Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
NCC Group

Senior Security Consultant – Privacy and Assurance

NCC Group

. Lead and deliver client engagements across privacy, cybersecurity, risk, and assurance domains .

Posted 10/8/2026full-timeNew York • United StatesSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in privacy, cybersecurity, and risk management, with a strong focus on compliance with US privacy regulations such as CCPA/CPRA. Proven ability to deliver assessments, develop methodologies, and mentor teams while maintaining high-quality client engagements.

Highest-signal resume keywords
Privacy AssessmentsCybersecurity AssessmentsRisk ManagementHITRUST ComplianceCIPP/US Certification

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Privacy RegulationsRisk AssessmentsCompliance ReviewsAudit SupportData Protection InitiativesGovernanceNIST CSFHIPAA ComplianceCIS ControlsISO 27001
Soft Skills
Project PlanningOrganizational SkillsMentoringClient Relationship ManagementCommunication
Certifications & Qualifications
CIPP/USCIPMCISSP
Industry Keywords
PrivacyCybersecurityRisk ManagementAssuranceRegulated IndustriesComplianceEmerging ThreatsStakeholder EngagementQuality ReviewsMultidisciplinary Collaboration

Tech Stack

Tools & technologies
Cyber Security

About the role

Key responsibilities & impact
  • Lead and deliver client engagements across privacy, cybersecurity, risk, and assurance domains
  • Deliver privacy assessments, compliance reviews, cybersecurity assessments, risk assessments, and audit support activities
  • Provide subject matter expertise on US privacy regulations, including CCPA/CPRA and emerging federal and state privacy laws
  • Monitor regulatory developments and provide practical compliance and risk recommendations
  • Deliver assurance and compliance engagements against HITRUST, HIPAA, NYDFS, NIST CSF, NIST RMF, and related requirements
  • Support business development through engagement scoping, planning, estimation, proposals, SOWs, presentations, and solution development
  • Develop and enhance NCC Group’s US privacy consulting offerings, methodologies, templates, accelerators, and intellectual property
  • Advise clients on privacy and security program design, implementation, and improvement
  • Develop trusted client relationships, identify service expansion opportunities, and support account growth
  • Mentor junior consultants and team members through coaching, technical guidance, quality reviews, and knowledge sharing
  • Produce assessment reports, risk analyses, audit documentation, executive presentations, remediation roadmaps, and compliance recommendations
  • Collaborate with multidisciplinary cybersecurity, privacy, assurance, healthcare, financial services, and risk management teams
  • Maintain current knowledge of privacy, cybersecurity, regulatory requirements, industry trends, emerging threats, and best practices
  • Travel occasionally to client locations for assessments, audits, workshops, and stakeholder interviews

Requirements

What you’ll need
  • Practical experience delivering privacy, cybersecurity, risk, and assurance consulting engagements for clients across regulated industries
  • Experience assessing, implementing, or advising on privacy and security programs, including governance, risk management, compliance, and data protection initiatives
  • Knowledge of US privacy laws and regulations, including CCPA/CPRA and other state privacy requirements
  • Experience conducting privacy, cybersecurity, and compliance assessments against HITRUST CSF, HIPAA, NIST CSF, NIST SP 800-53, NYDFS Cybersecurity Regulation, CIS Controls, and ISO 27001
  • Experience performing risk assessments, developing risk treatment plans, and supporting remediation activities
  • Experience producing reports, presentations, and recommendations for technical and non-technical stakeholders
  • Experience coordinating with legal, compliance, privacy, security, and technology teams
  • Ability to analyze complex regulatory, privacy, and cybersecurity requirements and translate them into actionable business guidance
  • Ability to manage multiple engagements and priorities while maintaining high-quality deliverables
  • Ability to present complex information clearly to executive, operational, and technical audiences
  • Ability to mentor and support consultants and team members
  • Strong project planning and organizational skills
  • One or more relevant certifications, such as CIPP/US (preferred), CIPM, or CISSP

Benefits

Comp & perks
  • Starting at 15 days annual leave, increasing to 20 days with service, plus 3 floating days from day one
  • 401(k) with up to 5% company match
  • Life assurance at 1x annual salary
  • Medical, dental, and vision plans for you and your family
  • Income protection through short- and long-term disability cover
  • Accidental death and disability insurance
  • Opportunity to invest through SAYE and Employee Stock Purchase Plan