Security Advisor – Control Assessor

🕒 May 28

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Soteria - Security Solutions & Advisory

Soteria - Security Solutions & Advisory

11 - 50 employees

🔒 Cybersecurity

📋 Compliance

💰 $2.5M Venture Round on 2018-04

Cybersecurity • Compliance

Soteria is a cybersecurity company that provides expert advisory, consulting, and tailored solutions to help businesses prevent and respond to security incidents. Based in Charleston, South Carolina and established in 2014, Soteria offers a wide range of services including managed detection and response, domain watch, Microsoft 365 risk management, and offensive security assessments. The company emphasizes personalized security insights and hands-on assistance, leveraging the extensive experience of its team across private industries, state governments, and federal intelligence. Soteria aims to extend the capabilities of security teams and provide peace of mind with its comprehensive cybersecurity solutions.

📋 Description

• Perform control gap assessments to help organizations understand where gaps exist within client security programs. • Provide project management tasks to ensure assessment delivery is on time and meets the client’s needs. • Identify gaps in desired control implements and determine appropriate recommendations for clients based on identified regulatory framework and desired controls. • Review information system security controls and evaluate efficacy. • Perform detailed audit-like assessments according to cybersecurity-related frameworks. • Analyze documentation and evidence provided to verify adherence to prescribed cybersecurity-related frameworks. • Develop and review policies, procedures, and other related documentation to ensure compliance with control frameworks. • Write clear and well-structured reporting to detail observations and strategic recommendations, at an appropriate level for the intended audience. • Identify cybersecurity-related regulatory requirements (e.g., PCI-DSS, HIPAA, CCPA, GDPR, NYDFS) as well as gaps in compliance, and develop strategic plans to achieve and maintain compliance. • Work closely with clients and the Soteria team to develop remediation plans to ensure clients achieve their desired outcomes. • Document and present findings and recommendations to clients, including C-Suite and board-level executives, in a professional manner. • Support project team with quality assurance review of deliverables. • Maintain relationships with clients post-assessment in order to assist and advise as they continue to build and improve their security. • Maintain competence in security trends, technologies, and practices through self-study and attendance of industry events. • Conduct interviews with clients and the Soteria team to evaluate a client’s IT environment and security practices. • Assess and research common business platforms and technologies to deliver recommendations for secure configurations. • Maintain integrity and confidentiality for sensitive client information.

🎯 Requirements

• 5+ years of industry experience with an understanding of the cybersecurity space. • 2+ years of experience in a cybersecurity consulting role; specifically conducting IT audits or assessments. • Familiarity with cybersecurity frameworks such as NIST CSF, CMMC, ISO 27001, and CIS Controls. • Relevant certifications such as CISSP, CISM, CISA, etc. • Strong knowledge of Microsoft Suite, Advanced Excel skills a plus. • Candidates must be legally authorized to work full time within the United States and able to pass a background check.

🏖️ Benefits

• Soteria is an Equal Opportunity Employer. • Competitive salary with health insurance and retirement plans. • Professional development opportunities.

Apply Now

Similar Jobs

🕒 May 28

Celestica

10,000+ employees

🤝 B2B

Cybersecurity Lead overseeing product security for network hardware and OS. Leading integration of security in product development lifecycle and vulnerability management strategies.

🕒 May 27

Defense Unicorns

51 - 200

🔒 Cybersecurity

Cybersecurity Engineer managing NIST-800 accreditation for DoD software systems at Defense Unicorns. Leading security policy development and collaboration in a remote working environment.

🇺🇸 United States – Remote

💵 $123.3k - $166.8k / year

💰 Seed Round on 2022-10

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 May 27

Essnova Solutions, Inc.

11 - 50

🏛️ Government

🔒 Cybersecurity

🤖 Artificial Intelligence

Security / RMF Lead at Essnova Solutions ensuring federal information systems compliance and security posture. Managing system security plans and risk management framework implementation.

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 May 27

Second Front Systems

51 - 200

☁️ SaaS

🏛️ Government

Cybersecurity Assessment Engineer at Second Front Systems ensuring cloud application security. Collaborating with engineering teams to assess vulnerabilities and maintain compliance with security standards.

🇺🇸 United States – Remote

💵 $90k - $130k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 May 27

Keeper Security, Inc.

501 - 1000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

🇺🇸 United States – Remote

💰 Private Equity Round - Keeper Security on 2023-05

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer