Senior Cybersecurity Compliance Consultant
I
Intelligent Technical SolutionsCybersecurity Consulting
U.S.-based remote, U.S. business time zonesFull-TimeSenior
Salary$95,000.00 up to $120,000.00 annually
Apply NowOpens the employer's application page
Job Details
- Experience
- Minimum eight (8) years of progressive information security experience
- Required Skills
- HIPAA
Requirements
- CISSP certification (active and in good standing) - hard requirement.
- Active CCP (Certified CMMC Professional) credential required at time of hire.
- Minimum eight (8) years of progressive information security experience.
- At least three (3) years delivering compliance or vCISO engagements in a consulting, MSP, or MSSP environment.
- Demonstrated ownership of at least two (2) completed CMMC Level 2 readiness engagements or equivalent NIST SP 800-171 assessment work.
- Documented working depth in a minimum of three (3) distinct regulatory frameworks.
- Experience defending deliverables and control determinations directly to auditors or regulators.
- Strong communication skills with the ability to translate technical findings into business terms.
- Proficiency in managing a high volume of concurrent client engagements (20–30).
- Familiarity with Microsoft security stack (Defender XDR, Sentinel, Entra ID, etc.).
- Experience with GRC platforms (e.g., Vanta, Drata, Secureframe).
Responsibilities
- Serve as the assigned security officer (vCISO) for a portfolio of client engagements, leading recurring meetings and providing status reports.
- Build and maintain strong client relationships, tailoring security strategies and roadmaps to specific business and regulatory requirements.
- Lead CMMC Level 1 and Level 2 readiness engagements, including NIST SP 800-171 assessments and System Security Plan development.
- Deliver compliance engagements across frameworks such as HIPAA, SOC 2, PCI DSS v4.0, and ISO 27001.
- Conduct risk assessments, identify vulnerabilities, and develop mitigation strategies to improve client security postures.
- Review and interpret outputs from the Microsoft security stack and coordinate remediation efforts.
- Support incident response activities, contribute to security playbooks, and conduct postmortems with clients.
- Contribute to scalable templates and practice knowledge base while serving as an escalation resource for complex compliance questions.
View Full Description & ApplyYou'll be redirected to the employer's site