
Manager (Senior Executive) (Cyber) Strategy and Execution - EY Parthenon
- London
- Permanent
- Full-time
- Strong desire to work in a M&A environment operating across the transaction lifecycle, predominantly in the pre deal/diligence phase.
- Knowledge and experience of using recognised cyber standards and frameworks such as ISO27001, NIST CSF, CIS Controls, Cyber Essentials, PCI
- Familiarity with current and emerging regulations such as the EU GDPR, EU AI Act and NIS 2, and an ability to conduct gap assessments and define the impact to the transaction.
- Understanding of key concepts such as privacy and security by design, secure coding especially in the software/product development environment
- Understand how to design an operating model for managing Cyber risk and privacy, optimised for effectiveness and value and evaluate any complexities associated with transitions/roadmaps.
- Effective at leading projects (or significant workstreams) with little to no support
- Leads the development of complete, error-free deliverables (e.g., data books, reports, non-branded deliverables: blueprints, Day 1 plans, board packs, workshop content etc).
- Supports the Engagement Leaders (i.e. Partner, Director or Associate Director) in identifying, scoping, closing opportunities - both in current engagement, and new opportunities.
- Demonstrates strong client influence and relationship management, effectively identifying value creation opportunities and prioritising team efforts based on client needs.
- Proven experience and ability to communicate with clarity and impact to senior stakeholders. This may be demonstrable through leading large projects with senior visibility, success at presenting technical topics to non-technical audiences or speaking at events.
- Stakeholder Management: Collaborate with company management teams and other stakeholders to align on value creation objectives and strategies.
- A history of successful project delivery in corporate businesses where you are responsible for managing project team members and vendors Have a broad range of cyber experience including, risk management, cyber controls, standards, resilience, and response etc.
- Professional services / consulting experience within transactions: ideally due diligence, value creation, carve-out or integrations experience; or
- Deep understanding of one or more core aspects of a cyber function (e.g. governance, risk, and compliance, CISO, AppSec, compliance, privacy etc).
- Have deep knowledge of cyber governance and risk controls within businesses and how this can support and safeguard business operations.
- Experience in supporting sales and business development processes for professional services projects in a large-scale consulting environment.
- Experience in providing cyber and privacy advice to senior stakeholders; transactions/M&A experience would be advantageous.
- Ability to design a roadmap to optimise performance often with financial/budgetary limitations.
- A high-level understanding of the secure development of applications throughout the SDLC
- An understanding of how private equity firms are structured to buy and sell assets in their portfolio.
- Cyber or privacy certification such as CISSP, CISM, CIPP/E, CIPM etc.