Skip to main content
Riveron

Cyber Security - Senior Associate

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior cybersecurity/GRC advisory consultant with 3+ years in IT audit, cybersecurity, or IT risk advisory. Needs US remote eligibility and knowledge of compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, and CMMC.

Core skills

SOC 2ISO 27001GRC

Required skills

HIPAAPCI-DSSNISTFedRAMPCMMC

Optional skills

CISACISMCISSPAWS Cloud Practitioner

What you'll do

  • Lead client engagements implementing cybersecurity programs aligned with SOC 2, ISO 27001, and other security and privacy frameworks
  • Conduct compliance readiness assessments and assist with external audits
  • Maintain compliance, security, and privacy operations, including incident response tabletop exercises and response procedures
  • Assist clients with risk assessments, business continuity planning, cloud configurations, user access reviews, and asset inventories
  • Implement and manage GRC platforms such as Drata, Vanta, and Tugboat Logic
  • Perform vendor risk reviews, analyze SOC 2 reports, and manage security questionnaires
  • Develop and maintain security policies and standard operating procedures
  • Coordinate project activities, priorities, timelines, budgets, and deliverables
  • Communicate with clients and provide project status updates
  • Deliver written and verbal presentations with recommendations to executive stakeholders
  • Stay current on emerging risks and evolving control practices
  • Build and maintain industry relationships to support long-term business development
  • Provide guidance, coaching, and direction to team members
  • Review staff work for quality and mentor Associates

What they require

  • Bachelor's and/or Master's degree in Information Technology, Computer Information Systems, Management Information Systems, or a related field
  • Relevant certification preferred, such as CISA, CISM, CISSP, or AWS Cloud Practitioner
  • 3+ years of experience in an IT Audit, Cybersecurity, or IT Risk Advisory role
  • Demonstrated knowledge of compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, and CMMC
  • Familiarity with GRC solutions, tools, and technologies
  • Ability to develop and maintain client relationships
  • Ability to communicate skillfully with a variety of audiences and create compelling stories from data
  • Ability to thrive in a dynamic work environment
  • Problem identification and solution-oriented mindset

Benefits

  • Medical insurance
  • Dental insurance
  • Vision insurance
  • 401(k) with company match
  • PTO
  • Flexible work environment
  • Mentorship
  • Progressive benefits

Riveron partners with clients, from global multinationals to high-growth private entities, to solve complex finance challenges. Its Cyber Security Advisory services include GRC/cybersecurity program building, framework readiness, security domain design and maintenance, controls testing, internal audit, access risk review, policy development, enterprise risk management, and IT/cybersecurity risk assessment.

Consulting

Details

Apply routeDom
Also posted in 1 other channel
Salary not disclosed