Grant Thornton

Cybersecurity Consultant

Grant Thornton · Makati, Metro Manila, Philippines

Professional Services · 5,001-10,000 employees

5 h ago
Senior (5-10 yrs) Full-time Philippines
Log in to apply, save this posting, or score it against your profile with AI.

About the role

Lead end-to-end cybersecurity maturity assessments and provide strategic advisory services to senior stakeholders on risk and compliance. Develop data-driven security roadmaps and support business development efforts while mentoring junior consultants.

What they look for

Cybersecurity maturity assessments NIST CSF ISO/IEC 27001 Cloud security Zero trust Governance, Risk & Compliance Identity and Access Management Data protection Threat management Incident response Regulatory compliance Strategic roadmaps Business development Risk management Stakeholder management Mentoring

Requirements

Requires a Bachelor's or Master's degree in Cybersecurity or a related field and at least 3 to 5 years of experience in cybersecurity consulting or risk management. Candidates must possess strong knowledge of security frameworks like NIST and ISO, along with relevant professional certifications such as CISSP or CISM.

Benefits

Recognition scheme Professional development

Full description

Key Responsibilities 1 For all levels:

  • Lead end-to-end cybersecurity maturity assessments using frameworks and standards such as NIST CSF, NIST 800-53, ISO/IEC 27001, ISA 62443, or CIS controls measured against DORA, NIS2, CRA, PCI-DSS and new revisions to regulations and directives Act as a trusted advisor to senior stakeholders on topics such as cloud security, zero trust, threat management, incident preparedness, and regulatory compliance.
  • Evaluate risks associated with third-parties and criticality of provisioned services in the context of cybersecurity.
  • Conduct detailed interviews, workshops, and document reviews to evaluate cybersecurity practices
  • Develop clear, data-driven insights and recommendations tailored to client risk appetites and business goals
  • Create strategic roadmaps to improve cybersecurity maturity, compliance, and governance
  • Collaborate with client leadership teams to embed cyber risk considerations into decision-making
  • Support business development efforts, including proposal writing and client presentations
  • Mentor consultants and contribute to internal methodology development

Skills & Experience

  • Bachelor’s or Master’s degree in Cybersecurity, Information Systems, or a related discipline.
  • Minimum 3+ years (5+ for manager) years of experience in cybersecurity consulting, enterprise security, or risk management leadership.
  • Strong understanding of key cybersecurity domains, including:

o Governance, Risk & Compliance (GRC) o Cloud security and zero trust architectures o Identity and Access Management (IAM) o Data protection and privacy o Threat management and incident response

  • Familiarity with frameworks and standards such as NIST, ISO/IEC 27001, ISA 62443, CIS Controls, MITRE ATT&CK, and PCI-DSS.
  • Strong knowledge of regulatory frameworks including NIS2, DORA, CRA, and GDPR.
  • Professional certifications such as CISSP, CISM, CRISC, or ISO 27001 Lead Implementor/Auditor.
  • Experience performing assessments across multiple industries such as finance, healthcare, telecommunications or energy

Desired Skills

  • Experience delivering large-scale transformation programs or regulatory-driven security initiatives.
  • Exposure to security operations, SOC optimisation, or incident response.
  • Ability to translate complex technical risks into clear, actionable insights for senior and executive audiences.
  • Experience with GRC platforms such as Archer, OneTrust, or ServiceNow.
  • Strong presentation and influencing skills, with the ability to build long-term client relationships.

Life at GT Reward and benefits: Our reward and benefits are designed to create an environment where our people can flourish. We are committed to building a culture where our people have access to the necessary benefits to help promote a healthy lifestyle and thrive.

Equity, Diversity and Inclusion: At Grant Thornton, we provide equitable opportunities for all our colleagues. We are a responsible, sustainable business where equity, diversity and inclusion (ED&I) is at the forefront of our workplace culture agenda, and today, we continue to build and develop on our existing ED&I structure and strategy to meet our workplace culture needs. People are at the heart of our business and teams built with varied backgrounds, racial differences, cultures, sexual orientations, religious orientations, ages, gender identities, abilities and family types present diverse viewpoints, which need to be heard and valued. We are all at our best when we are able to be ourselves and we view integrity and authenticity as integral values to bring to our day-to-day work-life at the firm. We are excited to see the personality and perspectives you will bring to our team because we know we will all benefit from them. Diversity of thought, background and experience enables better decision-making, improves the quality of our delivery, and helps us to meet the needs of our clients. Our firm is built on people and their ideas, so we want to hear all the new perspectives and fresh thinking you have to offer. You form the bedrock of our firm’s best-practice principles and we will champion you as leaders from day one.

Recognition: We want to create a culture of recognition and celebrating success, by saying thank you to people who surpass our expectations and recognising the right values and behaviours. Our Shout Out recognition scheme is our way of highlighting and promoting achievements. Whether you simply want to say thank you, celebrate a special occasion or give an award for doing something exceptional, you can do all of this and more through the scheme.