Sap Grc/ It Risk Senior Consultant I

National General Holdings Corp

Multiple Locations
On-site
Cyber risk assessment methodologies
Nist csf, nist sp 800-53, iso/iec 27001
Global and regional cybersecurity regulations
Allstate is seeking a Senior Consultant for Cybersecurity Governance, Risk Management, and Compliance (GRC) to enhance their cybersecurity posture and ensure alignment with regulatory standards. The role requires significant experience in cyber risk assessment and the ability to communicate complex risks in a business-relevant manner

Job Summary

  • The role partners closely with technology, business, legal, compliance, privacy, and internal audit teams to ensure cybersecurity risks are identified, assessed, communicated, and managed in alignment with regulatory requirements, industry standards, and organizational risk appetite.
  • Lead and execute enterprise, business-unit, and technology-specific cyber risk assessments, including inherent risk identification, control adequacy evaluation, residual risk determination, and risk prioritization.
  • Design, enhance, and execute cybersecurity governance programs, policies, standards, procedures, and control requirements aligned to business and regulatory needs.

Matching Summary

Match Score: 85

Allstate is seeking a Senior Consultant for Cybersecurity Governance, Risk Management, and Compliance (GRC) to enhance their cybersecurity posture and ensure alignment with regulatory standards. The role requires significant experience in cyber risk assessment and the ability to communicate complex risks in a business-relevant manner.

Skills & Requirements

Must-have

  • Cyber risk assessment methodologies
  • NIST CSF, NIST SP 800-53, ISO/IEC 27001
  • Global and regional cybersecurity regulations
  • Risk-based remediation strategies
  • Translate technical risks into business impact

Nice-to-have

  • Trusted risk advisor
  • Influence without authority
  • Pragmatic control improvements

Key Requirements

  • 10–14 years of progressive experience
  • Experience in large, complex, and regulated environments
  • 4 year Bachelors Degree
  • CRISC, CISM, CISSP, CISA
  • ISO 27001 Lead Implementer / Auditor
  • Relevant cloud or risk certifications

Work Rights

Not specified

Tailored Resume

Cover Letter