> Markdown version of [/jobs/ext/3027196-cybersecurity-consultant](https://www.wearedevelopers.com/jobs/ext/3027196-cybersecurity-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Consultant - **Company:** ExlService Holdings, Inc. - **Location:** New York, NY, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Access Network, Software as a Service, Cyber Security, Data Security, Disaster Recovery, Monitoring of Systems, Supervisory Control and Data Acquisition (SCADA), Networking Hardware, Intrusion Detection Systems, Network Security, Microsoft Security Essentials, Network Architecture, Network Segmentation, Systems Development Life Cycle, Role-Based Access Control, Remote Access Technology, Azure Active Directory, Secure Coding, Security Information and Event Management, Single Sign-On, Software Vulnerability Management, Data Logging, In-Plane Switching (IPS), Firewalls (Computer Science), Microsoft InTune, Information Technology, Patch Management, Microsoft Sentinel, Key Vault, Vulnerability Analysis - **Published:** September 22, 2026 - **Apply:** https://www.thejobnetwork.com/job/5c2d8a9f-c075-4979-ba4e-53b7b206334c/cyber-security ## About the Role * Bachelors degree in Computer Science, IT, Cybersecurity, Engineering, or a related field. * 48 years of hands-on experience in cybersecurity engineering, IT infrastructure security, security operations, or security control implementation. * Practical experience implementing identity and access controls, including MFA, SSO, RBAC, least privilege, privileged access, service accounts, and access reviews. * Hands-on exposure to Microsoft security tools such as Entra ID/Azure AD, Intune, Defender, Sentinel, PIM, Key Vault, LAPS, or equivalent platforms. * Experience configuring SIEM/logging integrations, validating log ingestion, supporting SOC monitoring, and assisting with alert triage or incident investigation. * Good understanding of vulnerability scanning, patch management, remediation tracking, exception handling, and evidence collection. * Experience supporting backup validation, restoration testing, disaster recovery documentation, and incident response playbook execution. * Familiarity with network security concepts such as firewall logs, IDS/IPS, network segmentation, secure remote access, and endpoint protection. * Ability to translate cybersecurity control requirements into implementation steps, technical runbooks, evidence packs, and closure documentation. * Exposure to OT/ICS, SCADA, passive monitoring tools such as Zeek, Suricata, Malcolm, or regulated environments would be preferred. ## Description * Implement cybersecurity remediation activities across defined workstreams and sprint plans. * Configure and maintain identity and access controls including MFA, SSO, role-based access, least privilege, privileged accounts, service accounts, and periodic access reviews. * Support implementation of privileged access controls using tools such as Windows LAPS, PIM, managed identities, key vaults, or equivalent native security capabilities. * Execute vulnerability management activities including vulnerability scanning, findings validation, remediation tracking, and risk-based prioritization. * Implement and support patch management processes, including patch testing, deployment coordination, SLA tracking, and exception handling. * Configure centralized logging and monitoring integrations into SIEM platforms such as Microsoft Sentinel or equivalent tools. * Ensure critical infrastructure, applications, network devices, firewalls, SaaS platforms, and security tools generate usable logs for SOC monitoring. * Support SOC alert triage, incident investigation, escalation, evidence collection, and incident response playbook execution. * Maintain and update incident response plans, technical runbooks, communication workflows, and tabletop exercise evidence. * Implement backup and recovery controls, including immutable backups, scheduled backup validation, restoration testing, and recovery evidence documentation. * Build and maintain technical asset inventories, data inventories, network architecture diagrams, and mappings to critical business processes. * Support network security improvements including firewall rule review, network access controls, network segmentation, IDS/IPS logging, and secure remote access. * Implement data protection controls such as encryption, data labeling, retention enforcement, DLP policies, and secure data handling controls. * Support secure development controls including secure code repositories, SDLC documentation, coding/testing standards, peer review processes, and separation of duties between development and deployment. * Coordinate with MSPs and internal IT teams for hands-on execution of patching, backup, monitoring, and endpoint security activities. * Produce control evidence, implementation documentation, dashboards, and remediation status updates for governance and audit purposes. * Support OT/ICS security implementation, including passive monitoring setup, asset-boundary validation, OT evidence packs, and coordination with OM/GOP providers where applicable. * Build and run passive OT monitoring pilots using tools such as Zeek, Suricata, Malcolm, or similar platforms where required. * Track assigned activities through sprint plans, maintain implementation notes, and report progress against defined success measures.