careertakescareertakes

Security Risk & Engineering - Tech and Cyber Risk & Compliance - Experienced Associate

Confidential ClientConsulting
Entry LevelFull-timeHybrid$167,369
Manhattan, New York
15 Hours Ago

The Security Risk & Engineering Experienced Associate at Confidential Client supports clients in navigating complex regulatory environments by conducting compliance risk assessments, implementing compliance frameworks, and performing audits. This role involves collaborating with teams to deliver cybersecurity risk management solutions while continuously developing technical knowledge and client relationship skills in a hybrid work setting.

Boost your chances. Upload your resume to see your match score.

Unlock Match Rate
Description

About Careertakes

👉 Important disclosure: Careertakes is a third-party recruiting platform supporting this hiring process. If selected, you will be employed directly by our client, Legal.

Applicants for this role may also receive access to additional matched opportunities through the Careertakes platform.


What You’ll Do

As an experienced associate on the Security Risk & Engineering — Tech and Cyber Risk & Compliance team you will help clients identify, measure, and reduce cybersecurity and compliance risk. Day-to-day you will:

  • Support clients in navigating regulatory requirements and strengthening internal controls
  • Conduct compliance and cybersecurity risk assessments and translate findings into prioritized remediation plans
  • Assist with implementation of compliance frameworks and programs aligned to regulatory requirements
  • Perform compliance audits, control testing, and reviews to validate adherence to standards
  • Contribute to cybersecurity risk management engagements, collaborating with technical and advisory teams
  • Analyze client data to inform recommendations and prepare summaries for stakeholders
  • Help prepare compliance reports, policies, and documentation required by regulators or senior management
  • Learn and apply ISO/IEC 27001 and the NIST Cybersecurity Framework in client assessments
  • Communicate findings clearly to both technical and non-technical audiences and support client-facing deliverables

Who We’re Looking For (Minimum Qualifications)

  • Bachelor’s degree (any discipline)
  • At least 1 year of relevant experience in cybersecurity risk, compliance, audit, or a closely related function
  • Familiarity with cybersecurity risk management concepts and control frameworks
  • Basic experience applying ISO/IEC 27001 and/or NIST Cybersecurity Framework (CSF)
  • Strong analytical skills; ability to work with data to identify risk trends and support recommendations
  • Solid written and verbal communication skills and a client-service mindset
  • Authorization to work in the U.S. (candidates requiring employer sponsorship should check client policy)

Preferred / Differentiating Experience

  • Experience implementing or operating compliance programs or controls
  • Hands-on involvement in compliance audits or evidence collection
  • Exposure to Data Protection Management (DPM) processes and compliance reporting
  • Practical experience translating technical risk findings into business-focused recommendations

Compensation & Benefits

  • Salary range: $63,000 — $140,000 per year. Actual pay will depend on experience, skills, location, and applicable law.
  • Eligible for an annual discretionary bonus where applicable.
  • Our client offers a benefits package that may include medical, dental, vision, retirement savings (401k), paid time off, and other programs — benefits vary by location and role.

Location & Work Model

  • Location: Grand Central, NY (10176) — hybrid work model.
  • Candidates must be based in the U.S. or otherwise eligible to work in the U.S. for this position.
  • Background checks and other pre-employment screening may be required in accordance with applicable state and local laws. For candidates in jurisdictions with fair chance/hiring laws, conviction records will be considered in compliance with those laws.

Recruiting Process & Candidate Experience

Careertakes will coordinate initial outreach and screening. If your background is a match, you will be introduced to our client for interviews and any required assessments. Careertakes follows best practices used by third-party recruiters to keep communications timely and transparent throughout the process.


Equal Opportunity & Hiring Transparency

Careertakes and our client are Equal Opportunity Employers committed to building a diverse and inclusive workforce. We prohibit discrimination or harassment of any kind. To support a fair and efficient hiring process, AI tools may be used to assist with application review or resume screening. These tools do not replace human decision-making. Final hiring decisions are made by people.

If you have questions about how your data is used, please contact us directly.

Negotiate a higher salary! Check the salary ranges for this job type in your area.

View My Salary Range