JobsGlobal Cybersecurity Director - Risk & Compliance
Boston Consulting Group logo

Global Cybersecurity Director - Risk & Compliance

Boston Consulting Group

Location

Boston, MA, Washington, DC

Type

Full-time

Posted

8/19/2026

Compensation

$176,000 per year

Undergraduate with 5+ Years of Experience
Approval 95.7%·Filings 529·New hires 262·
Established Sponsor
·FY 2025

Job description

The Director of Federal Security Governance, Risk & Compliance (SGRC) at Boston Consulting Group leads the strategy and governance for cybersecurity and compliance within federally regulated environments. This role focuses on driving risk governance, regulatory compliance, and control maturity across BCG Federal offerings. The Director collaborates closely with Security Architecture to translate complex regulatory requirements into actionable policies and controls. Additionally, this position pioneers Federal AI Governance, ensuring secure adoption of emerging technologies.

Requirements

  • 10+ years of experience in cybersecurity, information security, GRC, audit, compliance, risk management, or technology governance environments.
  • Demonstrated experience leading federal cybersecurity compliance programs, preferably supporting CMMC Level 2, NIST 800-171/53, and FedRAMP.
  • Direct experience leading or materially supporting external assessments, regulatory inquiries, and audit readiness efforts.
  • Proven track record establishing AI Security Governance and evaluating machine learning/GenAI security risks.
  • Strong organizational change management experience, including leading cross-functional process adoption and stakeholder readiness.
  • Excellent written and verbal communication skills, including experience developing executive briefings and management-level reporting.
  • Ability to obtain and maintain a U.S. Government Secret Clearance where required.

Responsibilities

  • Lead the Federal GRC pillar strategy, roadmap, and governance structure across BCG Federal.
  • Direct enterprise compliance initiatives supporting DFARS, CMMC Level 2, NIST 800-171, FedRAMP, and AI governance.
  • Partner closely with Security Architecture to align policies with technical engineering.
  • Own organizational readiness for federal assessments and certifications, including audit defense and executive reporting.
  • Establish and mature Federal AI Governance, including risk methodologies and safety frameworks.
  • Own the federal risk register governance model, including risk identification and mitigation planning.
  • Lead cybersecurity reviews of federal contracts, RFPs, and third-party vendor risk management.
  • Lead organizational change management for federal cybersecurity and compliance initiatives.
  • Oversee continuous monitoring governance and management reporting.
  • Define and deliver executive-level metrics, dashboards, and compliance status updates.
  • Lead, mentor, and develop GRC personnel while improving team operating rhythms.

Benefits

  • Employees at BCG are often offered comprehensive medical, dental, and vision coverage with no monthly premiums and $10 copays, plus mental-health resources (EAP, telehealth, meditation app), medical second opinions, FSAs, annual fitness reimbursement, and life and disability insurance. Compensation typically includes competitive pay, annual bonuses, generous retirement contributions with a 401(k), and robust time off, including vacation, holidays, sick leave, bereavement, and enhanced parental leave up to 22 weeks for birth parents and 14 weeks of bonding for all new parents. Additional perks include adoption and fertility assistance, transportation benefits, backup child and elder care, and flexible hybrid or remote work options.

Is this posting expired or inaccurate?