Security Consultant
*No third party recruiters*
*Overview*
Join our dynamic cybersecurity team as a Security Consultant, where you will play a pivotal role in safeguarding our clients IT infrastructure and ensuring the integrity of our security systems. This energetic position offers the opportunity to lead security assessments, implement cutting-edge cybersecurity tools, and collaborate across teams to develop resilient security strategies. Your expertise will help us stay ahead of evolving cyber threats while maintaining compliance with industry standards and best practices. If you thrive in a fast-paced environment and are passionate about protecting digital assets, this role is your chance to make a significant impact.
*Duties*
* Conduct comprehensive security risk assessments and vulnerability management to identify potential threats within network architecture, systems, and applications.
* Knowledge of security systems including firewalls (Cisco ASA), intrusion detection systems (IDS), endpoint detection and response (EDR), and SIEM solutions such as Splunk or SolarWinds for real-time security event monitoring.
* Understands network security protocols including LAN, WAN, IPsec VPNs, routing protocols (OSPF, BGP), and network support to ensure robust connectivity and protection against unauthorized access.
* Develop and enforce security system administration procedures, system hardening practices, and security system plans aligned with ISO 27001/ISO 27000 standards and other frameworks like NIST, CMMC, FEDRamp, or DIACAP.
* Document incident response efforts by analyzing security events, conducting forensic investigations, and coordinating incident recovery activities to minimize impact.
* Collaborate with cross-functional teams on cloud security engineering for platforms such as AWS, Azure, Google Cloud Platform, ensuring secure cloud architecture and compliance with PCI FISMA standards.
* Perform vulnerability research and threat intelligence analysis to proactively identify emerging risks using cybersecurity tools like Fiddler, SolarWinds, or New Relic.
*Experience*
* Proven experience in computer networking including TCP/IP, DNS, DHCP, DHCPv6, Ethernet, VLANs, load balancing, and network architecture design.
* Strong background in information security management with hands-on knowledge of firewalls (Cisco ASA), VPNs (Remote access software), IDS/IPS (Intrusion Prevention Systems), SIEM implementation (Splunk or similar), and endpoint security solutions.
* Familiarity with IT infrastructure components such as SAN storage systems, VMware vSphere virtualization environment, Linux distributions (Ubuntu, CentOS, Debian), Windows Server environments, and operating systems like macOS or Android/iOS for mobile device management.
* Experience implementing security standards including ISO 27001/ISO 27000 series, CMMC, FIPS compliance for encryption modules, GPO management for Windows environments, and adherence to ITIL or COBIT frameworks for governance.
* Knowledge of scripting languages such as Python or Bash for automation tasks related to vulnerability assessment or system hardening.
* Ability to perform detailed security assessments using attack frameworks and conduct thorough vulnerability research within complex IT environments.
* Strong analytical skills in log analysis using SIEM tools like Splunk or SolarWinds to detect anomalies and respond swiftly to potential threats.
Join us in shaping a secure digital future! We are committed to fostering an inclusive environment that values innovation and continuous learning. This paid position offers the chance to develop your cybersecurity expertise while making a tangible difference in protecting vital information assets across diverse platforms and infrastructures.
Pay: $50.00 - $70.00 per hour
Application Question(s):
* Have you experience with CMMC? If so, how many years?
* Do you have experience with FEDRamp? If so, how many years?
Experience:
* consulting: 1 year (Preferred)
Work Location: Hybrid remote in Commerce, MI 48382