Cybersecurity M&A Manager

Posted 2 Days Ago
Be an Early Applicant
New York, NY, USA
In-Office
162K-202K Annually
Senior level
Professional Services • Financial Services
The Role
Lead cyber due diligence, privacy assessments, and risk engagements for M&A transactions. Evaluate governance, IAM, cloud security, third-party risk, and compliance against frameworks, develop remediation roadmaps, quantify remediation costs, support integration and Day 1 readiness, manage client relationships, mentor teams, and contribute to business development.
Summary Generated by Built In

As a Cyber M&A Manager, you will get the opportunity to lead cyber due diligence, privacy assessments, and cybersecurity risk engagements for private equity firms, strategic acquirers, and portfolio companies, helping clients identify risks that may impact deal value, structure, or integration planning. Candidates should have experience assessing cybersecurity, privacy, cloud security, IAM, regulatory compliance, and third-party risk, while translating technical findings into business and transaction-focused insights. This individual will also manage client relationships, mentor teams, contribute to business development efforts, and support the continued growth of our Cyber M&A practice.
From day one, you’ll be empowered by the greater Cyber & Risk team to help clients make the moves that will help them achieve their vision and help you achieve more, confidently. 

Your day-to-day may include:

  • Adhere to the highest degree of professional standards and strict client confidentiality
  • Lead cybersecurity and privacy assessments across diverse industries and client environments.
  • Evaluate security governance, risk management, privacy, identity and access management, cloud security, third-party risk, incident response, and regulatory compliance programs.
  • Conduct cybersecurity maturity assessments utilizing frameworks such as: 
    • NIST Cybersecurity Framework (CSF)
    • NIST 800-53
    • CIS Controls
    • ISO 27001
    • HIPAA
    • GDPR
    • CCPA/CPRA
  • Develop actionable remediation roadmaps, maturity improvement plans, and control enhancement recommendations.
  • Support cybersecurity strategy, risk governance, and transformation initiatives.
  • Lead cyber due diligence workstreams for buy-side, sell-side, and carve-out transactions.
  • Assess target company cybersecurity posture and identify transaction-related risks that may impact valuation, deal structure, integration strategy, or investment thesis.
  • Analyze: 
    • Security governance and oversight
    • Control effectiveness
    • Identity and access management
    • Cloud and infrastructure security
    • Vulnerability management
    • Privacy and regulatory compliance
    • Third-party and supply chain risk
    • Incident history and breach exposure
  • Manage Information Request Lists (IRLs) and Due Diligence Requests (DDLs).
  • Translate technical findings into transaction-relevant insights for investors, executives, and deal teams.
  • Quantify cyber risks, remediation costs, and integration considerations.
  • Support post-close integration planning, Day 1 readiness, TSA assessments, separation planning, and 100-day cybersecurity roadmaps.
  • Assist clients in planning and executing remediation plans identified in assessment activities
  • Work with the client to plan an engagement strategy, define objectives, and address technology-related controls risks and issues
  • Proactively interact with key client management to gather information, resolve problems, and make recommendations for improvements
  • Ability to manage multiple engagements and competing priorities in a rapidly growing, fast-paced, interactive, results-based team environment
  • Participate in professional development activities and training sessions on regular basis
  • Manage the team comprising of seniors and associates and maintain professionalism across team
  • Other job duties as assigned

You have the following technical skills and qualifications:

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field is required
  • Minimum 5 years of related cybersecurity experience in a similar consulting practice or function
  • CISSP, CISM, ISACA, CRISC or other related certifications required
  • Understanding of Industry Standards/frameworks such as COBIT, NIST, ISO 27001,and PCI-DSS etc. required
  • Demonstrated experience supporting Technology M&A, Cyber Due Diligence, Technology Due Diligence, Transaction Advisory, or Private Equity portfolio initiatives.
  • Strong understanding of: 
    • Cybersecurity governance and risk management
    • Privacy and data protection programs
    • Cloud security
    • Identity and access management
    • Third-party risk management
    • Incident response and resilience
  • Experience leading client-facing engagements and managing teams.
  • Strong executive communication and presentation skills.
  • Exceptional client service, communication, analytical, organizational and project management skills
  • Ability to execute multiple engagements and completing priorities in a rapidly growing team environment
  • Can travel as needed. 

The base salary range for this position is between $161,920 and $202,400. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job -related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate. 

About UsAt Grant Thornton, we believe in making business more personal and building trust into every result – for our clients and you. Here, we go beyond your expectations of a career in professional services by offering a career path with more: more opportunity, more flexibility, and more support. It’s what makes us different, and we think being different makes us better. 

In the U.S., Grant Thornton delivers professional services through two specialized entities: Grant Thornton LLP, a licensed, certified public accounting (CPA) firm that provides audit and assurance services ― and Grant Thornton Advisors LLC (not a licensed CPA firm), which exclusively provides non-attest offerings, including tax and advisory services.

In 2025, Grant Thornton formed a multinational, multidisciplinary platform with Grant Thornton Ireland. The platform offers a premier Trans-Atlantic advisory and tax practice, as well as independent American and Irish audit practices. With $2.7 billion in revenues and more than 50 offices spanning the U.S., Ireland and other territories, the platform delivers a singular client experience that includes enhanced solutions and capabilities, backed by powerful technologies and a roster of 12,000 quality-driven professionals enjoying exceptional career-growth opportunities and a distinctive cross-border culture.

