Manager / Senior Manager - Cyber Regulatory Strategy & Transformation
PricewaterhouseCoopers
- Location
- Genève
- Work model
- On-Site
- Level
- Senior
- H-1B history
- 236 approvals (FY2023)
- Posted
- Sep 17, 2026
Skills
About this role
Line of Service Advisory Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Manager Job Description & Summary Your Team Join our Cybersecurity & Privacy team and work with cybersecurity, risk, privacy, legal and technology specialists to help organisations translate evolving cybersecurity regulation into practical strategies, resilient operating models and sustainable compliance programmes. This is an opportunity to shape and grow our cybersecurity regulation and compliance offering. You will support Swiss and international clients across industries, from assessing applicability and readiness to designing and implementing compliance programmes for requirements such as NIS2 and its national implementations, the Cyber Resilience Act (CRA), DORA, and relevant Swiss and international sector-specific requirements.
Your Impact
Lead and deliver multidisciplinary engagements that help clients determine the applicability and impact of cybersecurity laws and regulations across legal entities, jurisdictions, business services, products and supply chains. Translate legal and regulatory obligations into practical governance models, policies, control frameworks, target operating models and risk-based implementation roadmaps. Design, establish and enhance end-to-end cybersecurity compliance programmes, including regulatory inventories, obligation and control mapping, ownership models, evidence management, control testing, issue and remediation management, metrics, reporting and regulatory change monitoring. Perform regulatory readiness, gap and maturity assessments, define proportionate remediation measures, and support clients through implementation, testing and independent review. Advise clients on the capabilities required by applicable regulatory regimes, including cybersecurity risk management, incident response and regulatory reporting, third-party and supply-chain security, vulnerability management, secure product development, business continuity and executive oversight. Facilitate workshops and briefings with boards, executive management and stakeholders across Legal, Compliance, Risk, IT, Security, Product and Engineering, turning complex regulatory and technical matters into clear decisions and actions. Serve as a trusted advisor and key client contact, managing engagements end to end, including scope, delivery teams, budget, quality and stakeholder expectations. Develop long-term client relationships and contribute to the growth of our practice through new offerings, thought leadership, industry events and collaboration across the PwC network. Coach and develop team members and contribute to a collaborative, inclusive and quality-driven working environment. Your Skill Set You have at least five years of relevant experience in cybersecurity governance, risk and compliance, technology or digital regulation, information security, digital resilience, or a related field. Experience gained in consulting, a Big Four firm, a regulated organisation, or a technology or product company is particularly relevant. You have practical knowledge of one or more cybersecurity regulatory regimes, such as NIS2 and its national implementations, the Cyber Resilience Act, DORA, FINMA requirements, or comparable Swiss and international sector-specific requirements. You have proven experience translating regulatory requirements into executable compliance programmes, governance arrangements, controls and operational processes. You have led or contributed to regulatory applicability assessments, readiness or gap assessments, control mapping, remediation programmes, regulatory change initiatives or compliance assurance engagements. You understand cybersecurity governance and risk-management practices and are familiar with relevant standards and frameworks, such as ISO/IEC 27001 and 27002, the NIST Cybersecurity Framework, CIS Controls and, where relevant, IEC 62443 or secure software and product-development practices. You hold