1

Security Risk Consultant Jobs in New York (NOW HIRING)

At Crowe, consultants are expected to build both technical and transferable skills, think ... Documenting information security risk and compliance findings, presenting recommendations for ...

Prepare status reports and develop security risk analysis scenarios. * Enforce security policies ... Company Description Canus Tech is a leading technology consulting company that is dedicated to ...

Prepare status reports and develop security risk analysis scenarios. * Enforce security policies ... Company Description Canus Tech is a leading technology consulting company that is dedicated to ...

Perform risk assessments and develop mitigation strategies aligned with business objectives ... Security consulting and advisory mindset * Documentation and reporting * Collaboration and teamwork

New

Today, our expertise extends broadly across closely related security and risk-based fields - from accessibility consulting and risk analysis to process safety, forensic investigations, security risk ...

Showing results 21-40

Security Risk Consultant information

See New York salary details

$11

$55

$119

How much do security risk consultant jobs pay per hour?

As of Aug 7, 2026, the average hourly pay for security risk consultant in New York is $55.70, according to ZipRecruiter salary data. Most workers in this role earn between $27.07 and $69.71 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a security risk consultant?

To thrive as a Security Risk Consultant, you need expertise in risk assessment, security frameworks, regulatory compliance, and a relevant degree such as in cybersecurity or information security. Familiarity with tools like risk management software, vulnerability assessment platforms, and recognized certifications such as CISSP or CISM is typically required. Strong analytical thinking, communication skills, and the ability to influence stakeholders set top consultants apart. These skills ensure the accurate identification and mitigation of security risks, safeguarding organizational assets and compliance with industry standards.

How does a security risk consultant typically collaborate with clients and internal teams during a risk assessment project?

Security Risk Consultants work closely with clients to understand their unique risk landscape, often conducting interviews and site visits to gather information. They collaborate with internal teams such as cybersecurity analysts, compliance experts, and IT staff to analyze data and develop comprehensive risk mitigation strategies. Throughout the project, consultants maintain open communication with stakeholders, presenting findings, making recommendations, and ensuring that solutions align with the client's business objectives and regulatory requirements. This collaborative approach helps build trust and ensures the delivery of actionable, tailored security solutions.

What does a security risk consultant do?

A Security Risk Consultant assesses potential threats and vulnerabilities within an organization’s physical or digital infrastructure. They help identify risks, develop mitigation strategies, and ensure compliance with security regulations and best practices. Their responsibilities often include conducting risk assessments, advising on security policies, and recommending improvements to reduce exposure to threats. Security Risk Consultants work with clients across various industries to safeguard assets, data, and people. Their expertise helps organizations proactively address security challenges and minimize potential losses.

What is the difference between Security Risk Consultant vs Security Analyst?

AspectSecurity Risk ConsultantSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentConsulting firms, corporate security teamsIT departments, security operations centers
Primary FocusAssessing and managing security risks, advising clientsMonitoring security systems, incident response
Industry UsageFinance, healthcare, government, consultingTechnology, finance, government agencies

While both roles involve cybersecurity, Security Risk Consultants focus on evaluating and advising on security risks for organizations, often working in consulting settings. Security Analysts primarily monitor and respond to security threats within an organization’s IT infrastructure. Understanding these differences helps in choosing the right career path or job search focus.

What are the most commonly searched types of Security Risk Consultant jobs in New York? The most popular types of Security Risk Consultant jobs in New York are:
What job categories do people searching Security Risk Consultant jobs in New York look for? The top searched job categories for Security Risk Consultant jobs in New York are:
Infographic showing various Security Risk Consultant job openings in New York as of August 2026, with employment types broken down into 83% Full Time, 14% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $115,848 per year, or $55.7 per hour.

Third Party Risk Manager

Crowe LLP

New York, NY • On-site

Full-time

Re-posted 11 days ago


Job description

Your Journey at Crowe Starts Here:

At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you're trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups. That's why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.

Job Description:

What It Means to Be a Consultant at Crowe
Consulting is a dynamic business focused on solving problems for our clients and serving our core markets through innovative solutions. As technology and AI continue to reshape the consulting landscape, we are looking for individuals who are curious, adaptable, and eager to learn. At Crowe, consultants are expected to build both technical and transferable skills, think critically, and use technology to solve real business problems. In this role, you will continuously learn, collaborate across teams, and explore how tools, including emerging AI capabilities, can improve efficiency, insights, and client outcomes.

In management at Crowe, you play a pivotal role in leading teams, guiding project execution, and deepening client relationships. You are expected to contribute to account planning, identify opportunities to add value, and ensure high-quality delivery. As your responsibilities expand, you take on broader account ownership, balancing project leadership with growing involvement in client strategy and solution development.

Success in this role comes from a growth mindset, strong communication skills, advanced critical thinking, and the ability to navigate new challenges with confidence.

The Third Party Risk Manager position will be primarily responsible for managing and leading the assessment of the information security posture of key clients' third parties while overseeing the overall execution, quality, and delivery of assessments. The position will work within a Crowe team at a client or third-party site and be responsible for leading teams in identifying key risks, information security gaps, and remediation strategies. This role will also serve as a trusted advisor to client leadership and provide mentorship and oversight to junior team members. Projects would be performed through interacting with the client's Information Security and Business Unit leadership, as well as the client's vendors, service providers, and partners.

