Senior Security Consultant, Continuity and Compliance
New
P
PonduranceCybersecurity Compliance
U.S.-based remote position open to candidates in all 50 states., Preference for Central or Eastern Time business hours.Full-TimeSenior
Salary130,000 - 155,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years of experience in information security compliance, auditing, and assessments; or 7+ years of demonstrated experience in a related information security discipline.
- Required Skills
- ComplianceHIPAARisk Management
Requirements
- Bachelor’s degree and 5+ years of experience in information security compliance, auditing, and assessments; or 7+ years of demonstrated experience in a related information security discipline.
- Active PCI DSS Qualified Security Assessor (QSA) certification.
- Professional certification such as CISSP, CISA, CMMC, or an equivalent credential.
- Strong working knowledge of security and regulatory frameworks, including PCI DSS, NIST, HIPAA, and CMMC.
- Strong technical foundation in core IT and security concepts, including networking, databases, operating systems, and security controls.
- Demonstrated critical-thinking, problem-solving, and advisory skills.
- Strong consulting, communication, and engagement-management skills.
- Ability to conduct root cause analysis and exercise sound professional judgment.
- Experience communicating effectively with technical teams, business stakeholders, and executive leaders.
Responsibilities
- Lead and execute multiple client consulting engagements concurrently, ensuring delivery aligns with established scope, timelines, budgets, and quality standards.
- Lead annual PCI DSS compliance assessments, including SAQs, ROCs, and other applicable validation activities in accordance with PCI SSC requirements and QSA responsibilities.
- Serve as a Subject Matter Expert (SME) for PCI DSS, NIST, HIPAA, and other applicable security and compliance frameworks.
- Assess client security programs, technical controls, and regulatory requirements to identify risks, vulnerabilities, compliance gaps, and opportunities for improvement.
- Develop practical remediation strategies and recommendations aligned with regulatory requirements, industry frameworks, risk, and client business needs.
- Own assigned consulting engagements from initiation through completion, including the accuracy, quality, documentation, and final readiness of assessment deliverables.
- Conduct client interviews, strategic advisory sessions, and workshops with executive leadership, technical teams, and key stakeholders to evaluate controls and communicate findings.
- Establish, review, and advise on client policies, procedures, and controls to support compliance, security, and risk-management objectives.
- Provide technical direction, quality review, and mentorship to consultants and peers.
View Full Description & ApplyYou'll be redirected to the employer's site