process & Project Management Experience:

 

· Ability to prioritize and multitask. Flexibility and adaptability in work approach.

· Ability to manage project plans for client various data privacy engagements, including creating tasks, timeline, and budgets.

· Ability to report to leadership and clients on status updates periodically, including progress and challenges.

 

Business Development Experience:

 

· Ability to introduce new clients to CFGI through your own professional network.

· Experience in delivering pitches and building winning proposals.

· Ability to up/cross-sell on existing accounts by partnering with various practice line leaders across the Firm.

 

Soft Skills:

 

· Strong interpersonal and communication skills; experience with cross-cultural communications.

· Calmness and clarity of thought under pressure and the ability to maintain confidentiality.

· Train other staff and external clients, as necessary.

· Agile and flexible, capable of dealing with ambiguity, and ability to confront challenges and opportunities with speed, endurance, and decisiveness.

· Manage a team of consultants and managers on various projects.

 

Technical Qualifications and Certifications:

 

· Bachelor’s degree in business, computer science, information systems, engineering, or a related discipline.

· Strong knowledge in national and global industry practices and regulations in cybersecurity and data privacy, including NIST CSF, CIS, PCI DSS, HIPAA, ISO27001, CMMC, FedRAMP, SOX, GDPR, CCPA, etc.

· Industry certifications preferred, but not required: CISSP, CISM, etc.

· Needs strong understanding/experience of the US regulatory compliance landscape in cybersecurity / data privacy space and its impact on businesses.

 

Top Skills

Cybersecurity
Risk Management

Similar Jobs

Be an Early Applicant
Yesterday
Cannon Street, London, Greater London, England, GBR
68,787 Employees
Senior level
68,787 Employees
Senior level
Fintech • Financial Services
The Cyber Threat Intelligence and Vulnerability Management Specialist will lead the threat intelligence and vulnerability management efforts, develop strategies for effective risk assessments, monitor cybersecurity incidents, and ensure effective communication of cyber threats to stakeholders. The role requires a deep understanding of cybersecurity, proactive monitoring, and the ability to liaise with various internal teams to enhance the organization's security posture.
Be an Early Applicant
7 Days Ago
London, Greater London, England, GBR
491 Employees
Senior level
491 Employees
Senior level
Financial Services
The Cyber Security Engineer will manage and monitor security systems, conduct threat assessments, design security solutions, deliver security training, and handle incident responses, all while ensuring compliance with security standards. They will also assess third-party risks and integrate security practices within DevOps pipelines.
Be an Early Applicant
11 Hours Ago
Birmingham, West Midlands, England, GBR
Hybrid
90,000 Employees
Senior level
90,000 Employees
Senior level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
The Packaging Technologist will lead cross-functional projects focusing on packaging design and deployment for innovation and productivity. Responsibilities include coordinating technical work, managing stakeholder communication, developing packaging specifications, and leveraging connections for competitive advantage.

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account