Currently Empty: $0.00
Cybersecurity Consultant
$170K/Yr - $180K/Yr
Remote
Posted 2 weeks ago
Job Summary
We are seeking an experienced Cybersecurity Consultant to help organizations strengthen their cybersecurity posture, reduce enterprise risk, and meet regulatory compliance requirements. The successful candidate will work closely with executive leadership, IT teams, and business stakeholders to assess security risks, design security strategies, and implement best practices across cloud, on-premises, and hybrid environments.
The Cybersecurity Consultant will lead security assessments, develop governance frameworks, conduct risk analyses, and provide strategic recommendations aligned with industry standards such as NIST CSF, ISO/IEC 27001, CIS Controls, SOC 2, PCI DSS, HIPAA, and GDPR. This role requires strong technical expertise, consulting skills, and the ability to communicate complex security concepts to both technical and non-technical audiences.
Key Responsibilities
- Conduct enterprise cybersecurity risk assessments and security maturity evaluations.
- Develop cybersecurity strategies, roadmaps, and transformation initiatives aligned with business objectives.
- Perform security architecture reviews for cloud, hybrid, and on-premises environments.
- Advise clients on Zero Trust Architecture, Identity & Access Management (IAM), and network security.
- Lead vulnerability assessments, penetration testing coordination, and remediation planning.
- Assess cloud security configurations across AWS, Microsoft Azure, and Google Cloud Platform (GCP).
- Design and implement governance, risk, and compliance (GRC) frameworks.
- Support regulatory compliance initiatives including NIST CSF, ISO 27001, SOC 2, PCI DSS, HIPAA, GDPR, and CMMC.
- Evaluate third-party vendor security risks and supply chain security controls.
- Develop cybersecurity policies, standards, procedures, and security baselines.
- Facilitate tabletop exercises, incident response planning, and cyber resilience assessments.
- Collaborate with SOC, DevSecOps, Infrastructure, and Engineering teams to improve security operations.
- Present executive-level security reports, risk dashboards, and strategic recommendations.
- Stay informed on emerging cyber threats, ransomware trends, AI-driven attacks, and evolving security technologies.
- Mentor junior consultants and contribute to organizational cybersecurity best practices.
Required Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related field.
- 8+ years of professional experience in cybersecurity, information security, consulting, or risk management.
- Strong understanding of enterprise security architecture and security frameworks.
- Experience with cloud security (AWS, Azure, or GCP).
- Knowledge of network security, endpoint protection, SIEM, EDR/XDR, IAM, and Zero Trust principles.
- Experience performing security risk assessments and security audits.
- Strong analytical, problem-solving, and stakeholder management skills.
- Excellent written and verbal communication skills.
- Ability to manage multiple client engagements and deliver strategic security recommendations.
Preferred Qualifications
- Master’s degree in Cybersecurity, Information Assurance, or Business Administration (MBA).
- Experience with cybersecurity consulting firms or enterprise advisory services.
- Knowledge of AI security, cloud-native security, and container security.
- Familiarity with Infrastructure as Code (Terraform, CloudFormation) and DevSecOps practices.
- Experience working with Fortune 500 organizations or highly regulated industries.
Technical Skills
Security Frameworks
- NIST Cybersecurity Framework (CSF)
- NIST 800-53
- ISO/IEC 27001
- CIS Controls
- SOC 2
- PCI DSS
- HIPAA
- GDPR
- CMMC
Cloud Platforms
- Amazon Web Services (AWS)
- Microsoft Azure
- Google Cloud Platform (GCP)
Security Technologies
- Microsoft Defender XDR
- CrowdStrike Falcon
- Palo Alto Networks
- Splunk
- Microsoft Sentinel
- Google Security Operations
- IBM QRadar
- Rapid7 InsightVM
- Tenable Nessus
- Qualys
Identity & Access Management
- Microsoft Entra ID (Azure AD)
- Okta
- CyberArk
- SailPoint
- Ping Identity
Programming & Automation
- Python
- PowerShell
- Bash
- SQL
- REST APIs
Collaboration & Project Tools
- Jira
- ServiceNow
- Confluence
- Microsoft 365
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CISA (Certified Information Systems Auditor)
- CCSP (Certified Cloud Security Professional)
- AWS Certified Security – Specialty
- Microsoft Certified: Cybersecurity Architect Expert
- Certified Ethical Hacker (CEH)
- GIAC Security Certifications (GSEC, GCIH, GPEN)
- CompTIA Security+
- ISO/IEC 27001 Lead Implementer or Lead Auditor
Soft Skills
- Executive communication and presentation
- Strategic thinking and business alignment
- Client relationship management
- Leadership and mentoring
- Risk analysis and decision-making
- Stakeholder engagement
- Project management
- Critical thinking and problem-solving
Job Features
| Job Category | Cyber Security |



