Job description
Role Overview
Security Risk Consultant at Capco in Doha. Permanent position within the Technology & Engineering practice area.
Role Purpose
Help clients identify, assess, and manage cybersecurity threats and technology risks across complex environments. Deliver structured threat and risk assessments that support informed decision-making and effective security controls, with focus on complex cybersecurity challenges within financial services.
Key Responsibilities
Assessment & Evaluation
- Assess existing security controls and evaluate their effectiveness against identified cyber and technology risks.
- Conduct threat and risk assessments across infrastructure, cloud environments, technology platforms, and business services.
- Conduct regular data, threat and risk assessments and recommend corrective actions to improve security posture.
- Evaluate applications, infrastructure, cloud services, or technology solutions against security and risk requirements.
Threat & Vulnerability Identification
- Identify potential threats, vulnerabilities, control gaps, and risk scenarios, documenting findings and recommending proportionate remediation actions.
Stakeholder Engagement & Integration
- Work with security, architecture, engineering, risk, and business stakeholders to embed threat and risk assessment activities throughout technology change and delivery.
Reporting & Decision Support
- Produce clear risk assessments, reports, and recommendations that support governance, remediation planning, risk acceptance, and informed decision-making.
- Translate technical threats and vulnerabilities into understandable business risks.
Qualifications & Experience
- Strong experience in cybersecurity risk assessment, threat assessment, technology risk, information security, or related disciplines.
- Experience assessing applications, infrastructure, cloud services, or technology solutions against security and risk requirements.
- Experience delivering threat and risk assessments within banking, financial services, or another regulated environment (bonus).
- Exposure to large-scale cybersecurity, cloud, regulatory, or technology transformation programmes (bonus).
Skills & Competencies
- Practical knowledge of threat modelling, vulnerability assessment, security controls, risk assessment methodologies, and remediation planning.
- Strong understanding of cybersecurity frameworks, governance, risk management, regulatory requirements, and security-by-design principles.
- Knowledge of recognised cybersecurity and risk frameworks and industry security standards (bonus).
- Experience with threat modelling methodologies, security testing, vulnerability management, or cyber threat intelligence (bonus).
- Clear communication and stakeholder management skills.
- Relevant cybersecurity, technology risk, cloud, or information security certifications (bonus).
Additional Information
- Deliver high-impact technology solutions for Tier 1 financial institutions.
- Work in a collaborative, flat, and entrepreneurial consulting culture.
- Access continuous learning, training, and industry certifications.
- Be part of a team shaping the future of digital financial services.
- Help shape the future of digital transformation across financial services and energy sectors.
- Competitive, people-first benefits package designed to support every aspect of life.
- Capco is committed to making the recruitment process accessible and offers adjustments at any stage upon request.
SalaryNot disclosed by the employer
Closingβ