Security Consultant – SecOps
Job Description: Security ConsultantAbout Bright DefenseBright Defense is dedicated to delivering top-tier Security, Risk, and Compliance consulting services. Our commitment to excellence, participation, integrity, and collaboration sets us apart in the industry. We strive to create a dynamic and inclusive environment where innovation and teamwork drive success.Who We Look ForWe are seeking a mid-level Security Consultant with a minimum of 5 years of experience. The ideal candidate is a strong communicator and active listener, skilled at navigating diverse audiences and situations. They are self-aware, adaptable, and able to connect people, data, trends, and experiences. Our consultants are mature, humble, and genuine, consistently going above and beyond for clients and colleagues. They are ethical, trustworthy, and committed to our core values even in challenging situations. A passion for learning and technology is essential, as is the ability to inspire and excite others.What We DoOur Security Consultants work with clients at all organizational levels, from the C-suite to the shop floor, helping them achieve their most strategic initiatives. We deliver realistic, data-driven decisions that provide tangible value to our clients. Our consultants are known for their ability to break down complex programs and frameworks into actionable steps.Key ResponsibilitiesParticipate in Cybersecurity, Information Security, Risk, Compliance, and/or Data Privacy Programs or Projects under the guidance of senior consultantsCompliance framework mapping and implementationRegulatory mapping and implementationAdvisory-side, risk, or regulatory remediation managementReadiness for new laws and regulationsRisk, Compliance, or Information Security risk reporting and monitoringCreation of roadmaps to mature or advance Risk, Compliance, and Information Security Strategies/Programs/ControlsDesign and enablement of cyber controls functions and processesChange management related to regulatory adoption or compliance changesAudit or certification readinessAssist with GRC (Governance, Risk, and Compliance) related tasks and projectsWork with GRC/Cybersecurity solutions, tools, and technologiesDesign or mature controls for technical areas such as Software Development, Identity and Access Management, Business Continuity and Resiliency, CloudApply industry-specific regulations, laws, and standards such as SOC 2, ISO 27001, CMMC / NIST 800-171, NIST 800-53, CCPA/CPRA, HIPAA, PCIServe as an internal auditor on client audit preparationCoordinate and advise clients through external auditsContinuously learn from senior consultants to develop expertise and advance within the roleQualificationsRequired:Humble, Hungry, SmartDemonstrated business and technology acumenStrong written and verbal communication skillsExperience solving real business problemsProven track record of delivering resultsExperience working with and/or supporting a teamAbility to work across industries, roles, functions, and technologiesAuthorization for permanent employment in the United States (this position is not eligible for immigration sponsorship)Preferred:Bachelor’s degree5+ years of professional experienceRelevant cybersecurity, systems, or networking certifications: CC (Certified in Cybersecurity), CEH, CCNA, CompTIA Security+, GISF, GSEC, SSCP, ISACA Cybersecurity Fundamentals CertificateExperience across our service offerings
#J-18808-Ljbffr