Senior Cyber Security Consultant - Strategy & Risk

  • New Zealand
  • Auckland
  • Permanent
  • Negotiable

Senior Cyber Security Consultant – Strategy & Risk
Auckland | Hybrid

We’re looking for an experienced Senior Cyber Security Consultant to join a growing cyber security advisory and risk consulting team.
This is a client-facing consulting role working with enterprise and public sector clients. You’ll lead cyber security engagements, provide trusted security advice, and help organisations improve their cyber resilience, governance and risk posture.
Key responsibilities

  • Lead cyber security risk and maturity assessments
  • Deliver NIST Cybersecurity Framework assessments
  • Support HISF, NZISM, ISM and ISO 27001 advisory work
  • Design and facilitate cyber security tabletop exercises
  • Provide security advisory and vCISO-style support
  • Develop cyber security strategies, roadmaps and operating models
  • Review and uplift security policies, standards and Incident Response Plans
  • Advise clients on cyber risk, governance, compliance and security controls
  • Lead client workshops, discovery sessions and stakeholder engagement
  • Prepare high-quality reports, proposals and presentations for senior stakeholders

About you
You’ll be a confident cyber security consultant who can translate technical security risk into clear business recommendations.
You’ll ideally bring:

  • 3+ years’ cyber security, security risk, GRC or consulting experience
  • Experience in cyber security advisory, strategy, governance or risk
  • Strong knowledge of frameworks such as NIST CSF, ISO 27001, NZISM, ISM, HISF or similar
  • Strong report-writing and presentation skills
  • Confidence engaging with senior stakeholders and clients
  • Ability to lead consulting engagements independently
  • Experience across multiple cyber security domains

Experience with NZISM Certification & Accreditation, NIST CSF maturity assessments, tabletop exercises, vCISO advisory, incident response planning or cyber security strategy will be highly regarded.
Why apply?

  • Auckland-based hybrid role
  • Strong pipeline of cyber advisory work
  • Enterprise and public sector client exposure
  • Variety across strategy, risk, governance and resilience engagements
  • Competitive remuneration and development opportunities

If you’re an experienced Cyber Security Consultant, Security Consultant, Cyber GRC Consultant, Security Risk Consultant, Information Security Consultant or vCISO Advisor, we’d love to hear from you.
Apply now with your CV or get in touch for a confidential conversation.

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.