Principal Consultant, Security Governance

🕒 July 2

🇺🇸 United States – Remote

⏰ Full Time

🔴 Lead

🚔 Compliance

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 32%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Presidio

Presidio

1001 - 5000 employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

Presidio is a global IT solutions and services firm that designs, implements, and manages agile, secure digital platforms to help enterprise customers accelerate digital transformation. Its offerings include cloud migration and modern platforms, managed services, AI and data analytics (including agentic and private AI), cybersecurity, networking, collaboration, and lifecycle/finops and procurement/consumption financing. Presidio serves regulated and enterprise sectors such as healthcare, media & entertainment, finance, public sector and utilities.

📋 Description

• Lead client engagements and project execution providing information security consultation and assessment services, helping our clients meet their compliance obligations by evaluating their business, technology, and operations against industry security standards • Educate, mentor, advise, and share your expertise with clients and colleagues to aid in making decisions on topics like Artificial Intelligence, organizational security strategy and services scope as well provide consultative guidance on complex projects • Providing clear, organized findings and recommendations to clients and tracking progress towards resolution and compliance • Consult/advise with C-level Security Leaders (CISO, CSO, CIO, etc.) and the Board of Directors with our most valued and strategic clients • Develop strategic, operational, and tactical recommendations tailored to each client with the intent to improve a client’s security posture and compliance position • Create detailed strategic security roadmaps with short-term, mid-term, and long-term goals that prioritize remediation recommendations and address all instances of non-compliance with applicable regulatory, statutory, contractual, and organizational obligations • Lead large security engagements in concert with other cybersecurity practices and Presidio teams • Develop security policies, standards, and procedures that are custom-tailored to each client’s unique culture, security goals, and organizational objectives using industry best practices and compliance requirements • Review, analyze, and assess key factors, including inherent risk, mitigating controls, business impact, likelihood and other key elements to determine organizational security risk • Ensure and assess client alignment to, and/or compliance with, applicable regulatory, federal, state, local, contractual, and organizational requirements and best practices standards such as ISO 27001, NIST Cyber Security Framework (CSF), PCI DSS, HIPAA, FERPA, NIST 800-171, CMMC, etc. • Work closely with organizations to conduct security program development by establishing the foundation for a best of breed security program architecture reference model using industry frameworks and standards such as ISO 27001, NIST 800-53, NIST CSF, etc. • Work with other seasoned Principal Security Consultants in a collaborative setting to support and assist on the execution and delivery of key services such as Cloud Governance, Advisory Services, security program development, documentation review, and security consulting services • Execute tabletop exercises after collaborating with client stakeholders to select the scenario then create an After-Action Report • Deliver PCI Advisory Services, including PCI Gap Analysis, SAQs, ROCs and AOCs • Deliver CMMC Advisory Services, including CMMC Readiness Assessments • Assist leadership in cybersecurity administrative functions, such as documentation maintenance, documentation creation, peer review, and other internal cybersecurity activities

🎯 Requirements

• Bachelor’s Degree with a focus on Information Security, IT, Computer Science, or Engineering preferred or the equivalent work experience and/or military experience • 5-8 years previous consulting experience • 5-8 years' experience conducting Information Security risk and compliance assessments • 5-8 years' experience evaluating compliance with regulatory and key IT standards such as HIPAA, PCI DSS, NIST CSF, ISO 27001, and other similar standards/frameworks • Cloud experience with AWS, Azure or Google Cloud Platform or non-foundational certification for any of these cloud platforms or one of the following cloud agnostic certifications: Certified Cloud Security Professional (CCSP), Certificate of Cloud Security Knowledge (CCSK), GIAC Cloud Security Essentials (GCLD) • Possess at least one of the following accredited, industry-recognized professional certifications from each list: List A ISC2 Certified Information System Security Professional (CISSP) ISACA Certified Information Security Manager (CISM) Certified ISO 27001 Lead Implementer List B ISACA Certified Information Systems Auditor (CISA) GIAC Systems and Network Auditor (GSNA) Certified ISO 27001, Lead Auditor, Internal Auditor 1 IRCA ISMS Auditor or higher—e.g., Auditor/Lead Auditor, Principal Auditor IIA Certified Internal Auditor (CIA)

🏖️ Benefits

• Health insurance • 401(k) matching • Professional development opportunities

Apply Now

Similar Jobs

🕒 June 30

Zero Hash

51 - 200

💳 Fintech

₿ Crypto

🌐 Web 3

Global Chief Compliance Officer at zerohash leading compliance and licensing processes for a fintech startup. Responsible for managing the global compliance function and team interactions with regulators.

🕒 June 29

Fliff Inc

11 - 50

🎮 Gaming

⚽ Sports

👥 B2C

Director of Compliance joining Fliff's Legal Team to oversee gaming compliance and lead CFTC and FTC strategies. Seeking an experienced compliance professional to navigate complex regulations and ensure legal integrity.

🇺🇸 United States – Remote

💵 $220k - $260k / year

💰 Venture Round on 2022-08

⏰ Full Time

🔴 Lead

🚔 Compliance

🕒 June 28

PROCEPT BioRobotics

501 - 1000

🏥 Healthcare

🔧 Hardware

🤖 Artificial Intelligence

Staff Regulatory Affairs Specialist at PROCEPT BioRobotics supporting regulatory compliance and strategy for medical devices. Collaborating on cross-functional teams to advance innovative surgical technologies.

🇺🇸 United States – Remote

💰 $175M Post-IPO Secondary - PROCEPT BioRobotics on 2024-10

⏰ Full Time

🔴 Lead

🚔 Compliance

🕒 June 27

GAF

1001 - 5000

🏗️ Construction

🏭 Manufacturing

Director of Environmental Compliance at GAF, managing environmental initiatives and compliance strategies for corporate and operational locations. Leading EHS teams and engaging with regulatory authorities.

🕒 June 26

Kitsch

51 - 200

💄 Beauty

🛒 Retail

👥 B2C

Director of Regulatory & Tech Transfer at Kitsch overseeing compliance and supply risk management for beauty products. Ensuring regulatory adherence across EU/UK, Health Canada, and FDA frameworks.