November 25, 2024
Electric Energy Jobs

Cyber Strategy Associate Director

Organization:
Accenture
Region:
Canada, Multiple Locations
End of contest:
February 3, 2025
Type:
Full time
Category:
Information technology (it)
Description
Job Description

We Are

Accenture Security helps organizations prepare, protect, detect, respond, and recover along all points of the security lifecycle. Cybersecurity challenges are different for every business in every industry. Leveraging our global resources and advanced technologies, we create integrated, turnkey solutions tailored to our clients' needs across their entire value chain. Whether we're defending against known cyberattacks, detecting and responding to the unknown, or running an entire security operations center, we will help companies build cyber resilience to grow with confidence. Our team of the security sector's brightest people use the coolest tech to out-hack the hackers and help clients build resilience from within. We blend risk strategy, digital identity, cyber defense, application security and managed service solutions to rethink the entire security lifecycle. 

You Are

Passionate about security, love what you do and have a genuine desire to outsmart the bad guys. You have the experience to analyze a clients' security posture, anticipate security requirements and help find right-sized solutions based on industry leading practices. You have a proven track record working successfully in a fast-paced, team-oriented environment. You're a creative, analytical problem solver with above average documentation skills who can speak to both technical and non-technical audiences. Can apply deep security skills to design, build and protect enterprise systems, applications, data, assets and people for Accenture and our clients. You are eager to put your skills to use by helping us help our clients inject security at every level of their organization.

The Work

  • Driving cybersecurity assessments including maturity assessments using NIST CSF or FAIR methodologies.

  • Driving large Governance, Risk and Compliance projects / programs.

  • Driving security and controls work for various cybersecurity and privacy regulations.

  • Understanding and overseeing control standards (PCI DSS, COBIT, ISO27001, NIST 800:53, HITRUST, GDPR, CCPA), and control testing strategies.

  • Applying cyber compliance / risk management knowledge, internal control principles and technical knowledge across cyber risk and compliance engagements.

  • Developing and executing a detailed project plan, assessment approach, and overseeing the delivery team through team management (e.g., resource allocation, daily stand-ups), client coordination and quality review

  • Participating in development and delivery of training curriculum and participating in hiring and coaching activities for the Managed Risk Services team.

  • Participate in the full delivery of various cyber risk and security engagements serving multiple clients across different industries.

  • Consult to gather requirements and understand our clients' key challenges and work with senior team members to advise on practical and cost-effective solutions to help mitigate our clients' cybersecurity risks and challenges.

  • Conduct information security risk assessments, including risk/issue intake/identification, triage and treatment plan preparation and tracking in accordance with our client Information Security and Compliance Frameworks as well as regulatory standards and requirements (i.e., SOX, PCI, ISO, SOC2, GDPR).

  • Perform test of controls for privacy including driving preparations, conducting walkthrough meetings, preparing narratives, and assembling other evidence as needed to support testing conclusions.

  • Perform IT control assessments/testing and assist with continuous monitoring activities, and help remediate any control deficiencies or findings

  • Prepare control testing scripts, plans, agendas to help the client through test execution process

  • Assist with ongoing IT controls related functions, such as performing vendor reviews, user access reviews and risk assessments.

  • Understand relevant security and privacy regulatory compliance requirements and be able to translate those into business processes and security controls to enhance and support client's compliance and audit capabilities.

  • Articulate and defend IT controls testing approach and perform test of design and operating effectiveness.

  • Establish and maintain effective working relationships with colleagues, existing clients, and prospective client organizations.

  • Participate in relevant community events that align to personal interests and provide the opportunity for you to build your professional brand.

Read the full posting.

Contact

Accenture

630 Boulevard René-Lévesque Ouest #1200

Montréal

Quebec Canada

www.accenture.com