Senior Cyber Security Consultant - Strategy & Risk
Senior Cyber Security Consultant – Strategy & Risk
Auckland | Hybrid
We’re looking for an experienced Senior Cyber Security Consultant to join a growing cyber security advisory and risk consulting team.
This is a client-facing consulting role working with enterprise and public sector clients. You’ll lead cyber security engagements, provide trusted security advice, and help organisations improve their cyber resilience, governance and risk posture.
Key responsibilities
- Lead cyber security risk and maturity assessments
- Deliver NIST Cybersecurity Framework assessments
- Support HISF, NZISM, ISM and ISO 27001 advisory work
- Design and facilitate cyber security tabletop exercises
- Provide security advisory and vCISO-style support
- Develop cyber security strategies, roadmaps and operating models
- Review and uplift security policies, standards and Incident Response Plans
- Advise clients on cyber risk, governance, compliance and security controls
- Lead client workshops, discovery sessions and stakeholder engagement
- Prepare high-quality reports, proposals and presentations for senior stakeholders
About you
You’ll be a confident cyber security consultant who can translate technical security risk into clear business recommendations.
You’ll ideally bring:
- 3+ years’ cyber security, security risk, GRC or consulting experience
- Experience in cyber security advisory, strategy, governance or risk
- Strong knowledge of frameworks such as NIST CSF, ISO 27001, NZISM, ISM, HISF or similar
- Strong report-writing and presentation skills
- Confidence engaging with senior stakeholders and clients
- Ability to lead consulting engagements independently
- Experience across multiple cyber security domains
Experience with NZISM Certification & Accreditation, NIST CSF maturity assessments, tabletop exercises, vCISO advisory, incident response planning or cyber security strategy will be highly regarded.
Why apply?
- Auckland-based hybrid role
- Strong pipeline of cyber advisory work
- Enterprise and public sector client exposure
- Variety across strategy, risk, governance and resilience engagements
- Competitive remuneration and development opportunities
If you’re an experienced Cyber Security Consultant, Security Consultant, Cyber GRC Consultant, Security Risk Consultant, Information Security Consultant or vCISO Advisor, we’d love to hear from you.
Apply now with your CV or get in touch for a confidential conversation.