Specific projects and responsibilities may include:

  • Leading Third Party Risk Assessments by evaluating third-party questionnaire responses, performing control validation, and assessing documentation per established procedures and standards

  • Managing and overseeing assessment teams, project timelines, and client deliverables across multiple engagements

  • Performing and overseeing site visits to third-party facilities

  • Evaluating the effectiveness of security controls for compliance with applicable policies, security laws, regulations, and industry standards

  • Assessing cloud technologies such as Software as a Service (SaaS) hosted applications, Platform as a Service (PaaS), and Infrastructure as a Service (IaaS) deployments

  • Documenting information security risk and compliance findings, presenting recommendations for remediation, and communicating results to client leadership

  • Performing quality assurance reviews of assessments completed by team members to ensure consistency and accuracy

  • Delivering high-quality, executive-level reports and presentations

  • Coordinating schedules, resource allocation, and assessment activities for key third-party clients while overseeing all key deliverables

  • Supporting business development initiatives, client relationship management, and practice growth efforts

  • Mentoring, coaching, and developing staff and senior consultants within the practice

Our clients operate in and our team members work across the following industries:

  • Pharmaceutical

  • Life Sciences

  • Biotechnology

  • Healthcare

  • Manufacturing

  • Financial Services

  • Technology, Media and Telecommunications

Basic Qualifications

  • Bachelor's Degree

  • Information Technology and/or Cybersecurity background and/or experience, including 5-8+ years of IT, cybersecurity, risk management, or third-party risk experience with network, platform, and/or application technology

  • One or more of the following certifications required:

    • Certified Information Systems Security Professional (CISSP)

    • Certified Information Systems Auditor (CISA)

    • Certified Third Party Risk Assessor (CTPRA)

    • Certified in Risk and Information Systems Control (CRISC) preferred

  • Strong knowledge of security domains such as auditing, policy, database security, firewall design and implementation, risk analysis, identity management, access management, cloud security, or web security

  • Working knowledge of one or more compliance frameworks such as SOC 2, ISO 27001, NIST, HIPAA, PCI DSS, or HITRUST

  • Experience managing multiple projects and teams in a fast-paced consulting environment

  • Demonstrated leadership experience overseeing project execution, client relationships, and team performance

  • Proven ability to learn new technologies and systems, especially through independent research and self-study

  • Strong verbal and written communication skills with the ability to present technical information to both technical and executive audiences

  • Ability to manage project schedules, budgets, staffing, and client expectations

  • Ability to travel domestically an average of 20%-50% per year

Preferred Qualifications

  • Bachelor's and/or advanced degree with a concentration in Cybersecurity, Risk Management, Computer Science, Management Information Systems, or related field

  • Experience working with or assessing third-party vendors and service providers

  • IT or cybersecurity experience at a leading public company, consulting firm, or regulated industry organization

  • Experience with Archer, ProcessUnity, ServiceNow, OneTrust, or other GRC/VRM platforms

  • Experience with security ratings platforms and continuous monitoring solutions

  • Experience leading teams and mentoring junior professionals in a consulting or advisory environment

  • Bilingual capabilities preferred

  • Open to remote work arrangements

We expect the candidate to uphold Crowe's values of Care, Trust, Courage, and Stewardship. These values define who we are. We expect all of our people to act ethically and with integrity at all times.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Crowe is not sponsoring for work authorization at this time.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Crowe, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $59,800.00 - $114,500.00 per year.

Our Benefits:
Your exceptional people experience starts here. At Crowe, we know that great peopleare what makes a great firm. We care about our people and offer employees a comprehensive total rewards package. Learn more about what working at Crowe can mean for you!
How You Can Grow:
We will nurture your talent in an inclusive culture that values diversity. You will have the chance to meet on a consistent basis with your Career Coach that will guide you in your career goals and aspirations. Learn more about where talent can prosper!
More about Crowe:
Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.
Crowe LLP and Crowe Advisory LLC (and their respective subsidiary entities) provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.


Crowe LLP and Crowe Advisory LLC (and their respective subsidiary entities) does not accept unsolicited candidates, referrals or resumes from any staffing agency, recruiting service, sourcing entity or any other third-party paid service at any time. Any referrals, resumes or candidates submitted to Crowe, or any employee or owner of Crowe without a pre-existing agreement signed by both parties covering the submission will be considered the property of Crowe, and free of charge.


Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws.

Please visit our webpage to see notices of the various state and local Ban-the-Box laws and Fair Chance Ordinances, where applicable.

We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role's responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.

If you are interested in applying for employment with Crowe and are in need of an accommodation or require special assistance to navigate our website or to complete your application, please visit our Applicant Assistance and Accommodations page for more information: https://careers.crowe.com/crowe-applicant-assistance-and-accommodation


Crowe logo

About Crowe

Sourced by ZipRecruiter

Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.

Industry

Accounting services

Company size

1,001 - 5,000 Employees

Headquarters location

Chicago, IL, US

Social media