Cybersecurity - Financial Services (FSO) - Senior Consultant
EY Ernst & Young GmbH Wirtschaftsprüfungsgesellschaft
Sie werden zur Karriereseite des Arbeitgebers weitergeleitet.
Details
- Unternehmen
- EY Ernst & Young GmbH Wirtschaftsprüfungsgesellschaft
- Standort
- Eschborn
- Bereich
- Steuerberater & WP
- Vertragsart
- Vollzeit
- Unternehmensgröße
- Sehr große Unternehmen (>1.000 MA)
- Aktualisiert
- 18. September 2026
Interesse an dieser Stelle?
Klicken Sie auf "Jetzt bewerben" um direkt zur Stellenausschreibung des Arbeitgebers zu gelangen. Die Bewerbung erfolgt direkt beim Arbeitgeber.
Zur Bewerbung →Sie suchen Kanzlei-Profis? Zusammenarbeit anfragen →
Stellenbeschreibung
Cybersecurity - Financial Services (FSO) - Senior Consultant
Location: Toronto
Other locations: Primary Location Only
Salary: Competitive
Date: Sep 11, 2026
Job description
Requisition ID: 1744297
At EY, were all in to shape your future with confidence.
Well help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.
Join EY and help to build a better working world.
We are seeking a Senior Consultant to support the delivery of enterprise cybersecurity assessments. This role combines cybersecurity advisory, structured assessment, stakeholder engagement, analytical judgment, and executive reporting. The successful candidate will independently own assigned cybersecurity domains, assess the maturity of relevant capabilities, and translate complex technical and operational information into clear findings and practical improvement recommendations.
The opportunity
The Senior Consultant will work with large, complex organizations to evaluate how effectively cybersecurity capabilities are designed, implemented, governed, measured, automated, and sustained. The role is broader than compliance mapping or control testing. It requires the ability to understand how people, process, technology, governance, and risk considerations work together across an enterprise cybersecurity program.
This job posting relates to an existing vacancy within our organization.
Key responsibilities
Own assigned cybersecurity domains through assessment planning, artifact requests, document review, stakeholder workshops, maturity analysis, quality review, and reporting.
Translate framework outcomes and other industry guidance into practical, capability-based assessment criteria appropriate to the client environment.
Review policies, standards, procedures, operating models, architectures, inventories, metrics, reports, and technical documentation to understand the current state.
Plan and facilitate interviews and workshops with cybersecurity leaders, architects, engineers, risk teams, and control or capability owners.
Ask targeted follow-up questions, appropriately challenge unsupported statements, and identify where further validation is required.
Synthesize stakeholder input, artifacts, metrics, and technical context into consistent and defensible maturity conclusions.
Draft concise current-state observations, maturity rationales, opportunities for improvement, risk implications, and practical recommendations.
Connect detailed domain findings to broader themes, business impacts, target-state considerations, and prioritized improvement actions.
Prepare clear, executive-ready materials and support presentations to client leadership.
Guide Consultants, review draft analyses and workpapers, maintain consistency across domains, and escalate issues early.
Contribute to the refinement of assessment methodologies, capability libraries, reporting approaches, and reusable intellectual property.
To qualify for the role you must have
Hands-on experience delivering cybersecurity maturity, capability, risk, controls, assurance, or transformation assessments.
Demonstrated ability to independently lead a workstream or assessment domain from information gathering through final reporting.
Working knowledge of common cyber and IT frameworks, with the ability to explain how framework outcomes apply to real cybersecurity capabilities and operating environments.
Broad understanding across multiple cybersecurity domains, with meaningful depth in at least two or three areas.
Auszug aus der Stellenausschreibung des Arbeitgebers. Die Bewerbung erfolgt über "Jetzt bewerben".
Sie sind der Arbeitgeber dieser Stelle? Die Stelle ist bereits besetzt, veraltet oder soll aus anderen Gründen entfernt werden? Stellenanzeige kostenlos entfernen lassen →