Senior Security Consultant

  • Full-time

Company Description

As a trusted advisor and leader in cybersecurity, Coalfire has more than 15 years in IT security services. We empower organizations to reduce risk and simplify compliance, while minimizing business disruptions. Our professionals are renowned for their technical expertise and unbiased assessments and advice. We recommend solutions to meet each client’s specific challenges and build long-term strategies that can help them identify, prevent, respond, and recover from security breaches and data theft. We’re on the cutting edge of one of the world’s most important industries, and we protect our clients from ever-evolving security threats through our innovative advisory, auditing, and ethical hacking solutions. We’re growing rapidly and are currently seeking a Senior Security Consultant to join our Federal team.

Job Description

  • Lead IT Security Control Assessments within cloud-based environments in accordance with NIST SP 800-53, 800-37, OMB, and other authoritative IT security guidance
  • Validate information system security plans, supporting policies and procedures, and the documentation and implementation of controls in accordance with NIST requirements
  • Develop plan and execute Security Assessment Plans (SAP), document findings within Security Assessment Reports (SAR)
  • Provide direction for scheduling, project sequencing, and resource management
  • Assist with managing client expectations and performing project management
  • Prepare, review, and/or update, and maintain IT Security supporting artifacts
  • Develop System Security Plans, Continuous Monitoring Plans, Incident Response Plans
  • Plan, schedule, coordinate, prepare, execute, document the results of test plans and test scripts, incident response, contingency, and continuity of operations drills, exercises, and activities
  • Provide IT security guidance to Information System Owners
  • Plan, coordinate, support, and assess system vulnerability scans and assessments, and assist in completing remedial actions, as necessary
  • Provide IT System Security consultation

Qualifications

  • Deep experience with government compliance, including FISMA, FedRAMP, DIACAP, DoD RMF.
  • Strong knowledge of NIST Special Publications 800-30, 800-37, 800-53
  • Experience with every step within the delivery of Certification and Accreditation (C&A) / Assessment and Authorization (A&A) packages that have obtained and maintained full authorization to operate (ATO).
  • Experience with Virtualization/Cloud technologies (required)
  • Security focused industry certification as a CISA, CISM, CISSP, CCSP, CCISO, or similar certification (required)
  • Additional industry certifications such as MCSD, MCSE, CCNA, etc. (preferred)
  • Educational degrees in IT and/or Business (preferred)
  • Regional leaders (participating in IIA, ISACA, ISSA, etc.)
  • At least 5-10 years of experience as a consultant within professional IT services
  • Excellent verbal and written skills
  • Willing to travel up to 25%

Additional Information

Coalfire’s high energy, challenging, and fast-paced work environment will keep you engaged and motivated. Work-life balance is a core priority at Coalfire – we work hard and we play hard, and the two often overlap. We host family-friendly events and happy hours along with professional meetups and informal networking sessions, and we’re active in our communities. Plus, we offer great benefits, including:

  • Health, dental, and vision insurance with an employer contribution;
  • Paid time off and accrued sick days;
  • A generous 401(k) plan;
  • A kitchen stocked with snacks, coffee, and tasty beverages.