Cybersecurity, Technology Risk, and Privacy (IT Audit) – Senior Consultant


  • Full Time

As CohnReznick grows, so do our career opportunities. As one of the nation’s top Professional Services and Business Advisory firms, we foster teams in Advisory, Assurance, and Tax services that value innovation and collaboration in everything they do!

We currently have an exciting career opportunity for an Cybersecurity, Technology Risk, and Privacy Senior Consultant to join the team in our Cybersecurity, Technology Risk, and Privacy practice


Work-Life Blend: Our team members accrue up to 30 days of PTO depending on their level & take advantage of 17 paid holidays including two weeks off a year when all CR Team members take time off together (July 4th week and Thanksgiving week).
Parental Leave: Our expanded leave is up to8 weeks following the birth or placement of a child.
Flexibility: Our team members have options of being fully virtual, hybrid or in the office based on theirs and the business needs. All full time or part time CR team members are offered a home office stipend upon onboarding to help them get setup at home.
Diversity & Inclusion: Whether it’s through participation in our Employee Resource Groups such as CR Blac, CR PRIDE, WomenCAN, VMA, CR Green, Raza or AAPI or through CR Cares, our team members give back to the communities they live and work in.
Total Rewards: We offer a competitive annualcompensation, annual discretionary performance bonus, referral & client bonuses, spot bonus opportunities, 401k match with profit sharing contributions and incentive and support towards achieving the CPA licensure.
Learning & Development: Our team members have access to learning opportunities focusing on technical, leadership, and success skills that support their growth and career advancement, not to mention the necessary resources to meet their compliance needs.
Wellness resources : Our virtual care programs such as Headspace, Spring Health, Prevention Cloud, and Peerfit help support our team members’ mental and physical well-being.
Performance Coach: Each CR Team member is aligned to a Performance Coach who will support them in establishing their goals and provide guidance and support along their career path of choice.
The CR Friend: Your CR Friend will serve as a familiar face when you first join the firm and is someone you can always reach out to.


Responsibilities include but not limited to: Participate in cybersecurity, technology risk, and privacy assessments and audits against industry standards such as NIST, ISO, COBIT, GDPR, HIPAA, CCPA, CMMC, etc.
Work with clients in mitigating and remediating cybersecurity, technology, and privacy risks
Conduct cloud security reviews and network security assessments
Plan, execute, direct and complete IT general controls, cybersecurity, and privacy assessments and technical IT audits
Assist in creating strategies related to cybersecurity, technology risk, and privacy risk management
Assist in designing test plans to evaluate control objectives and identify weaknesses in the information technology control environment
Assist in creating cybersecurity, technology risk, and privacy solutions leveraging different industry frameworks and emerging technologies such as AI, analytics, etc.
Assess emerging technologies such as blockchains, IoT, ML, AI for cybersecurity and privacy risks
Leverage various technology risk privacy frameworks to be able to help implementation of these engagement starting with an assessment process
Work with various proposal teams to develop proposals related to cybersecurity, technology risk, and privacy services
Work with various partners and technology vendors to develop joint solutions.

The successful candidate will have: Bachelor’s degree in Cybersecurity, Management Information Systems, Computer Science, Engineering, Finance, with proper technical focus and experience; MS or MBA a plus
CISSP, CISA, CIPP, CEH, GIAC, CISM, CRISC, MCSE, or equivalent certification a plus
Hands-on experience with cloud architecture and security, security solutions including endpoint security, vulnerability management, network security technologies such as firewalls and IPS/IPS, content filtering, authentication systems, log management, and encryption a plus
2+ years of hands-on technical experience in IT audits; cybersecurity strategy, assessment and design; vulnerability assessment, and/or privacy engagements
Knowledge of IT policy and procedure development
Knowledge and experience with security and privacy strategies and/or architecture preferred
Experience with security architecture including PCI a plus
Ability to multi-task and prioritize in a rapidly growing, fast-paced interactive, results-based team environment
Must have excellent writing skills and the ability to communicate technical details in simple terms
Excellent organizational skills and strong attention to detail
Strong analytical and problem-solving skills
Produce high-quality deliverables, reports, and presentations for client management and technology partners.
After reviewing this job posting, are you hesitating to apply because you don’t meet every single requirement? Studies have shown that we are less likely to apply to jobs unless we meet every single qualification. At CohnReznick, we are dedicated to building a diverse, equitable, and inclusive workplace, so if you’re excited about this role but your experience doesn’t align perfectly with every qualification in the job description, we still encourage you to apply.

You may be just the right candidate for this or one of our other roles.

In New York City, the salary range for a Senior Consultant is $85,000.00 to $135,000.00. Salary is one component of the CohnReznick total rewards package, which includes a discretionary performance bonus, generous paid time off, expanded and inclusive parental benefits, and access to best-in-class learning and development platforms, to name a few. To learn more about life at CohnReznick, visit

CohnReznick is an equal opportunity employer, committed to a diverse and inclusive team to drive business results and create a better future every day for our team members, clients, partners, and communities. We believe a diverse workforce allows us to match our growth ambitions and drive inclusion across the business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability. For more information, please see Equal Employment Opportunity Posters

If you are an individual with a disability in need of assistance at any time during our recruitment process, please contact us at Please note: This email address is reserved for individuals with disabilities in need of assistance and are not a means of inquiry about positions or application statuses.

CohnReznick does not accept unsolicited resumes from third-party recruiters unless such recruiters are currently engaged by CohnReznick Talent Acquisition Team by way of a written agreement to provide candidates for a specified opening. Any employment agency, person or entity that submits an unsolicited resume does so with the understanding that CohnReznick will have the right to hire that applicant at its discretion without any fee owed to the submitting employment agency, person or entity.


Job Overview
Your subscription could not be saved. Please try again.
Your subscription has been successful.

Receive privacy jobs in your mailbox twice per week:

We use Sendinblue as our marketing platform. By Clicking below to submit this form, you acknowledge that the information you provided will be transferred to Sendinblue for processing in accordance with their terms of use