
2 - 10 employees
🤝 B2B
💼 Consulting
B2B • Consulting
24-MAG is a commercial strategy and execution firm that helps B2B organizations design and implement systems, workflows, and operating rhythms for sales, client management, and cross-functional projects. They focus on transforming scattered processes into aligned, measurable, and scalable commercial functions—covering pipeline structure, account management frameworks, and operational discipline for teams seeking efficient, intentional growth.
🔥 0 minutes ago
🗽 New York – Remote
💵 $85 - $105 / hour
⏳ Contract/Temporary
🟠 Senior
🔴 Lead
👮♂️ Cybersecurity / Security Engineer
Improve your chances of getting an interview by checking your resume score before you apply.

2 - 10 employees
🤝 B2B
💼 Consulting
B2B • Consulting
24-MAG is a commercial strategy and execution firm that helps B2B organizations design and implement systems, workflows, and operating rhythms for sales, client management, and cross-functional projects. They focus on transforming scattered processes into aligned, measurable, and scalable commercial functions—covering pipeline structure, account management frameworks, and operational discipline for teams seeking efficient, intentional growth.
• Review simulated vendor SOC 2 reports, security questionnaires, and penetration-test evidence • Evaluate vendor documentation against defined buyer security standards • Assess whether submitted evidence supports stated security controls • Identify missing documentation, control gaps, inconsistencies, and unsupported claims • Produce recommendations for approval, remediation, escalation, or rejection • Review SOC 2 scope, reporting periods, control coverage, exceptions, and auditor conclusions • Identify scope mismatches between vendor services and assessed systems • Detect expired or insufficient bridge letters and reporting-period gaps • Evaluate penetration-test evidence for currency, relevance, and scope • Assess supporting compliance materials • Evaluate vendor data collection, access, processing, storage, and transfer practices • Assess sub-processor, hosting-provider, and downstream-partner risks • Review data residency, retention, deletion, access-control, and encryption considerations • Identify security concerns requiring additional due diligence or contractual safeguards • Evaluate vendor responses in procurement and renewal contexts • Author step-level vendor-security review rubrics • Develop reference responses reflecting experienced professional judgment • Define criteria for evidence quality, control effectiveness, data risk, and approval readiness • Distinguish documentation issues from material security deficiencies • Refine scoring standards for consistent reviewer assessments
• At least 8 years of professional experience in security review, vendor risk management, third-party risk, or information security • Hands-on experience evaluating SOC 2 reports, security questionnaires, and compliance evidence • Strong understanding of vendor due diligence and third-party security assessment processes • Experience identifying control gaps, evidence limitations, and scope inconsistencies • Familiarity with data-handling, privacy, sub-processor, and supply-chain security risks • Excellent written communication and structured analytical skills • Ability to produce detailed rubric-style feedback and defensible review conclusions • Ability to work independently in a remote and asynchronous environment • A degree in cybersecurity, information systems, computer science, risk management, business, or a related discipline may be helpful • Professional certifications such as CISSP, CISA, CISM, or CRISC may strengthen an application • Equivalent senior-level professional experience in vendor security or third-party risk may be considered • Experience within a formal third-party risk management programme • Background in SaaS, cloud, technology, or enterprise vendor assessments • Familiarity with ISO 27001, NIST, or similar security frameworks • Experience reviewing penetration-test reports and remediation evidence • Knowledge of procurement, contract-renewal, and vendor-onboarding workflows • Prior task-writing, rubric-authoring, quality-review, or AI training-data experience • Experience collaborating with procurement, legal, privacy, compliance, and IT teams
• Flexible scheduling • Competitive rates between $85–$105 per hour depending on expertise and project scope • Weekly payments via Stripe or Wise • Fully remote work • Projects may be extended, shortened, or adjusted depending on scope and performance
Apply Now🔥 21 hours ago
Principal Security Architect defining scalable satellite cybersecurity architectures for Dragonfli Group, a federal and Fortune 100 cybersecurity consulting firm. Leading multidisciplinary integration, compliance, testing, and production delivery.
🕒 3 days ago
CSS Instructor delivering classroom and practical training for personnel supporting U.S. Government construction security projects. Evaluating student readiness and updating curricula to meet Department of State security requirements.
🇺🇸 United States – Remote
💵 $80 - $120 / hour
⏳ Contract/Temporary
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🕒 3 days ago
Lead architect securing satellite, ground, and user systems for Dragonfli Group’s cybersecurity consulting clients. Driving scalable product architecture, integration, compliance, and mission-readiness across commercial space deployments.
🕒 5 days ago
IAM migration consultant leading enterprise authentication modernization from ForgeRock OpenAM to PingOne Advanced Identity Cloud and Microsoft Entra ID. Minimizing disruption through SSO implementation, testing, documentation, and post-migration support.
🕒 6 days ago
Cyber Security Architect ensuring IEC 62443 compliance for industrial products. Developing cybersecurity strategies, controls, certification plans, and testable product requirements.