Principal Strategic Security Consultant, Executive Services, Mandiant Consulting
Summary
Advises C-suite executives on cybersecurity strategy, leads high-profile consulting engagements, and designs executive table-top exercises to test incident response capabilities.
- Serve as a trusted advisor to C-suite executives and boards, translating complex technical risks into business impacts and security roadmaps.
- Lead and manage high-profile executive consulting engagements, including security program assessments and AI risk advisory services.
- Design and facilitate complex executive and technical table-top exercises to test and improve organizational incident response and crisis management capabilities.
- Drive business development for services, including scoping complex transformation programs and developing thought leadership on emerging risks like AI.
- Foster innovation by developing out-of-the-box solutions for novel security issues, collaborating across the Google ecosystem, including the Office of the CISO (OCISO) and Professional Services Organization (PSO) to deliver results on large, complex engagements.
Minimum qualifications:
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.
- 8 years of experience assessing and developing cybersecurity solutions across multiple security domains.
- Experience conducting executive and technical table-top exercises and assessing security program maturity against industry frameworks (e.g., NIST CSF, ISO 27001).
- Experience engaging with, and presenting to, executive leaders and stakeholders.
Preferred qualifications:
- Certification in one of the following: ISACA (CISM, CRISC); ISC2 (CISSP, CCSP); SANS-GIAC (GSLC, GSTRT, GCIH).
- Experience with technologies such as Google SecOps, Google Threat Intelligence, Wiz Products, Google Cloud Platform and its related cyber security products.
- Proficiency in one of the following languages: Mandarin, Korean or Japanese is preferred.
- Proven ability to advise on AI Risk and AI security frameworks (e.g., Google SAIF, NIST AI RMF) and provide technical leadership across security operations and cloud security domains.