Senior IT GRC Consultant

KPMG Azerbaijan

Location
Baku
Employment
Full-time
Level
Supervisor
Category
Security
First seen

Description

We are seeking an experienced Cyber Security Governance Senior Consultant with a strong background in cybersecurity governance, risk, and compliance (GRC) to join our consulting practice.

The successful candidate will support and lead cybersecurity advisory engagements focused on IT governance, regulatory compliance, and security frameworks, while progressively transitioning into a Manager-level role responsible for engagement delivery, client relationship management, and team leadership.

This role requires experience in IT General Controls (ITGC), information security governance frameworks, and resilience programs, including ISO/IEC 27001, NIST Cybersecurity Framework, Business Continuity Planning (BCP), and Disaster Recovery Planning (DRP).

Cybersecurity Governance & Compliance

Deliver cybersecurity governance and compliance engagements, including gap assessments, maturity assessments, and control framework implementations

Perform IT General Controls (ITGC) reviews covering access management, change management, and IT operations controls

Conduct information security assessments aligned with ISO/IEC 27001, NIST CSF, and related regulatory requirements

Support organizations in establishing information security governance structures, policies, and control frameworks

Risk Management & Advisory

Identify and assess cybersecurity risks, control deficiencies, and governance gaps across IT environments

Develop risk mitigation strategies, remediation roadmaps, and security improvement programs

Assist clients with security policy development, control design, and regulatory compliance initiatives

Business Continuity & Resilience

Design and assess Business Continuity Plans (BCP) and Disaster Recovery Plans (DRP)

Evaluate organizational resilience capabilities including incident response, recovery strategies, and crisis management processes

Client Engagement Delivery

Lead key workstreams within cybersecurity consulting engagements

Prepare executive-level reports, risk assessments, and security improvement recommendations

Present findings and recommendations to senior management and executive stakeholders

Leadership & Team Development

Mentor junior consultants and support capability development within the cybersecurity governance team

Contribute to methodology development, proposal preparation, and practice growth initiatives

Progressively assume responsibilities aligned with Manager-level engagement leadership

Continuous Learning

Grow professionally with internal and external training programs, certifications, and opportunities to develop both soft and technical skills.

Bravo Recognition Program

Be recognized for your outstanding contributions through our internal recognition program.

Health & Life Insurance

Access comprehensive medical services and life insurance coverage.

Annual Bonuses

Performance-based bonuses rewarding your achievements and contribution to team success.

Exclusive Discounts

Special corporate discounts across various services.

Requirements

Bachelor’s or Master’s degree in Information Security, Computer Science, Information Systems, or relevant experience

2–5 years of experience in cybersecurity consulting, IT audit, or information security governance

Hands-on experience with GRC programs and IT control frameworks

Strong knowledge of ISO/IEC 27001, NIST Cybersecurity Framework, and IT General Controls (ITGC)

Experience with Business Continuity Planning (BCP) and Disaster Recovery Planning (DRP)

Proven ability to perform security assessments and translate regulatory requirements into operational controls

Strong analytical, communication, and stakeholder management skills

Apply at the source

This role was published by KPMG Azerbaijan and listed via Kpmg. Applications are handled there, not on this site.

View & apply on kpmgcca.global.huntflow.io ↗