
Consultant - Cyber Security, Insider Threat
- Toronto, ON
- Permanent
- Full-time
What you will do
- Gather, analyze and maintain data to support investigative, risk and mitigation efforts.
- Advising on digital and technical aspects of cyber security Insider Threat programs
- Play an integral role in shaping insider risk management solutions for diverse clients, driving industry innovation through comprehensive consulting projects
- Collaborate with clients to craft high-impact deliverables that address insider risks, including comprehensive risk assessment reports, actionable frameworks, robust governance tools (e.g., RACI matrices, operating models), detailed procedure documents, and compelling executive presentations that empower decision-makers to safeguard their organizations
- Provide critical support in project management by assisting with tasks such as scheduling meetings, maintaining centralized document repositories, preparing polished and actionable meeting minutes, and tracking budgets—all while ensuring smooth collaboration and team alignment to drive successful project delivery.
- Support with the growth and innovation of KPMG’s Insider Threat practice by contributing to impactful thought leadership publications, conducting in-depth research on emerging risks, and crafting compelling proposals that position KPMG as a leader in insider threat advisory services
- Remain up to date on leading practices for insider risk management and real-world incidents across various industries (e.g., financial services, energy, healthcare)
- Gain exposure to insider risk management, a dynamic security domain of growing importance – fostering continuous professional growth
- Educational background in Business, Information Security, Computer Science, or Criminal Justice
- A minimum of two years of previous professional experience in consulting, security, forensics, or risk management (e.g., Corporate Security, Cybersecurity)
- Certifications such as Certified Insider Threat Program Manager (CITPM), Certified Insider Threat Analyst (CITA), Certified Information Systems Security Professional (CISSP) are an asset – candidates with equivalent experience or actively working towards the certification are welcome to apply
- Considered an asset: Familiarity with following frameworks or similar: NIST Cybersecurity Framework, CERT Insider Threat Program Best Practices, MITRE ATT&CK Framework
- Already obtained or ability to obtain Secret Clearance
- Strong analytical and problem-solving skills (i.e., ability to analyze data, critical thinking)
- Proficiency in various Microsoft Office tools (e.g., PowerPoint, Excel, Word)
- Considered an asset: Experience with visualization tools (e.g., PowerBI, Tableau) to transform data in actionable insights through compelling visuals
- Willingness to learn and be innovative