Security Consultant
SAI SYSTEMS
United States
1 day ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Amazon Web Services
JIRA
Microsoft Azure
Cloud Computing Security
Cyber Security
DevOps
Identity and Access Management
Network Security
Open Web Application Security
Security Information and Event Management
Software Vulnerability Management
Google Cloud
+16 more
Cloud Platform System
QRadar
Azure Security Center
Information Technology
Palo Alto Networks
Nessus
Microsoft Sentinel
Fortinet
CIS Benchmarks
Prisma Cloud Platform
Splunk
Network Server
Cisco
Qualys
Servicenow
Vulnerability Analysis
Job description
- Perform comprehensive security assessments across infrastructure, systems, applications, networks, and cloud environments.
- Maintain accurate asset inventories, identify security gaps, classify critical assets, and ensure appropriate security controls are applied.
- Lead vulnerability assessments, analyze findings, prioritize risks based on severity and business impact, and track remediation through closure.
- Conduct threat assessments and remediation analysis to identify attack vectors, security weaknesses, and potential business impacts.
- Develop and recommend remediation strategies for vulnerabilities, misconfigurations, and security control deficiencies.
- Support infrastructure and operations security, including servers, networks, endpoints, cloud platforms, identity/access controls, and security technologies.
- Evaluate proposed infrastructure and system changes for security risks and ensure appropriate change management and security controls are followed.
- Participate in security architecture and design reviews to ensure solutions meet organizational security standards.
- Monitor security risks and collaborate with infrastructure, application, cloud, DevOps, and operations teams to resolve security issues.
- Develop security risk reports, assessment findings, remediation plans, and executive-level summaries.
- Establish and maintain security policies, standards, procedures, and control requirements.
- Support security audits, compliance assessments, risk reviews, and regulatory requirements.
- Coordinate with incident response teams when vulnerabilities or threats require immediate investigation or remediation.
- Track security metrics, remediation SLAs, risk acceptance, and recurring vulnerabilities.
- Provide security guidance and recommendations to technical teams and business stakeholders.
Requirements
- Vulnerability management and risk assessment
- Threat modeling and threat assessment
- Infrastructure and network security
- Cloud security across Azure, AWS, or Google Cloud Platform
- Security configuration and hardening
- Identity and Access Management (IAM)
- Endpoint and server security
- SIEM and security monitoring concepts
- Security incident response
- Patch and remediation management
- Security policies, standards, and controls
- Risk management and security governance
- ITIL / change management processes
- Security frameworks such as NIST CSF, NIST 800-53, CIS Controls, ISO 27001, and OWASP
Preferred Tools
- Vulnerability: Tenable/Nessus, Qualys, Rapid7
- SIEM: Splunk, Microsoft Sentinel, QRadar
- Cloud Security: Microsoft Defender, AWS Security Hub, Wiz, Prisma Cloud
- Ticketing/Change: ServiceNow, Jira
- Endpoint: CrowdStrike, Microsoft Defender for Endpoint
- Network Security: Palo Alto, Fortinet, Cisco security technologies
Preferred Certifications
- CISSP
- CISM
- Security+
- CEH
- CRISC
- GIAC certifications
- Cloud security certifications such as AZ-500, AWS Security Specialty, or Google Professional Cloud Security Engineer, * Strong analytical and problem-solving skills
- Ability to translate technical vulnerabilities into business risk
- Strong communication with technical and non-technical stakeholders
- Experience managing remediation across multiple teams
- Ability to prioritize security risks based on severity and business impact
- Strong documentation, reporting, and security governance skills
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
over 1 year ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago
DC
Daniel Cranney
The Overflow: Security and Privacy
5 months ago