Senior Security Consultant

Kittery, ME Full Time
POSTED ON 3/3/2024
The primary responsibility of the Sr. Security Transformation Consultant is to deliver Information Security, Compliance and IT Risk Management services and solutions that improve Blue Mantis customers' security posture and ability to preempt and respond to threats and vulnerabilities. This includes continuous improvement for the confidentiality, integrity and availability of our customers' technology and data, processes, people and organization and vendors and supply chain.

The Sr. Security Transformation Consultant will work as part of the Security Practice team to provide leadership assistance and solution architecture in both a pre- and post-sales consultative capacity that includes managed and professional services.

Department
Blue Mantis
Employment Type
Full Time
Location
Remote
Workplace type
Fully remote
Reporting To
Don Lens
Key Responsibilities
The Sr. Security Transformation Consultant will also work in a supporting role and assist with customer escalations. This may include security, IT and risk advisory related services.

  • Act as CISO on Demand or virtual CISO for Blue Mantis customers
  • Deliver security consulting engagements and assessments for customers following standard methodologies such as NIST 800-53/171/CSF, SANS CIS Top 20, ISO 27001/2, AWS and Azure Well-architected frameworks, etc.
  • Build business resilience services including BIA, BCP and DR strategies and planning.
  • Provide IT and Security Risk Management services (qualitative and quantitative)
  • Assist with development, delivery, and operational support of managed services and managed security services.
  • Develop information security plans and policies, customized to client requirements and risk profile.
  • Architect and design of security solutions for client environments. This may include hands on configuration support for customer systems and tools.
  • Assess IT network and security architectures as they relate to managing identities and access privileges, delegated administration models, workflow, and access control models.
  • Assist pre-sales client engagement opportunity initiatives, including the architecture, scoping, and creation of client engagement proposals.
  • Consult with customer and provide recommendations on IT solutions to help clients manage information security risk.
  • Formulate executive level recommendations related to information security strategy.
  • Provide oversight and leadership for other team members during client engagement execution, ensuring timely progress, achievement of objectives, and delivery quality.
  • Enhance team competence by answering technical and procedural questions for less experienced team members; teaching improved processes; mentoring team members.
  • Track emerging security practices, threats and vulnerabilities and contribute to building internal go-to-market strategy.
  • Continue to develop security skills and certifications necessary for the Information Security Consultant role.
Additional Responsibilities
  • Support and help build / improve customer security and privacy risk, compliance and regulatory program initiatives such as HIPAA/HITRUST, GDPR/CCPA/NYS SHIELD/MA 201CMR 17, PCI, SOC-2, SEC, etc.
  • Develop incident response plans, procedures, and advise customers on steps to achieve incident response readiness (logging and monitoring configurations, triage and escalation procedures, wider stakeholder liaison, tabletop exercise, etc.)
  • Consult during customer engagements to evaluation the processes, controls, and associated risks with respect to good practices such as ITIL and DevOps and information security.
Skills, Knowledge & Expertise
  • 8 years as an IT Leadership role
  • 5 years in a Security Consulting role
  • 10 years in progressively sophisticated roles in information security consulting, coupled with demonstrable experience in various Cybersecurity domains, including security strategy, security architecture, security consulting and security operations in hybrid computing environments.
  • Proven experience conducting assessments following frameworks such as ITIL, NIST CSF, ISO 27000, HIPAA, HITRUST, PCI, and CIS
  • Understanding of networking fundamentals is required.
  • Cloud security experience in AWS, Azure / Microsoft 365 platforms. Cloud security certification required or within 6 months of hire.
  • Experience and background in security operations related to SIEM, SOC, EDR, and MDR solutions and platforms.
  • The position requires a strong, diverse technical background and exceptional oral and written communications skills. Experience communicating across all levels of an organization with demonstrated experience communicating at an executive and Board of Directors level.
  • The candidate must demonstrate proven success in working in a team as well as independently and exhibit follow-through to understand root causes of issues. A collaborative approach is a must, as well as the ability to effectively communicate with a wide range of technical and non-technical personnel.
  • This position requires handling multiple engagements with overlapping deadlines. A demonstrated ability to write clear, coherent, and precise reports on a multiplicity of complex technical issues is essential.
  • High-level technical skills supporting IT related projects and customers.
  • Experience in process and methodology development including ability to recognize areas for internal improvement and make recommendations for improvement.
  • Experience with data privacy laws and regulations including GDPR, CCPA, SHEILD, 201 CMR 17.00, SEC ruling and other
  • Must be able to work in a fast-paced environment

Preferred Experience
  • Previous experience as a CISO or virtual CISO or CIO
  • In depth system knowledge in security related tools necessary for assessments and testing
  • Information Security Consultant with relevant security certifications, for example (CISSP, CISA, CISM, GIAC, OSCP, CEH, CNDA, Security )
  • ITIL V3 or V4 certification
  • Subject matter expert in AWS and/or Microsoft Azure / Microsoft 365 security
  • Excellent written and verbal communication skills
  • Experience conducting IT and cybersecurity assessments
  • Experience supporting compliance audits and coordinating with auditors
  • Experience with Business Impact Analysis and Business Continuity Planning
  • Minimum of 4 Year College degree desired, master's degree and above in related field is a plus.
  • Must possess or be able to quickly gain a thorough understanding of Blue Mantis service offerings, technical capabilities, and technical direction
  • Understanding of Managed Services and MSSP services
  • Demonstrated ability to address and resolve escalations
  • Demonstrated ability to identify and mitigate risk across projects
About Blue Mantis
Blue Mantis is a leading strategic digital technology services provider with a 30 year history of successfully helping clients achieve business modernization by applying next-generation technologies including managed services, cybersecurity and cloud. Headquartered in Portsmouth, New Hampshire, the company provides digital technology services and strategic guidance to ensure clients quickly adapt and grow through automation and innovation. Blue Mantis partners with more than 1,200 leading mid-market and enterprise organizations in a multitude of vertical industries and is backed by leading private equity firm, Abry Partners.


GreenPages is committed to a policy of equal employment opportunity. GreenPages does not discriminate in any aspect of its employment practices against any qualified applicant or employee on account of race, color, creed, religion, sex, sexual orientation, national origin, disability, marital status, or veteran status. We encourage you to send us your resume if you are interested in pursuing a career with us.

 

Salary.com Estimation for Senior Security Consultant in Kittery, ME
$60,776 to $76,116
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs with skills like those required for the Senior Security Consultant.

Click the checkbox next to the jobs that you are interested in.

  • Access Control Skill

    • Income Estimation: $52,320 - $74,033
    • Income Estimation: $56,090 - $84,562
  • Investigations Skill

    • Income Estimation: $55,372 - $80,814
    • Income Estimation: $55,735 - $87,449
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at GreenPages

GreenPages
Hired Organization Address Kittery, ME Full Time
We are seeking a skilled and experienced Senior NetSuite Administrator to join our team. The ideal candidate will have e...
GreenPages
Hired Organization Address Kittery, ME Full Time
The primary responsibility of the Security Transformation Consultant is to deliver Information Security, Compliance and ...
GreenPages
Hired Organization Address Kittery, ME Full Time
The Senior Presales Solutions Architect provides high-level customer support in the consultation, planning, design, and ...

Not the job you're looking for? Here are some other Senior Security Consultant jobs in the Kittery, ME area that may be a better fit.

Security Transformation Consultant

GreenPages, Kittery, ME