Security Advisor – GRC

Posted Aug 27

This is a fully remote position, open to applicants in South Carolina.

📋 Description

• Conduct assessments for control gaps, risks, and compliance with regulatory standards.

• Design and execute phishing and vishing social engineering simulations.

• Deliver social engineering training to enhance security awareness initiatives.

• Oversee projects to guarantee timely assessment delivery that aligns with client expectations.

• Identify gaps in control implementation and make recommendations based on regulatory guidelines and desired control measures.

• Perform interviews with clients and internal stakeholders to assess IT environments and security practices.

• Create executive summaries, detailed reports on findings and recommendations, presentation slide decks, action plans, policies, and procedures, along with ad-hoc written documentation.

• Assist Advisory team members in areas such as Trusted Advisory, vCISO services, Risk/Gap Assessments, Incident Response Readiness, Table Top Exercises, Business Continuity and Disaster Recovery Plans, and policy development.

• Write clear and structured reports that detail observations and provide strategic recommendations.

• Identify regulatory requirements related to cybersecurity and compliance gaps, and devise strategic compliance plans.

• Collaborate with clients to develop remediation strategies.

• Document and present findings and recommendations to C-Suite and board-level executives.

• Conduct quality assurance reviews of deliverables.

• Maintain ongoing client relationships post-assessment and offer continuous security advice.

• Stay updated on security trends, technologies, and practices through self-study and participation in industry events.

• Ensure the integrity and confidentiality of sensitive client information.

• Evaluate and research business platforms and technologies to recommend secure configurations.


⛳️ Requirements

• Over 5 years of industry experience with a solid understanding of the cybersecurity domain.

• At least 2 years of experience in a cybersecurity consulting role, particularly in conducting IT audits or assessments.

• Familiarity with cybersecurity frameworks including NIST CSF, CMMC, ISO 27001, and CIS Controls.

• Strong proficiency in Microsoft Suite.

• Possession of relevant certifications such as CISSP, CISM, CISA, etc.

• Availability for the majority of work hours from 9:00 AM EST to 5:00 PM EST.

• Capability to work remotely.

• Willingness to travel occasionally for client engagements, team meetings, or other business requirements.


🏝️ Benefits

• Opportunity for remote work with flexible scheduling options.

• Occasional travel for client meetings, team gatherings, or other business necessities.

People also viewed

Cisco14 hours ago

Security Engineer

US flagColorado, +2 more statesFull-timeCybersecurity / Security Engineer$139.3k – $203.6k/year
ApplyView job
RELX20 hours ago

Senior Security Engineer – Sec Ops

US flagNew Jersey, +4 more statesFull-timeCybersecurity / Security Engineer$78.8k – $131.3k/year
ApplyView job
TASQ Staffing Solutions1 day ago

Senior Cloud Security Engineer

PH flagPhilippines OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
MRO1 day ago

Information Security Assurance Advisor

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$104k – $140k/year
ApplyView job
AgelessRx1 day ago

Senior Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$155k – $170k/year
ApplyView job
Xcelerate Solutions1 day ago

Security Engineer – Intrusion Prevention Monitoring

US flagCalifornia, +1 more stateFull-timeCybersecurity / Security Engineer$94k – $149k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers