Senior Cybersecurity Consultant (Vulnerability & Threat Response)

Motion Recruitment
New York, NY, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Application Firewall Cyber Security Internet Security Secure Coding Software Vulnerability Management Software Security

Job description

We are seeking a Senior Cybersecurity Consultant to join their threat management and security operations practice. In this heavily integrated role, you will be at the forefront of vulnerability management, assessing complex environments, coordinating threat response activities, and guiding technical remediation. Working closely with infrastructure, engineering, and client-side stakeholders, you will act as a critical technical liaison to ensure security benchmarks are rigorously met, Web Application Firewalls (WAF) are optimally configured, and enterprise assets are accurately tracked., * Partner with cross-functional teams to continuously identify, prioritize, and remediate security vulnerabilities across the environment.

  • Coordinate directly with Security Operations and Engineering teams to contain, track, and resolve active security threats, ensuring the timely closure of open findings.
  • Execute comprehensive CIS Benchmark audits across subsidiary networks, document technical findings, and develop actionable remediation plans.
  • Review current WAF coverage to identify misconfigurations or coverage gaps, escalating recommendations to relevant teams.
  • Collaborate with infrastructure groups to catalog, classify, and maintain the accuracy of the enterprise asset inventory.
  • Guide stakeholders step-by-step through technical remediation efforts (such as firewall rule changes), providing hands-on enablement.
  • Serve as the central liaison between security and technology teams to guarantee that system changes are executed safely, correctly, and on schedule.

This is a fully remote contract opportunity slated to run through the end of the year, offering highly competitive compensation aligned with the level of expertise required for this crucial technical advisory role. This engagement provides the opportunity to work alongside top-tier cybersecurity professionals, driving impactful infrastructure changes and fortifying the security posture of global environments.

Requirements

  • Proven background in Vulnerability Management, threat response, and daily security operations within a large-scale enterprise environment.
  • Strong hands-on experience conducting and managing CIS (Center for Internet Security) Benchmark audits and gap analyses.
  • Technical proficiency reviewing Web Application Firewall (WAF) configurations and recommending rule updates.
  • Experience with IT Asset Management principles, maintaining deep visibility into hardware and software enterprise assets.
  • Solid understanding of Application Security (AppSec) fundamentals, compliance controls, and secure coding concepts.
  • Demonstrated experience navigating formal IT Change Management processes, including submitting, tracking, and executing change tickets.
  • Strong stakeholder management skills with the ability to bridge the gap between technical infrastructure teams and business leaders.

About the company

Our client is a premier global professional services and risk advisory firm that partners with some of the world’s largest organizations to solve complex technical and business challenges. Operating at a massive scale, they provide elite consulting and enterprise security solutions that protect critical infrastructure and drive secure digital transformation across a wide range of industries.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:09 min

Inherent security flaws in legacy internet protocols

Tino Sokic · World Congress 2022

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all