Principal Consultant, GRC
Palo Alto Networks
Job highlights
Summary
Join Palo Alto Networks® as a Principal Consultant, GRC for Proactive Services and lead the Governance, Risk, and Compliance team. You will assess security risks across multiple frameworks, act as a technical key team member in client engagements, and advocate for cybersecurity risk management. Responsibilities include leading advisory engagements, managing teams and projects, identifying and mitigating security risks, communicating findings to stakeholders, and developing new business opportunities. This role requires 6+ years of experience in information security and risk assessments, experience managing consultants, and knowledge of various frameworks and regulations. A Bachelor's degree in a relevant field is also required. Palo Alto Networks offers competitive compensation, including a base salary range of $151,000-$208,000, restricted stock units, and a bonus, along with comprehensive benefits.
Requirements
- 6+ years of experience performing information security and risk assessments based upon industry-accepted standards
- Experience managing a team of consultants
- Experience with GRC tools, technology, and implementation
- Experience with security assessments/audits, drafting findings and recommendations, and prioritizing recommendations via quantitative risk scoring
- Demonstrate a track record in strengthening existing and developing new client relationships
- Knowledge of computer forensic tools, technologies and methods
- Bachelor’s Degree in Information Security, Computer Science, Digital Forensics, Cyber Security or equivalent years of professional experience or equivalent military experience to meet job requirements and expectations
Responsibilities
- Assess security risk across multiple frameworks and act as a technical key team member in client engagements
- Be the client’s advocate for cybersecurity risk management and provide strong recommendations in this domain
- Lead and support Advisory engagements such as Tabletop Exercises, Cyber Risk Assessments, Incident Response Plan development, Ransomware Readiness Reviews & Breach Readiness Reviews
- Manage team, monitor progress, track budget, manage risk and ensure key stakeholders are kept informed about progress and expected outcomes while defining potential impacts and creating an effective mitigation strategy for multiple projects at a given time
- Skilled at proactively identifying security risks and vulnerabilities while eliminating cybersecurity threats via stakeholder interviews, documentation review, and deep-dive testing and control validation
- Ensure client controls meet legal, regulatory, privacy, policy, standards and security requirements
- Effectively write and communicate audit, assessment, or compliance results, findings, and recommendations to stakeholders
- Effectively and efficiently communicate to external stakeholders in a professional manner
- Ability to scope new opportunities with prospective clients, including drafting statements of work and proposals
- Ability to perform travel requirements as needed to meet business demands (on average ~30%)
Preferred Qualifications
Former professional services and consulting experience
Benefits
- Base salary (for non-sales roles) or base salary + commission target (for sales/commissioned roles) is expected to be between $151000 - $208000/YR
- Restricted stock units
- A bonus
Share this job:
Similar Remote Jobs
- 💰$151k-$208k📍United States
- 💰$104k-$179k📍Worldwide
- 📍Worldwide