Global Platform Team Lead and Senior Director - IT Security (Boston) Job at Boston Consulting Group (BCG), Boston, MA

V3FHQWlObHpXUkhHdWRra0lvemdJNTFxR1E9PQ==
  • Boston Consulting Group (BCG)
  • Boston, MA

Job Description

Global Platform Team Lead and Senior Director - IT Security

Locations: Boston | Atlanta | London

Who We Are

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformationinspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottomline impact.

To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leadingedge management consulting along with technology and design, corporate and digital venturesand business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

What Youll Do

The Global Platform Team Lead and Senior Director - IT Security is responsible for leading the design, delivery, and continuous evolution of BCGs security platforms across identity, device, and data protection domains. This role ensures endtoend security engineering across all technology environments, including cloud, onprem, and hybrid systems. The leader will drive strategic planning, execution, and operations of scalable, automated, and resilient security controls that protect BCGs global operations and users, while enabling innovation and agility across BCG Core, BCG X, and CT worldwide. This role is also accountable for embedding security within DevSecOps practices, enforcing automation at scale, and applying Site Reliability Engineering (SRE) principles across all security services.

This role requires strong partnership with ISRM, with a focus on balancing and prioritizing security requirements, automation opportunities, user experience needs, and broader business outcomes.

Key Responsibilities

  • Strategic Leadership & Transformation:
    • Define and execute a unified security engineering strategy that addresses identity, endpoint, and data protection across all environments.
    • Lead the design and implementation of scalable, automated security solutions that integrate seamlessly into enterprise platforms and user experiences.
    • Establish a global security architecture and engineering roadmap focused on prevention, detection, and rapid response.
    • Drive continuous improvement of security posture while aligning with business needs, regulatory requirements, and user experience expectations.
    • Champion DevSecOps practices to embed security early into development and delivery workflows.
  • Security Platform Engineering:
    • Lead endtoend engineering for identity and access management (IAM), including authentication, authorization, and privileged access controls.
    • Oversee endpoint security architecture and enforcement, ensuring comprehensive coverage for threat detection, malware prevention, and device compliance.
    • Build and operate scalable data protection solutions, including data loss prevention (DLP), secrets management, encryption, and classification.
    • Integrate security controls into CI/CD pipelines, cloudnative services, and onprem platforms to enforce securitybydesign principles.
    • Deliver security capabilities that support modern work scenarios, remote access, zerotrust networking, and AI/ML workloads.
    • Leverage automation frameworks and IaC to improve scalability and reduce manual intervention.
  • Operational Security, SRE & Assurance:
    • Ensure security platforms are resilient, continuously monitored, and designed for 24x7 support and incident response readiness.
    • Embed security telemetry and observability to enable proactive threat detection and automated response.
    • Apply SRE principles to improve reliability, performance, and maintainability of security services.
    • Lead platform health, patching automation, and vulnerability remediation workflows.
    • Define service level objectives (SLOs) and key performance indicators (KPIs) for all security services.
  • Compliance, Governance & Risk Management:
    • Ensure alignment with global compliance requirements such as ISO 27001, NIST, SOC 2, GDPR, and others.
    • Partner with governance, legal, and ISRM teams to implement enforceable policies and standards across identity, endpoint, and data domains.
    • Operationalize policy enforcement through automated controls and continuous compliance checks.
    • Lead risk mitigation efforts with technical solutions that scale across diverse user and system profiles.
  • Financial & Vendor Management:
    • Manage security platform budgets and investments with a focus on cost optimization and longterm value.
    • Evaluate and manage thirdparty vendors and partners, ensuring they meet technical, contractual, and security expectations.
    • Lead procurement and renewal cycles in alignment with operational and architectural strategies.
  • Leadership & Talent Development:
    • Build and mentor a global team of security engineers, fostering a highperformance, collaborative, and forwardthinking culture.
    • Drive internal knowledge sharing and upskilling programs across security architecture, automation, and secure software engineering.
    • Collaborate crossfunctionally with platform, product, and enterprise architecture teams to embed security early and often.

