> Markdown version of [/jobs/ext/2037111-security-consultant](https://www.wearedevelopers.com/jobs/ext/2037111-security-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Consultant - **Company:** SAI SYSTEMS - **Location:** United States (Remote available) - **Contract:** Permanent contract - **Skills:** Amazon Web Services, JIRA, Microsoft Azure, Cloud Computing Security, Cyber Security, DevOps, Identity and Access Management, Network Security, Open Web Application Security, Security Information and Event Management, Software Vulnerability Management, Google Cloud, Cloud Platform System, QRadar, Azure Security Center, Information Technology, Palo Alto Networks, Nessus, Microsoft Sentinel, Fortinet, CIS Benchmarks, Prisma Cloud Platform, Splunk, Network Server, Cisco, Qualys, Servicenow, Vulnerability Analysis - **Published:** August 12, 2026 - **Apply:** https://www.dice.com/job-detail/b7b276d3-3253-453f-b619-868056aae9bb ## About the Role * Vulnerability management and risk assessment * Threat modeling and threat assessment * Infrastructure and network security * Cloud security across Azure, AWS, or Google Cloud Platform * Security configuration and hardening * Identity and Access Management (IAM) * Endpoint and server security * SIEM and security monitoring concepts * Security incident response * Patch and remediation management * Security policies, standards, and controls * Risk management and security governance * ITIL / change management processes * Security frameworks such as NIST CSF, NIST 800-53, CIS Controls, ISO 27001, and OWASP Preferred Tools * Vulnerability: Tenable/Nessus, Qualys, Rapid7 * SIEM: Splunk, Microsoft Sentinel, QRadar * Cloud Security: Microsoft Defender, AWS Security Hub, Wiz, Prisma Cloud * Ticketing/Change: ServiceNow, Jira * Endpoint: CrowdStrike, Microsoft Defender for Endpoint * Network Security: Palo Alto, Fortinet, Cisco security technologies Preferred Certifications * CISSP * CISM * Security+ * CEH * CRISC * GIAC certifications * Cloud security certifications such as AZ-500, AWS Security Specialty, or Google Professional Cloud Security Engineer, * Strong analytical and problem-solving skills * Ability to translate technical vulnerabilities into business risk * Strong communication with technical and non-technical stakeholders * Experience managing remediation across multiple teams * Ability to prioritize security risks based on severity and business impact * Strong documentation, reporting, and security governance skills ## Description * Perform comprehensive security assessments across infrastructure, systems, applications, networks, and cloud environments. * Maintain accurate asset inventories, identify security gaps, classify critical assets, and ensure appropriate security controls are applied. * Lead vulnerability assessments, analyze findings, prioritize risks based on severity and business impact, and track remediation through closure. * Conduct threat assessments and remediation analysis to identify attack vectors, security weaknesses, and potential business impacts. * Develop and recommend remediation strategies for vulnerabilities, misconfigurations, and security control deficiencies. * Support infrastructure and operations security, including servers, networks, endpoints, cloud platforms, identity/access controls, and security technologies. * Evaluate proposed infrastructure and system changes for security risks and ensure appropriate change management and security controls are followed. * Participate in security architecture and design reviews to ensure solutions meet organizational security standards. * Monitor security risks and collaborate with infrastructure, application, cloud, DevOps, and operations teams to resolve security issues. * Develop security risk reports, assessment findings, remediation plans, and executive-level summaries. * Establish and maintain security policies, standards, procedures, and control requirements. * Support security audits, compliance assessments, risk reviews, and regulatory requirements. * Coordinate with incident response teams when vulnerabilities or threats require immediate investigation or remediation. * Track security metrics, remediation SLAs, risk acceptance, and recurring vulnerabilities. * Provide security guidance and recommendations to technical teams and business stakeholders. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)