
Senior Information Security Consultant
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Iowa.
• Deliver cybersecurity and risk assessment services, providing subject matter expert support and solutions for HBS clients.
• Conduct risk and security evaluations, offer remediation and mitigation strategies, create strategic roadmaps, and develop privacy and security policies, procedures, and programs, along with awareness and education initiatives, and SME support.
• Act as the virtual Chief Information Security Officer for various organizations.
• Collaborate with sales and marketing teams to ensure proposed solutions effectively address client requirements.
• Identify deficiencies in clients' risk and security initiatives and design appropriate solutions.
• Aid in the identification, development, and implementation of technological and organizational controls.
• Lead services related to security remediation and mitigation.
• Oversee large-scale projects, including planning, task leadership, client status updates, and presenting outcomes.
• Assist with privacy and security solutions, including review, validation, and optimization throughout the sales cycle.
• Stay informed about privacy and security regulations, standards, best practices, enforcement trends, guidelines, and state-specific laws.
• Create articles, whitepapers, and blogs, and represent the company at industry conferences.
• Perform risk assessments and facilitate process enhancements, policy formulation, and solution development.
• Conduct educational and informational sessions.
• Develop information security programs and offer strategic guidance to clients as a vCISO.
• Build and nurture client relationships.
• Enhance customer-facing documentation and cybersecurity offerings.
• Achieve and maintain relevant cybersecurity and risk certifications.
• Bill a minimum of 1,350 hours, or equivalent vCISO work, per fiscal year, adjusted based on the start date.
• Over 5 years of relevant experience.
• More than 5 years of experience in implementing Cybersecurity Programs.
• At least 3 years of experience in implementing Compliance and Governance Programs.
• Possession of CISSP or other current industry-standard certifications in relevant security domains.
• Extensive experience in roles such as security consultant, analyst, engineer, system administrator, IT lead, or similar positions with a focus on information security responsibilities.
• Proven track record of recommending and delivering cybersecurity, compliance, and risk management services.
• Capacity to identify and assess risks to IT systems and associated business processes, effectively communicating those risks to management.
• Demonstrated experience with regulatory and compliance requirements (e.g., PCI, HIPAA/HITRUST, SOX, FISMA).
• Familiarity with information security frameworks and controls (e.g., NIST, ISO, CIS).
• Experience in reviewing and recommending suitable technical, administrative, and physical controls.
• Capability to select and implement effective risk mitigation strategies.
• Ability to develop policies, standards, and baseline configurations.
• Strong attention to detail and excellent documentation skills.
• Proficiency in managing project deliverables and timelines.
• Exceptional customer service skills via phone and email.
• Outstanding verbal and written communication skills in a professional setting.
• Strong listening abilities and presentation skills.
• Clear communication skills with co-workers, management, clients, and vendors.
• Ability to multi-task, prioritize, and manage time efficiently.
• Outcome-oriented mindset.
• Strong skills in prioritization.
• Team-oriented attitude.
• Professional demeanor and respectful conduct.
• Competitive Compensation Package (which may include Bonus, Incentive, Commission, Fair Wage, Retirement Plans, and Benefits with HSA Compatible Plans).
• Opportunities for growth.
• Community engagement initiatives.
• Personal development opportunities.
• Celebrations for employees and their families.
• Environmental sustainability initiatives.
• Personal time off.
• Work-life balance.
• Recognition and awards for achievements.
• Professional development and on-the-job training balanced against charge-hour requirements.
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.