What Youll Bring

Required Qualifications

  • 10+ years of experience in cybersecurity, security engineering, or platform security roles.
  • 5+ years in a senior leadership position with accountability for enterprisescale security platforms.
  • Deep expertise in IAM, endpoint security, and data protection technologies, with proven ability to design and scale global solutions.
  • Experience with security engineering in hybrid and cloudnative environments (AWS, Azure, GCP).
  • Proven track record in automating security controls, implementing zerotrust models, and supporting 24x7 security operations.
  • Strong understanding of compliance frameworks and risk management strategies.

Preferred Qualifications

  • Certifications such as CISSP, CCSP, CISM, AWS/Azure Security Specialty, or equivalent.
  • Experience with tools like Okta, Azure AD, CrowdStrike, Tanium, Zscaler, Vault, and other modern security platforms.
  • Familiarity with DevSecOps principles, Infrastructure as Code, and secure software development practices.

Who Youll Work With

Work Environment & Additional Information

  • Hybrid or onsite work model.
  • Occasional travel may be required for business, vendor, or team engagement.
  • Ability to operate in a fastpaced, complex environment, balancing longterm strategy with operational agility.

Additional Info

In the US, we have a compensation transparency approach. Total compensation for this role includes base salary, annual discretionary performance bonus, retirement contribution, and a marketleading benefits package described below.

  • The base salary range for this role in Boston is $183,000.00 - $237,000.00.
  • In addition to your base salary, your total compensation will include a bonus of up to 45% and a generous retirement contribution that starts at 10%. Senior Directors/Executive Directors are also eligible for a Firm Performance Bonus.
  • All of our plans provide bestinclass coverage:
    • Zero dollar ($0) health insurance premiums for BCG employees, spouses, and children.
    • Low $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugs.
    • Dental coverage, including up to $5,000 in orthodontia benefits.
    • Vision insurance with coverage for both glasses and contact lenses annually.
    • Reimbursement for gym memberships and other fitness activities.
    • Fully vested Profit Sharing Retirement Fund contributions made annually, whether you contribute or not, plus the option for employees to make personal contributions to a 401(k) plan.
    • Paid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursement.
    • Generous paid time off including 12 holidays per year, an annual office closure between Christmas and New Years, and 20 vacation days per year (earned at 1.66 days per month).
    • Paid sick time on an as needed basis.

Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.

BCG is an EVerify Employer. (Click here for more information on EVerify.)

#J-18808-Ljbffr

Job Tags

Full time, Work at office, Local area, Remote work, Worldwide,

Similar Jobs

Legal Sea Foods

Dishwasher - Burlington Job at Legal Sea Foods

As a dishwasher, you will be an essential part of our kitchen team, responsible for maintaining a clean and organized kitchen environment.Responsibilities: Proper use, care, and maintenance of the dish machine Keep a clean supply of dishware, glassware, and silverware...

BaRupOn LLC

Social Media & Community Manager Job at BaRupOn LLC

 ...Job Summary The Social Media & Community Manager will lead BaRupOn's digital presence across platforms, manage day-to-day content publishing, grow engagement, and build relationships with followers, partners, and communities. This associate-level role is ideal for... 

Soliant

Cath Lab Tech in West Chester, PA Job at Soliant

 ...skills and team collaboration. Location:Position based in West Chester, Pennsylvania, a vibrant community known for its charming downtown area, historic sites, and excellent quality of life. Situated near urban amenities while offering a more relaxed suburban... 

CNY Family Care, LLP

Medical Coder and Auditor Job at CNY Family Care, LLP

CNY Family Care, LLP, located in the heart of East Syracuse, is looking to expand its diligent team with a skilled Medical Coder and Auditor. Our practice is dedicated to providing comprehensive health services spanning pediatric to geriatric care, gynecology, and acute... 

Providence Health and Services

RN - GI/ Endoscopy Per Diem Day Job at Providence Health and Services

 ...RN - GI/ Endoscopy Per Diem Day at Providence Health and Services summary: This position is for a Per Diem Registered Nurse specializing in Gastrointestinal (GI) and Endoscopy procedures at Providence Saint Johns Health Center in Santa Monica, CA. The role includes...