1
Job Description
Role: Cyber Manager, Risk Assurance Services
Location: Guernsey or Jersey
Line of Service: External Audit
Grade: Manager
Contracted Hours per Week: 37.5/hours for role
PwC Channel Islands Overview
At PwC CI, we help you build, accelerate, and sustain momentum in a world that never stops
moving. With our tech-forward and people-empowered network, we provide expert assurance,
tax and advisory services to turn challenges into opportunities. Leveraging deep expertise and
advanced capabilities, we ensure you’re ready for any future, helping you act boldly and achieve
real results.
Risk Assurance Services
Our team focuses on helping our clients manage cyber risk on a domestic and global scale.
You’ll work with our clients aligning a number of different cyber, privacy and industry
frameworks and requirements to their business. These include, but are not limited to: NIST
CSF, ISO27001, ISO27005, ISO22301, COBIT, ITIL, NCSC, MCSS, CCM, PCI-DSS, SWIFT
CSP, GDPR, NIS-D, etc. Our team designs, implements, and maintains effective cyber
programs that help our clients manage the risks and regulatory compliance obligations, as well
as control framework commitments to their Board/stakeholders.
We help our clients across the domains of identify, protect, detect, respond and recover by
working closely with PwC UK to deliver operationally critical Managed Cyber Defence and
Identity Management services.
Job Summary:
A career in our Risk Assurance practice as a Cyber Manager will provide you the opportunity to
solve our clients most critical business and data protection related challenges. You will be part
of a growing team driving strategic programs, data analytics, innovation, deals, cyber resiliency,
response, and technical implementation activities. You will have access to not only the top
Cybersecurity, Privacy, and Risk Assurance professionals at PwC, but at our clients and
industry analysts across the globe. You will be part of a team that not only assesses
organisational compliance but helps clients implement solutions and strategically think through
the best way to manage in a cost-effective, yet defensible manner.
Responsibilities:
As a Manager, you'll work as part of a team of problem solvers, helping to solve complex
business issues from strategy to execution. PwC Professional skills and responsibilities for this
management level include but are not limited to:
2
• Pursue opportunities to develop existing and new skills outside of comfort zone.
• Act to resolve issues which prevent effective team working, even during times of change
and uncertainty.
• Coach others and encourage them to take ownership of their development.
• Analyse complex ideas or proposals and build a range of meaningful recommendations.
• Use multiple sources of information including broader stakeholder views to develop
solutions and recommendations.
• Address sub-standard work or work that does not meet firm's/client's expectations.
• Develop a perspective on key global trends, including globalisation, and how they impact
the firm and our clients.
• Manage a variety of viewpoints to build consensus and create positive outcomes for all
parties.
• Focus on building trusted relationships.
• Uphold the firm's code of ethics and business conduct.
Direct Reports:
● This role reports to:
○ Senior Manager, Director, Head of Risk Assurance Services
● Reporting to this role:
○ Senor Associates
○ Associates
Qualifications & Certifications:
Minimum Degree Required:
Bachelor Degree, preferably Information Technology related
Minimum Years of Experience:
5 year(s)
Certification(s) Preferred:
Certified Information Systems Security Professional (CISSP), Certified Information Security
Manager (CISM), ISC2 Certified Information Systems Security Professional (CISSP), ISACA
Certified in Risk and Information Systems Control (CRISC)
Skills & Experience Required:
Demonstrates extensive knowledge and/or a proven record of success in:
• Providing industry-leading practices in cyber risk management and regulatory
compliance.
3
• Leveraging knowledge of common regulatory requirements as well as industry
frameworks such as NIST CSF, ISO27001, COBIT, COSO and PCI.
• Managing and overseeing large projects involving information security, technology risk
management, cybersecurity or cyber risk management.
Demonstrates extensive abilities and/or a proven record of success in:
• Designing and implementing enterprise-wide cyber risk governance frameworks.
• Developing detailed business risk scenarios and cyber threat models.
• Assessing enterprise-wide business risks and cyber threats.
• Designing and implementing cyber risk management controls.
• Monitoring and reporting of cyber risks, threats and vulnerabilities.
• Designing KRIs and metrics to build risk reports for management.
• Developing, implementing and testing cyber resiliency plans.
• Using tools and technology to provide data analytics and business intelligence on cyber
threats, risk and vulnerabilities.
• Developing cyber risk management strategies and operating models for clients.
• Building and operationalising complex cybersecurity and cyber risk management
programs for clients.
• Preparing concise and accurate documents, leveraging and utilizing MS Office and
Google Suite to complete related project deliverables.
• Managing project financials in line with agreed-upon budgets.
• Creating a positive working environment by monitoring and managing workloads of the
team – balancing client expectations with the work-life quality of team members.
• Keeping leadership and engagement management informed of progress and issues.
Travel Requirements:
Up to 25%.
The skills we look for in our people:
All our people need to demonstrate the skills and behaviours that support us in delivering our
business strategy. This is important to the work we do for our business, and our clients. These
skills and behaviours make up our global leadership framework, Evolved PwC Professional.
The Evolved PwC Professional focuses on two core behaviours: Trusted Leadership and
Distinctive outcomes. Trusted Leadership is underpinned by core behaviours that Inspire,
Empower and Evolve, and Distinctive outcomes is underpinned by behaviours that Champion,
Build and Deliver.
Diversity:
We work in a changing world which offers great opportunities for people with diverse
backgrounds and experiences. We seek to attract and employ the best people from the widest
talent pool as well as those who reflect the diverse nature of our society. We aim to encourage a
4
culture where people can be themselves and be valued for their unique strengths. Creating
value through diversity is what makes us strong as a business.