Interim Cybersecurity & IT Risk Lead Consultant

Posted Yesterday
Be an Early Applicant
Dallas, TX, USA
In-Office
Expert/Leader
Artificial Intelligence • Real Estate • Energy • Renewable Energy
The Role
Lead the development and maturation of an enterprise cybersecurity, IT risk, and compliance program. Responsibilities include governance, risk assessments, security policies, IAM/PAM, Microsoft Entra, cloud and endpoint security, incident response, vulnerability management, MSSP oversight, vendor risk, legal and data governance support, and OT/physical security coordination. The role partners with executives, legal, operations, compliance, and technical teams in a primarily Dallas-based hybrid environment with limited site travel.
Summary Generated by Built In

Description

We are seeking an experienced Cybersecurity & IT Risk Lead Consultant to help establish and mature the cybersecurity, risk, and compliance function for a rapidly growing infrastructure organization. This individual will serve as the senior internal cybersecurity leader, responsible for strengthening security governance, reducing enterprise risk, overseeing managed security providers, and building the foundation for a scalable security program. The ideal candidate brings a combination of hands-on technical expertise and strategic leadership, with experience operating in highly regulated, capital-intensive environments such as energy, industrial infrastructure, construction, utilities, critical infrastructure, or data center organizations. This role will partner closely with executive leadership, legal, compliance, operations, and external service providers to ensure cybersecurity, IT risk, and governance programs evolve alongside the organization's growth.
 

Cybersecurity Program Leadership

  • Assess, design, and implement cybersecurity governance, policies, standards, and risk management frameworks.
  • Develop and execute a strategic cybersecurity roadmap aligned with business objectives and growth plans.
  • Establish security metrics, reporting, and executive-level risk visibility.
  • Build scalable cybersecurity processes suitable for a growing organization.

IT Risk & Compliance

  • Lead enterprise cybersecurity risk assessments and remediation initiatives.
  • Support regulatory, governance, and compliance requirements, including SOX controls and public-company cybersecurity expectations.
  • Assist with cybersecurity governance activities, risk reporting, and documentation aligned with SEC disclosure requirements.
  • Develop and maintain security policies, standards, and control frameworks.

Identity & Access Management

  • Oversee and enhance Identity and Access Management (IAM) and Privileged Access Management (PAM/PIM) programs.
  • Drive security best practices within Microsoft Entra and related identity platforms.
  • Improve access governance, authentication controls, and privileged account management.

Security Operations & Incident Response

  • Provide oversight of vulnerability management, endpoint security, cloud security, threat detection, and incident response programs.
  • Lead investigations, root cause analyses, and remediation efforts following security incidents or data-loss events.
  • Coordinate incident response activities across internal stakeholders and third-party providers.
  • Establish and refine security monitoring and response procedures.

Security Vendor & MSSP Management

  • Evaluate, select, and manage Managed Security Service Providers (MSSPs) and cybersecurity partners.
  • Hold external providers accountable for service delivery, performance metrics, and security outcomes.
  • Guide the long-term transition from outsourced services toward an internally developed security capability.

Legal, eDiscovery & Data Governance

  • Partner with Legal and external counsel regarding cybersecurity matters, investigations, and risk management.
  • Support eDiscovery, legal hold, records retention, and data governance initiatives.
  • Provide cybersecurity guidance related to information retention and protection policies.

Operational Technology & Physical Security

  • Collaborate with Facilities, Operations, and infrastructure teams to address cybersecurity risks associated with operational and physical environments.
  • Support governance surrounding access control systems, surveillance technologies, visitor management, and site security solutions.
  • Contribute to the development of OT/ICS security practices as operational infrastructure expands.

Requirements

Required Qualifications

  • 10+ years of progressive experience in cybersecurity, information security, IT risk, or security consulting.
  • Proven track record building or maturing cybersecurity programs within growing organizations.
  • Strong experience across:
    • IAM, PAM/PIM, and Microsoft Entra
    • Endpoint security
    • Cloud security
    • Vulnerability management
    • Security operations
    • Incident response
    • Third-party/vendor risk management
  • Experience managing MSSPs, security consultants, and external service providers.
  • Strong knowledge of cybersecurity governance, risk management, and control frameworks.
  • Experience supporting SOX controls and public-company cybersecurity requirements.
  • Hands-on experience with policy development, risk assessments, remediation programs, and security program implementation.
  • Ability to operate effectively as both a strategic leader and hands-on contributor.
  • Excellent communication skills with the ability to engage executives, business stakeholders, legal teams, and technical teams.

Preferred Qualifications

  • Experience within energy, utilities, industrial infrastructure, construction, critical infrastructure, data center, or other capital-intensive environments.
  • Knowledge of OT/ICS cybersecurity principles and industrial control environments.
  • Experience supporting cyber-physical security programs.
  • Familiarity with SEC cybersecurity governance and disclosure requirements.
  • Certifications such as CISSP, CISM, CRISC, GIAC, or similar credentials.

Ideal Candidate Profile

  • Builder mindset with experience creating structure in rapidly growing organizations.
  • Comfortable working in ambiguity and establishing processes from the ground up.
  • Capable of balancing strategy, governance, and hands-on execution.
  • Strong vendor management and stakeholder influence skills.
  • Collaborative leader who can partner across technology, operations, legal, compliance, and executive leadership teams.

Travel

  • Primarily Dallas-based hybrid role.
  • Limited travel required to operational sites.

Third-Party Submissions

We are not accepting unsolicited résumés from staffing agencies, recruiters, or other third parties for this position. Résumés submitted without a signed agreement will be considered our property, and no placement fee will be paid.

Skills Required

  • 10+ years of progressive experience in cybersecurity, information security, IT risk, or security consulting
  • Experience building or maturing cybersecurity programs within growing organizations
  • Experience with IAM, PAM/PIM, and Microsoft Entra
  • Experience with endpoint security, cloud security, vulnerability management, security operations, and incident response
  • Experience managing MSSPs, security consultants, and external service providers
  • Knowledge of cybersecurity governance, risk management, and control frameworks
  • Experience supporting SOX controls and public-company cybersecurity requirements
  • Hands-on experience with policy development, risk assessments, remediation programs, and security program implementation
  • Ability to operate as both a strategic leader and hands-on contributor
  • Excellent communication skills with executives, business stakeholders, legal teams, and technical teams
  • Experience in energy, utilities, industrial infrastructure, construction, critical infrastructure, data center, or other capital-intensive environments
  • Knowledge of OT/ICS cybersecurity principles and industrial control environments
  • Experience supporting cyber-physical security programs
  • Familiarity with SEC cybersecurity governance and disclosure requirements
  • Certifications such as CISSP, CISM, CRISC, GIAC, or similar credentials
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Year Founded: 2025

What We Do

Fermi Inc. develops private power campuses for AI-centric customers, providing gigawatt-scale, behind-the-meter energy generation and high-performance computing infrastructure.

Similar Jobs

Wipfli Logo Wipfli

Manager, Financial Reporting - Physician Practice Clients

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
97K-145K Annually

Wipfli Logo Wipfli

Consultant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
129K-174K Annually

Wipfli Logo Wipfli

Senior Consultant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
88K-132K Annually

Wipfli Logo Wipfli

Audit Manager, Tribal Industry

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
97K-145K Annually

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account