Senior Associate, Cyber Security Advisory (CSA)
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
In today’s dynamic environment, business leaders face constantly shifting risks. Riveron helps organizations implement leading governance, risk and compliance practices by combining deep expertise with pragmatic partnership, using a hands-on approach to understand the specific needs of the organization and create tailored solutions to address key compliance risks.
Our Cyber Security Advisory (CSA) services include building GRC/Cybersecurity programs from the ground up, framework readiness, design and maintenance of critical security domains, managed internal controls testing and monitoring, co-sourced/outsourced internal audit, segregation of duties and access risk review, policy and procedure development, enterprise risk management, and IT and cybersecurity risk assessment.
The Senior Associate level position for Riveron’s CSA group will work collaboratively with senior team members and provide guidance, coaching, and direction. Senior Associates are expected to conduct the majority of day-to-day project management activities on all of their engagements, including project plan development, reviewing staff work for quality, status updates to clients and mentoring Associates. The role includes leading the implementation of GRC/Cybersecurity programs, assessing the design and operating effectiveness of IT General Controls (ITGC), developing and executing remediation roadmaps, directing incident response tabletop exercises, and performing IT risk assessments.
What You Have:
- Bachelor's and/or Master’s degree in Information Technology (IT), Computer Information Systems (CIS), Management Information Systems (MIS), or a related field
- Relevant certification preferred, such as CISA, CISM, CISSP or AWS Cloud Practitioner
- 3+ years of experience in an IT Audit, Cybersecurity or IT Risk Advisory role
- Demonstrated knowledge of compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, CMMC
- Familiarity with GRC solutions, tools, and technologies
Who You Are:
- You have a passion for developing and maintaining client relationships
- You get the job done and have fun doing it
- You communicate skillfully with a variety of audiences and can create compelling stories from data
- You thrive in an ever-changing, dynamic work environment
- You readily identify problems and instinctively look for solutions
- You enjoy participating in internal and external company initiatives such as community service, training, recruiting, and firm events
What You’ll Do:
- Lead client engagements implementing cybersecurity programs aligned with SOC 2, ISO 27001, and other security and privacy frameworks
- Conduct compliance readiness assessments and assist with external audits
- Maintain day-to-day compliance, security, and privacy operations, including incident response tabletop exercises and formalizing response and notification procedures
- Assist clients with key security and compliance initiatives, including risk assessments, business continuity planning, cloud configurations, user access reviews, and asset inventories
- Implement and manage GRC platforms (e.g., Drata GRC platform, Vanta compliance automation platform, Tugboat Logic platform)
- Perform vendor risk reviews, including analyzing SOC 2 reports and managing security questionnaires
- Develop and maintain security policies and standard operating procedures (SOPs) across key domains
- Coordinate project activities, set priorities, and track progress against timelines, budgets, and deliverables
- Communicate regularly with clients to manage expectations and provide project status updates
- Deliver clear written and verbal presentations, including recommendations for operational and financial improvements to executive stakeholders
- Stay current on emerging risks and evolving control practices
- Build and maintain strong industry relationships to support long-term business development
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at Riveron
Explore Top Companies in this Space
JustMarkets
FinTech / Online Trading / Financial Services
Cobalt Service Partners
Business Services
Superside
Design Services, Technology, Business Consulting
First Help Financial
Financial Services
Riveron
View Company ProfileRiveron is a premier, national business advisory firm that partners with high-growth companies, corporate executives, and private equity firms to navigate incredibly complex financial and operational transformations. Headquartered in Dallas, Texas, the firm bridges the critical gap between traditional accounting and deeply strategic financial consulting. Under the hood, Riveron deploys elite teams of experts to handle massive, high-stakes events like mergers and acquisitions (M&A), Initial Public Offerings (IPOs), complex corporate carve-outs, and enterprise-wide digital infrastructure modernization. Their primary target audience includes CFOs and finance leaders of mid-market to enterprise-level organizations who need specialized horsepower to optimize cash flow, ensure aggressive regulatory compliance, and execute seamless post-merger integrations. What sets Riveron apart in the highly competitive consulting landscape is its deeply agile, multi-disciplinary approach—fusing hardcore accounting technicalities with modern technological agility to drive massive, quantifiable enterprise value creation.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.

