> Markdown version of [/jobs/ext/2251214-cybersecurity-consultant](https://www.wearedevelopers.com/jobs/ext/2251214-cybersecurity-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CyberSecurity Consultant - **Company:** Inspyr Solutions - **Location:** Jersey City, NJ, United States - **Experience:** Expert - **Salary:** $145,600.0 - $176,800.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, IBM AIX, Cloud Computing, Cloud Computing Security, Cyber Security, Linux, Oracle (Applications), Software Vulnerability Management, Cloud Platform System, Qualys, Vulnerability Analysis - **Published:** August 26, 2026 - **Apply:** https://www.dice.com/job-detail/32797c0d-2d7d-4490-8c1d-ebc4ecb1615a ## About the Role * Skills required are current or previous experience with vulnerability and compliance process and assessment using Qualys, administration preferred. * Recent hands-on experience with QualysGuard Policy Compliance product and building customized controls. * Solid working experience and knowledge of *nix operating systems (admin skill in Linux/AIX a plus). * Knowledge of Windows networking, windows domains and active directory, GPOs and end-point security. * Performed system hardening based on security standards. * Ability to perform threat, vulnerability and risk assessments against environment. * Experience in preparing reports and metrics on the status of completed assessments, progress of remediation actions and performance of the assessment tools. * Knowledge in industry and government security standards (NIST, CIS, etc.). * Familiarity with standard security best practices and vulnerability management processes including compliance reporting. * Excellent verbal and written communication skills, as well as organization and presentation skills. * 6-7 years of experience. ## Description * Drive risk management initiatives for multi-cloud environments; ensure alignment with enterprise security standards and regulatory expectations. * Understand the technical architecture and operational setup of cloud servers and provider integrations to evaluate exposure, control effectiveness, and residual. * Support internal projects addressing cloud cybersecurity threats; assess the effectiveness and comprehensiveness of first-line cybersecurity controls. * Review and challenge risk assessments, scenario analyses, control testing, and remediation plans; assist with issue oversight and escalations. * Monitor and analyze risk trends (internal and external) to proactively mitigate potential issues impacting cloud security posture. * Promote actions to address root causes of risks Cybersecurity Controls & Reporting * Represent EIS GRC in working groups focused on cloud security and multi levels of reporting. * Translate complex cloud and cybersecurity concepts into clear business terms for non-technical stakeholders and senior management across the Combined U.S. Operations. * Prepare concise, executive-level reports on risk management activities, control outcomes, and emerging issues for senior leadership. Cyber Risk Quantification * Collaborate on initiatives that strengthen the enterprise cybersecurity program; ensure projects align with the cloud security governance model. * Regularly review and update risk frameworks to reflect changes in the cloud threat landscape, including Oracle-specific risks. * Lead discussions at all levels to incorporate cloud security risk elements into business strategies and decision-making. * Guidelines of business through cloud security assessments, translating technical/security questions into business impact and prioritization. Auditing & Compliance * Conduct and/or oversee audits and other assessments of cloud technologies and on-prem technologies, ensuring effectiveness, sustainability, and maturity controls. * Ensure adherence to regulatory requirements and internal policies, including coordination on remediation of identified gaps. * Support oversight activities related to enforcement agencies, regulatory examinations, and related obligations. Emerging Security Trends * Stay current with multiple Cloud platforms for best practices, emerging technologies, and regulatory changes impacting cloud environments. * Leverage insights to enhance the security posture and influence strategic roadmaps across business and technology teams. KRIs & Metrics * Influence comprehensive and consistent practices to identify, measure, monitor, report, and manage information risks. * Ensure metric quality and relevance (e.g., control efficacy, incident trends, misconfiguration rates, vulnerability aging, and remediation timeliness). * Responsible for participating with the Information Security team to plan, develop, and execute vulnerability and policy compliance assessments. * Configures enterprise vulnerability assessment tools, performs internal/external scans, analyzes detected vulnerabilities, identifies the relevant threats and eliminates false positives through manual validation. * Generates reports on assessment findings and summarizes them to facilitate remediation tasks for other operational teams. * Will create and updates procedures for the vulnerability and compliance assessment process, including procedures on using the assessment tool (Qualys). * Work with operation teams and stakeholders on building the asset inventory and grouping. * Review and update security standards. Will create and maintain compliance controls based on company''s security standards. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)