Job Description
Job Title:  Enterprise Cybersecurity Consultant
Posting Start Date:  9/10/26
Job Description: 

JOB PURPOSE

The Enterprise Cybersecurity Consultant is a seasoned cybersecurity professional who takes on advanced technical tasks and also plays a leadership role within the team (short of formal management). In addition to performing complex Risk analyses and incident response tasks, the Consultant leads initiatives such as comprehensive risk assessments, security architecture reviews, Identity and Access Certifications, and the development of security policies. They mentor junior staff, translate technical findings into reports for business or management, and serve as a key advisor on cyber risks. At this level, the focus expands beyond execution to include planning, coordination, and ensuring that security operations align with organizational risk management and compliance objectives. 

 

ROLES AND RESPONSIBILITIES

Cybersecurity Governance

  • Contribute to the development and enhancement of cybersecurity frameworks, operating models, and governance structures.
  • Assist in drafting and reviewing enterprise cybersecurity policies, procedures, and standards to align with Haboob's objectives and external requirements.
  • Participate in governance forums or working groups to provide input on cybersecurity initiatives and strategic planning.
  • Support the development of cybersecurity metrics and dashboards for oversight and board-level reporting.

 

ROLES AND RESPONSIBILITIES

Cybersecurity Compliance

  • Conduct gap assessments against national cybersecurity regulations (e.g. NCA ECC, CCC, DCC) and international standards (ISO 27001, NIST, etc.).
  • Support internal and third-party cybersecurity audits by collecting evidence and tracking remediation actions.
  • Work with internal stakeholders to ensure timely resolution of compliance issues.
  • Maintain awareness of changes in regulatory and compliance requirements and contribute to updating internal controls accordingly.

 

ROLES AND RESPONSIBILITIES

Cyber Risk Management

  • Lead risk assessments on major changes, business initiatives, or technology deployments.
  • Identify control gaps and evaluate their potential impact on business operations and data confidentiality, integrity, and availability.
  • Propose risk treatment plans and monitor the execution of mitigation activities in coordination with IT and business units.
  • Maintain a comprehensive cybersecurity risk register to document identified risks, risk analysis results, mitigation plans, and status updates. Regularly report on key cybersecurity risks, risk trends, and mitigation progress to the Enterprise GRCC Director and senior management, ensuring informed decision-making.
  • Conduct Third-party risk assessments on all contractors, vendor, and partners working with Haboob internally or externally. 
  • Keep a current understanding of Haboob context and industry trends and best practices in cyber risk management (e.g. new risk assessment methodologies, threat intelligence insights) and incorporate relevant improvements into Haboob’s risk management processes.

 

ROLES AND RESPONSIBILITIES

Security Operations Oversight

  • Review security monitoring reports, event logs, and alerts from the SOC and ensure appropriate triage and escalation of incidents.
  • Oversee vulnerability assessment and penetration testing (VAPT) engagements by reviewing scope, evaluating reports, and coordinating remediation with IT.
  • Assist in investigation of cybersecurity incidents, ensuring lessons learned are documented and controls are enhanced.
  • Conduct reviews or audits of security tool configurations and deployments (e.g. DLP, EDR) for compliance with policies.
  • Provide advisory to business units and IT on embedding security in projects and change requests.

 

ROLES AND RESPONSIBILITIES

Stakeholder Engagement and Advisory

  • Act as the Cybersecurity point of contact and checker on all technology and data related projects and changes within Haboob environment.
  • Act as a point of contact for cybersecurity-related queries from internal departments.
  • Collaborate with Data Management, IT Infrastructure and security, and other teams to align cybersecurity controls and objectives.
  • Deliver awareness sessions and technical guidance to raise the cybersecurity maturity of other teams.
  • Conduct Tabletop Exercises and workshops with Haboob Stakeholders.

 

JOB QUALIFICATIONS AND REQUIREMENTS

Knowledge and Experience

  • A minimum of 4 years of experience in cybersecurity roles
  • Deep knowledge in cybersecurity domains such as GRC, Security Architecture, and vulnerability management.
  • Experience overseeing or working closely with security operations (SOC) and vulnerability management functions. Ability to interpret technical security reports
  • Experience with ISO 27001, NIST CSF, and NCA frameworks.
  • Excellent analytical and problem-solving skills, with a track record of assessing complex security issues, prioritizing risks, and implementing effective security solutions.
  • Strong communication and leadership capabilities.

Education and Certifications

  • Bachelor’s degree in Cybersecurity or related field.
  • Professional certifications: CISSP, CRISK, GIAC (GCIH, GCIA, etc.) or equivalent.

 

Competencies