Grant Thornton is part of the Grant Thornton International Limited network, which provides access to its member firms in more than 150 global markets. About the TeamThe team you’re about to join is ready to help you thrive. Here’s how:
• Whether it's your work location, weekly schedule, or flex time off, we empower you with the options to work the way that it best serves your clients and your life. Consistent with the firm's hybrid work model, this position will require in-person attendance at least three days per week, either at a GT office or client site.   
• Here, you are supported to prioritize your overall well-being through work-life integration options that work best for you and those in your household. 
• We understand that your needs, responsibilities and experiences are different — and we think that’s a good thing. That’s why we support you with personalized and comprehensive benefits that recognize and empower all the identities, roles and aspirations that make you, well, you. See how at  www.gt.com/careers
• When it comes to inclusion, we are committed to doing more than checking boxes. Explore all the ways we’re taking action for diversity, equity & inclusion at  www.gt.com/careers

Here’s what you can expect next: 
If you apply and are selected to interview, a Grant Thornton team member will reach out to you to schedule a time to connect. We encourage you to also check out other roles that may be a good fit for you or get to know us a little bit better at   www.gt.com/careers

Benefits:
We understand that your needs, responsibilities and experiences are different, and we think that’s a good thing. That’s why we support you with personalized and comprehensive benefits that recognize and empower all the identities, roles and aspirations that make you, well, you. For an overview of our benefit offerings, please visit: https://www.grantthornton.com/careers/rewards-and-benefits
  • Benefits for internship positions: Grant Thornton interns are eligible to participate in the firm’s medical, dental and vision insurance programs and the firm’s employee assistance program. Interns also receive a minimum of 72 hours of paid sick leave, and are paid for firm holidays that fall within their internship period.
  • Benefits for seasonal employee positions: Grant Thornton seasonal employees are eligible to participate in the firm’s medical, dental and vision insurance programs and the firm’s employee assistance program. Seasonal employees may also be eligible to participate in the firm’s 401(k) savings plan and employee retirement plan in accordance with applicable plan terms and eligibility requirements. Seasonal employees receive a minimum of 72 hours of paid sick leave. 
Grant Thornton employees may be eligible for a discretionary, annual bonus based on individual and firm performance, subject to the terms, conditions and eligibility criteria of the applicable bonus plan or program. Interns and seasonal employees are not eligible for bonus compensation.

Additional Details:         
It is the policy of Grant Thornton to promote equal employment opportunities. All personnel decisions (including, but not limited to, recruiting, hiring, training, working conditions, promotion, transfer, compensation, benefits, evaluations, and termination) are made without regard to race, color, religion, national origin, sex, age, marital or civil union status, pregnancy or pregnancy-related condition, sexual orientation, gender identity or expression, citizenship status, veteran status, disability, handicap, genetic predisposition or any other characteristic protected by applicable federal, state, or local law.
 
Consistent with the Americans with Disabilities Act (ADA) and applicable state and local laws, it is the policy of Grant Thornton LLP to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. The policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. To make an accommodation request, please contact [email protected]

For Los Angeles Applicants only: We will consider for employment all qualified Applicants, including those with Criminal Histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance.

For Massachusetts Applicants only: It is unlawful in Massachusetts to require or administer a lie detector test as condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Gran Thornton does not require or administer lie detector tests as a condition of employments or continued employment.   

Skills Required

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field
  • Minimum 5 years of related cybersecurity experience in a consulting practice or similar function
  • CISSP, CISM, ISACA, CRISC or other related certifications
  • Understanding of industry standards/frameworks (COBIT, NIST, ISO 27001, PCI-DSS, etc.)
  • Demonstrated experience supporting Technology M&A, Cyber Due Diligence, Transaction Advisory, or Private Equity portfolio initiatives
  • Strong understanding of cybersecurity governance, privacy/data protection, cloud security, IAM, third-party risk, and incident response
  • Experience leading client-facing engagements and managing teams
  • Strong executive communication and presentation skills
  • Ability to manage multiple engagements and competing priorities in a fast-paced environment
  • Ability to travel as needed and work on-site per hybrid model
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chicago, IL
13,711 Employees
Year Founded: 1924

What We Do

Forget what you think you know about professional services. We go beyond what’s expected and help others do the same. Grant Thornton is the U.S. member firm of Grant Thornton International Ltd, one of the world’s leading independent audit, tax and advisory firms. That means our network has more than 60,000 professionals in more than 135 countries who are ready to help public and private organizations of all sizes take on today’s challenges. But what sets us apart isn’t just what we do – it’s how we do it. Here, we believe in making business more personal and building trust into every result. We’re collaborators – obsessed with quality and ready for anything – who understand the value of strong relationships. It’s how we challenge the expectations of business and empower our people and clients to do it, too. One thing we won’t do? Grant Thornton LLP will never request money or any form of payment for services via social media. Please report any concerns at 1-800-810-3503. "Grant Thornton” refers to Grant Thornton LLP, the U.S. member firm of Grant Thornton International Ltd (GTIL). GTIL and the member firms are not a worldwide partnership. Services are delivered by the member firms. GTIL and its member firms are not agents of, and do not obligate, one another and are not liable for one another’s acts or omissions. Please see grantthornton.com for further details.

Similar Jobs

JPMorganChase Logo JPMorganChase

Counsel

Financial Services
Hybrid
5 Locations
289097 Employees
Hybrid
2 Locations
289097 Employees

CrowdStrike Logo CrowdStrike

Threat Hunter III (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
100K-155K Annually

CrowdStrike Logo CrowdStrike

Sr. Intelligence Analyst (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
85K-120K Annually

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account