Cybersecurity Consultant

Posted 3 Days Ago
Be an Early Applicant
Makati City, Southern Manila District, National Capital Region, PHL
Hybrid
Mid level
Professional Services • Financial Services
The Role
Conduct cybersecurity maturity and risk assessments using leading frameworks and regulations. Advise senior stakeholders on cloud security, zero trust, threat management, incident preparedness, and compliance. Evaluate third-party risks, conduct interviews and workshops, develop data-driven recommendations and cybersecurity roadmaps, support client proposals, mentor consultants, and contribute to methodology development.
Summary Generated by Built In

Key Responsibilities
1    For all levels:
•    Lead end-to-end cybersecurity maturity assessments using frameworks and standards such as NIST CSF, NIST 800-53, ISO/IEC 27001, ISA 62443, or CIS controls measured against DORA, NIS2, CRA, PCI-DSS and new revisions to regulations and directives Act as a trusted advisor to senior stakeholders on topics such as cloud security, zero trust, threat management, incident preparedness, and regulatory compliance.
•    Evaluate risks associated with third-parties and criticality of provisioned services in the context of cybersecurity.
•    Conduct detailed interviews, workshops, and document reviews to evaluate cybersecurity practices
•    Develop clear, data-driven insights and recommendations tailored to client risk appetites and business goals
•    Create strategic roadmaps to improve cybersecurity maturity, compliance, and governance
•    Collaborate with client leadership teams to embed cyber risk considerations into decision-making
•    Support business development efforts, including proposal writing and client presentations
•    Mentor consultants and contribute to internal methodology development

Skills & Experience
•    Bachelor’s or Master’s degree in Cybersecurity, Information Systems, or a related discipline.
•    Minimum 3+ years (5+ for manager) years of experience in cybersecurity consulting, enterprise security, or risk management leadership.
•    Strong understanding of key cybersecurity domains, including:
o    Governance, Risk & Compliance (GRC)
o    Cloud security and zero trust architectures
o    Identity and Access Management (IAM)
o    Data protection and privacy
o    Threat management and incident response
•    Familiarity with frameworks and standards such as NIST, ISO/IEC 27001, ISA 62443, CIS Controls, MITRE ATT&CK, and PCI-DSS.
•    Strong knowledge of regulatory frameworks including NIS2, DORA, CRA, and GDPR.
•    Professional certifications such as CISSP, CISM, CRISC, or ISO 27001 Lead Implementor/Auditor.
•    Experience performing assessments across multiple industries such as finance, healthcare, telecommunications or energy

Desired Skills
•    Experience delivering large-scale transformation programs or regulatory-driven security initiatives.
•    Exposure to security operations, SOC optimisation, or incident response.
•    Ability to translate complex technical risks into clear, actionable insights for senior and executive audiences.
•    Experience with GRC platforms such as Archer, OneTrust, or ServiceNow.
•    Strong presentation and influencing skills, with the ability to build long-term client relationships.

Life at GT 
Reward and benefits: 
Our reward and benefits are designed to create an environment where our people can flourish. We are committed to building a culture where our people have access to the necessary benefits to help promote a healthy lifestyle and thrive. 

Equity, Diversity and Inclusion:
At Grant Thornton, we provide equitable opportunities for all our colleagues. We are a responsible, sustainable business where equity, diversity and inclusion (ED&I) is at the forefront of our workplace culture agenda, and today, we continue to build and develop on our existing ED&I structure and strategy to meet our workplace culture needs. People are at the heart of our business and teams built with varied backgrounds, racial differences, cultures, sexual orientations, religious orientations, ages, gender identities, abilities and family types present diverse viewpoints, which need to be heard and valued.
We are all at our best when we are able to be ourselves and we view integrity and authenticity as integral values to bring to our day-to-day work-life at the firm. We are excited to see the personality and perspectives you will bring to our team because we know we will all benefit from them. Diversity of thought, background and experience enables better decision-making, improves the quality of our delivery, and helps us to meet the needs of our clients. Our firm is built on people and their ideas, so we want to hear all the new perspectives and fresh thinking you have to offer. You form the bedrock of our firm’s best-practice principles and we will champion you as leaders from day one.

Recognition: 
We want to create a culture of recognition and celebrating success, by saying thank you to people who surpass our expectations and recognising the right values and behaviours. Our Shout Out recognition scheme is our way of highlighting and promoting achievements. Whether you simply want to say thank you, celebrate a special occasion or give an award for doing something exceptional, you can do all of this and more through the scheme.


Skills Required

  • Bachelor's or master's degree in Cybersecurity, Information Systems, or a related discipline
  • Minimum 3 years of experience in cybersecurity consulting, enterprise security, or risk management leadership
  • Strong understanding of governance, risk and compliance, cloud security, zero trust, identity and access management, data protection and privacy, threat management, and incident response
  • Familiarity with NIST, ISO/IEC 27001, ISA 62443, CIS Controls, MITRE ATT&CK, and PCI-DSS
  • Strong knowledge of NIS2, DORA, CRA, and GDPR regulatory frameworks
  • Professional certification such as CISSP, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor
  • Experience performing cybersecurity assessments across industries such as finance, healthcare, telecommunications, or energy
  • Experience delivering large-scale transformation programs or regulatory-driven security initiatives
  • Exposure to security operations, SOC optimization, or incident response
  • Experience with GRC platforms such as Archer, OneTrust, or ServiceNow
  • Strong presentation, influencing, and client relationship-building skills
  • Ability to translate complex technical risks into clear, actionable insights for senior and executive audiences
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Gibraltar
16 Employees
Year Founded: 1995

What We Do

Grant Thornton Gibraltar is a leading professional services firm established in 1995. It serves private individuals and public companies listed on international stock exchanges, with experienced teams supporting local and international clients. Its offerings include audit and assurance, business services, payroll, advisory, tax, accounting, and financial services. The firm also helps organizations grow and develop by addressing their accountancy and business needs.

Similar Jobs

Sourcefit Logo Sourcefit

Consultant

Information Technology • Other • Professional Services • Consulting
In-Office
Quezon City, Metro Manila, National Capital Region, PHL
2000 Employees

Continental Industry Logo Continental Industry

Consultant

Automotive • Energy • Industrial • Manufacturing
Hybrid
City of Taguig, Southern Manila District, National Capital Region, PHL
20000 Employees

Continental Industry Logo Continental Industry

Consultant

Automotive • Energy • Industrial • Manufacturing
Hybrid
City of Taguig, Southern Manila District, National Capital Region, PHL
20000 Employees

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account