Cybersecurity Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
* NYDFS Compliance Assessments * Perform NYDFS cybersecurity regulation assessments and Security Control Assessments * Evaluate compliance with 23 NYCRR Part 500 requirements. * Conduct regulatory readiness and examination support reviews. * Assess control design and operating effectiveness. * Develop compliance scorecards and maturity assessments. * Operational NYDFS evidence tracking across in-scope applications (with clear status and aging visibility. * Validated and organized evidence artifacts maintained in the agreed repository structure and naming convention. * A prioritized list of out-of-compliance risk assessments and a remediation action plan (where applicable). * Weekly status update package (progress, blockers, top risks, at-risk items, next steps). * A documented process improvement plan for the annual NYDFS attestation cycle (templates, cadence, QA checks, escalation path, and metrics). * Work closely with external application vendor contacts to ensure application compliance and customer s applications / data remain secure.
IT Audit Activities * Execute risk based IT audits. * Develop audit plans, audit programs, and test procedures. * Conduct walkthroughs and control validation. * Review evidence and perform sample testing. * Document audit observations and recommendations. * Prepare audit workpapers and audit report
Client Advisory * Facilitate stakeholder workshops. * Present assessment findings to executive leadership. * Advise CISOs, CIOs, and compliance teams on NYDFS requirements. * Assist customers in developing target operating models. * Support cybersecurity program modernization initiatives
Requirements
Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Systems, or related field. * Strong English communication skills (written and verbal); ability to drive follow-ups with business stakeholders and vendor contacts. * Experience coordinating evidence/artifact collection for audits, attestations, or regulatory requirements. * Strong organization skills: tracking, repository hygiene, and maintaining audit-ready traceability. * Ability to validate evidence for completeness and applicability; escalate gaps and drive closure. * Project management fundamentals (status reporting, issue/risk escalation, etc). * 5+ years of cybersecurity, risk, or compliance consulting experience. * Strong understanding of NYDFS Cybersecurity Regulation (23 NYCRR Part 500). * Experience conducting cybersecurity assessments and regulatory compliance reviews. * Knowledge of cybersecurity governance and risk management practices. * Excellent communication and client-facing skills.
Preferred Certifications : CISSP, CISA, CISM, CRISC
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Best Paying Jobs in Technology
What Are The Top Skills Required For Azure Developers?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.