Back to Job Search Results

Interim Cybersecurity and IT Risk Lead Consultant

Date Posted: Aug 14, 2026

Job #1687838
Contract
Dallas, Texas, USA
4000 - 6000 per week (USD) medical, dental, vision, 401k, PTO

Interim Cybersecurity & IT Risk Lead Consultant

Location: Dallas, TX (Hybrid, 3 days onsite)
Position Type: Interim / Interim-to-Hire

Overview

We are seeking an experienced Cybersecurity & IT Risk Lead Consultant to help establish and mature the cybersecurity, risk, and compliance function for a rapidly growing infrastructure organization. This individual will serve as the senior internal cybersecurity leader, responsible for strengthening security governance, reducing enterprise risk, overseeing managed security providers, and building the foundation for a scalable security program.

The ideal candidate brings a combination of hands-on technical expertise and strategic leadership, with experience operating in highly regulated, capital-intensive environments such as energy, industrial infrastructure, construction, utilities, critical infrastructure, or data center organizations.

This role will partner closely with executive leadership, legal, compliance, operations, and external service providers to ensure cybersecurity, IT risk, and governance programs evolve alongside the organization's growth.

Key Responsibilities

Cybersecurity Program Leadership

  • Assess, design, and implement cybersecurity governance, policies, standards, and risk management frameworks.
  • Develop and execute a strategic cybersecurity roadmap aligned with business objectives and growth plans.
  • Establish security metrics, reporting, and executive-level risk visibility.
  • Build scalable cybersecurity processes suitable for a growing organization.

IT Risk & Compliance

  • Lead enterprise cybersecurity risk assessments and remediation initiatives.
  • Support regulatory, governance, and compliance requirements, including SOX controls and public-company cybersecurity expectations.
  • Assist with cybersecurity governance activities, risk reporting, and documentation aligned with SEC disclosure requirements.
  • Develop and maintain security policies, standards, and control frameworks.

Identity & Access Management

  • Oversee and enhance Identity and Access Management (IAM) and Privileged Access Management (PAM/PIM) programs.
  • Drive security best practices within Microsoft Entra and related identity platforms.
  • Improve access governance, authentication controls, and privileged account management.

Security Operations & Incident Response

  • Provide oversight of vulnerability management, endpoint security, cloud security, threat detection, and incident response programs.
  • Lead investigations, root cause analyses, and remediation efforts following security incidents or data-loss events.
  • Coordinate incident response activities across internal stakeholders and third-party providers.
  • Establish and refine security monitoring and response procedures.

Security Vendor & MSSP Management

  • Evaluate, select, and manage Managed Security Service Providers (MSSPs) and cybersecurity partners.
  • Hold external providers accountable for service delivery, performance metrics, and security outcomes.
  • Guide the long-term transition from outsourced services toward an internally developed security capability.

Legal, eDiscovery & Data Governance

  • Partner with Legal and external counsel regarding cybersecurity matters, investigations, and risk management.
  • Support eDiscovery, legal hold, records retention, and data governance initiatives.
  • Provide cybersecurity guidance related to information retention and protection policies.

Operational Technology & Physical Security

  • Collaborate with Facilities, Operations, and infrastructure teams to address cybersecurity risks associated with operational and physical environments.
  • Support governance surrounding access control systems, surveillance technologies, visitor management, and site security solutions.
  • Contribute to the development of OT/ICS security practices as operational infrastructure expands.

Required Qualifications

  • 10+ years of progressive experience in cybersecurity, information security, IT risk, or security consulting.
  • Proven track record building or maturing cybersecurity programs within growing organizations.
  • Strong experience across:
    • IAM, PAM/PIM, and Microsoft Entra
    • Endpoint security
    • Cloud security
    • Vulnerability management
    • Security operations
    • Incident response
    • Third-party/vendor risk management
  • Experience managing MSSPs, security consultants, and external service providers.
  • Strong knowledge of cybersecurity governance, risk management, and control frameworks.
  • Experience supporting SOX controls and public-company cybersecurity requirements.
  • Hands-on experience with policy development, risk assessments, remediation programs, and security program implementation.
  • Ability to operate effectively as both a strategic leader and hands-on contributor.
  • Excellent communication skills with the ability to engage executives, business stakeholders, legal teams, and technical teams.

Preferred Qualifications

  • Experience within energy, utilities, industrial infrastructure, construction, critical infrastructure, data center, or other capital-intensive environments.
  • Knowledge of OT/ICS cybersecurity principles and industrial control environments.
  • Experience supporting cyber-physical security programs.
  • Familiarity with SEC cybersecurity governance and disclosure requirements.
  • Certifications such as CISSP, CISM, CRISC, GIAC, or similar credentials.

Ideal Candidate Profile

  • Builder mindset with experience creating structure in rapidly growing organizations.
  • Comfortable working in ambiguity and establishing processes from the ground up.
  • Capable of balancing strategy, governance, and hands-on execution.
  • Strong vendor management and stakeholder influence skills.
  • Collaborative leader who can partner across technology, operations, legal, compliance, and executive leadership teams.

Travel

  • Primarily Dallas-based hybrid role.
  • Limited travel required to operational sites.

About Korn Ferry

Korn Ferry unleashes potential in people, teams, and organizations. We work with our clients to design optimal organization structures, roles, and responsibilities. We help them hire the right people and advise them on how to reward and motivate their workforce while developing professionals as they navigate and advance their careers. To learn more, please visit Korn Ferry at www.Kornferry.com

Apply Now

Accepted file types are DOC, DOCX, and PDF.

Mandatory questions are indicated with a *. All other questions are optional.

For each question below, please consult the Korn Ferry Global Privacy Policy, Terms and Cookie Policy. You may withdraw your consent at any time by contacting privacy@kornferry.com.