Locations: Atlanta | Austin | Boston | Brooklyn | Chicago | Dallas | Denver | Detroit | Houston | Miami | Minneapolis | Nashville | Summit | New York | Philadelphia | Durham | Washington
Who We Are
Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.
To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.
BCG Platinion
For organizations, the digital imperative is a moving target. It’s not enough to simply keep up with today’s challenges. Organizations need to anticipate tomorrow’s digital landscape to maintain competitive advantage. BCG Platinion brings the tech capabilities our clients need to achieve digital excellence. At our core, we are a team of driven problem-solvers fueled by a passionate dedication to set the pace of what’s next.
What You'll Do
As a Cybersecurity Manager, you'll be given end-to-end responsibility for 'modules' within a BCG client engagement and begin to develop specialized knowledge to help you solve our clients' problems. You'll work on a variety of cybersecurity and digital risk topics, applying generalist consulting skills to strategic cybersecurity & digital risk questions. We are looking for someone who can address our clients’ strategic, organizational, managerial, and operational issues using the most advanced cybersecurity methodologies, tools, and techniques.
Cybersecurity Consultants at BCG Platinion:
Technical experts. They are critical thinkers and have extensive cybersecurity expertise that drives innovative solutions.
Business-minded story tellers. They leverage their deep-technical understanding of cybersecurity challenges and translate that into implications across the business value chain
Innovators. They understand and leverage cutting-edge cybersecurity approaches and tactics to create customized solutions for clients.
Comfortable with ambiguity. They know the path forward isn’t always well-defined. They are comfortable and confident working through the unknown
Change agents. They know how to make change happen across an organization. They can align and onboard teams to implement new cybersecurity process and toolsets. They embrace complex challenges and guide an organization to optimize their cybersecurity practices.
Collaborative. They are interdisciplinary team players who seek alignment and establish relationships ranging from cross-functional stakeholder groups to existing security teams
What You Are Good At:
Understanding the role technology plays in enabling businesses to execute their strategies and decomposing the cybersecurity implications of this relationship
Analyzing cybersecurity standards, regulatory requirements, and best practices and translating that into a meaningful set of recommendations tailored to a client’s unique environment and circumstances
Communicating complex and technical concepts in a concise and business value-centric written form
Implementing cybersecurity transformation and culture change initiatives
Conducting cybersecurity assessments including gap analysis and roadmap development in multiple contexts, including organizations, product development, and cloud security
Developing cybersecurity strategies, policies, processes, and procedures to protect clients’ internal infrastructure and their customers
Understanding data protection, data security, and privacy drivers that influence organizations today
Developing cybersecurity business strategies for technology product vendors that are integrated in the organizations overall business strategy and increase revenue and profits
Working with leadership teams, including facilitating board and senior management cybersecurity awareness workshops
Embedding product security and DevSecOps practices into the software development lifecycles, system designs, and IT architectures
Utilizing cyber risk quantification to reduce uncertainty around cyber risk and improve executive decision making
Creating and facilitating table-top exercises
Delivering operational resilience through incident response, business continuity, and disaster recovery planning
What You'll Bring
6+ years of practical experience in cybersecurity consulting or cybersecurity management (with teams of five persons or more) in a variety of sectors and contexts BS in cybersecurity, information systems, mathematics, natural sciences, business management, or similar degree
Hands-on experience with, or extensive knowledge of some of the following:
Developing cybersecurity strategies or policies
Quantifying and managing cybersecurity risk
Leading security assessments
Designing, transforming, implementing, and running cybersecurity programs
Developing security architectures
Integrating security into applications and systems
Implementing cloud security
Managing cybersecurity risk arising from third parties and the supply chain
Designing / implementing identity and access management
Developing and upskilling a cybersecurity workforce
Delivering cybersecurity culture change, awareness, and training
Performing continuous monitoring activities such as using SIEM tools, APT hunting, implementing UBA, etc.
Designing / implementing vulnerability management, including conducting vulnerability assessments
Performing penetration testing, incident management, BCP, and/or DRP
Broad knowledge of cybersecurity technologies throughout organizational and acquisition lifecycle
Working knowledge of at least two different cybersecurity frameworks:
NIST Cybersecurity Framework
C2M2
NIST SP 800-53 and companion publications
ISO/IEC 27000 family of standards, etc.
Cloud Security Alliance CCM
Team-oriented attitude
Strong communication and presentation skills
Outstanding analytical and conceptual skills
Results-orientated mindset
Confidence and persuasiveness
Business-fluent written and spoken English language skills
Willingness to travel around the globe to work with clients and BCG teams. At times, this role involves significant travel to client sites. The amount of travel will depend on client needs and nature of projects
Additional info
What We Offer:
At BCG, we care about our people, and offer best in class benefits to support you personally and professionally throughout your different life experiences including:
An opportunity to work organically across disciplines and across BCG, we offer a unified and unrivaled opportunity that combines strategic thinking with hands-on applications.
A unique experience to work alongside a team of passionate and driven problem-solvers with a mission to deliver innovative and valuable digital solutions in a supportive environment. BCG pioneered strategy consulting more than 50 years ago, and we continue to innovate and redefine the industry. We offer multiple career paths for the world's best talent to have a real impact on business and society. As part of our team, you will benefit from the breadth and diversity of what we are doing today and where we are headed next. We count on your authenticity, exceptional work, and strong integrity. In return we are committed to supporting you in discovering the most fulfilling career journey possible-and unlocking your potential to advance the world.
FOR U.S. APPLICANTS:
The base compensation for this role is $190,000 in USD. In addition to your base salary, you will also be eligible for an annual discretionary performance bonus and BCG's Profit Sharing and Retirement Fund (PSRF) contribution. BCG also provides a market leading benefits package described below. At BCG, we are committed to offering a comprehensive benefit program that includes everything our employees and their families need to be well and live life to the fullest. We pay the full cost of medical, dental, and vision coverage for
employees - and their eligible family members. That's zero dollars in premiums taken from employee paychecks.
All our plans provide best in class coverage:
Zero-dollar ($0) health insurance premiums for BCG employees, spouses, and children
$10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugs
Dental coverage, including up to $5,000 (USD) in orthodontia benefits
Vision insurance with coverage for both glasses and contact lenses annually
Reimbursement for gym memberships and other fitness activities
Fully vested retirement contributions made annually, whether you contribute or not
Generous paid time off including vacation, holidays, and annual office closure between Christmas and New Years
Paid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursement
Employees, spouses, and children are covered at no cost. Employees share in the cost of domestic partner coverage.
Employees, spouses, and children are covered at no cost. Employees share in the cost of domestic partner coverage.
To learn more about our employee benefit please check our BCG Benefits page.
Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.
BCG is an E - Verify Employer. Click here for more information on E-Verify.