Cybersecurity Consultant

TekFortune INC
United States
14 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Data Auditing Information Technology Audit Information Technology

Job description

* NYDFS Compliance Assessments * Perform NYDFS cybersecurity regulation assessments and Security Control Assessments * Evaluate compliance with 23 NYCRR Part 500 requirements. * Conduct regulatory readiness and examination support reviews. * Assess control design and operating effectiveness. * Develop compliance scorecards and maturity assessments. * Operational NYDFS evidence tracking across in-scope applications (with clear status and aging visibility. * Validated and organized evidence artifacts maintained in the agreed repository structure and naming convention. * A prioritized list of out-of-compliance risk assessments and a remediation action plan (where applicable). * Weekly status update package (progress, blockers, top risks, at-risk items, next steps). * A documented process improvement plan for the annual NYDFS attestation cycle (templates, cadence, QA checks, escalation path, and metrics). * Work closely with external application vendor contacts to ensure application compliance and customer s applications / data remain secure.

IT Audit Activities * Execute risk based IT audits. * Develop audit plans, audit programs, and test procedures. * Conduct walkthroughs and control validation. * Review evidence and perform sample testing. * Document audit observations and recommendations. * Prepare audit workpapers and audit report

Client Advisory * Facilitate stakeholder workshops. * Present assessment findings to executive leadership. * Advise CISOs, CIOs, and compliance teams on NYDFS requirements. * Assist customers in developing target operating models. * Support cybersecurity program modernization initiatives

Requirements

Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Systems, or related field. * Strong English communication skills (written and verbal); ability to drive follow-ups with business stakeholders and vendor contacts. * Experience coordinating evidence/artifact collection for audits, attestations, or regulatory requirements. * Strong organization skills: tracking, repository hygiene, and maintaining audit-ready traceability. * Ability to validate evidence for completeness and applicability; escalate gaps and drive closure. * Project management fundamentals (status reporting, issue/risk escalation, etc). * 5+ years of cybersecurity, risk, or compliance consulting experience. * Strong understanding of NYDFS Cybersecurity Regulation (23 NYCRR Part 500). * Experience conducting cybersecurity assessments and regulatory compliance reviews. * Knowledge of cybersecurity governance and risk management practices. * Excellent communication and client-facing skills.

Preferred Certifications : CISSP, CISA, CISM, CRISC

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

3:16 min

Advantages of reproducible configurations and instantaneous rollbacks

Álvaro Martín Lozano · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:08 min

Conducting data audits and adversarial testing on models

Toju Duke · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all