Cyber Security Controls Assessor/Auditor Senior Consult

  • Louisville, KY
  • Posted 55 days ago | Updated 4 hours ago

Overview

On Site
USD 84,750.00 - 141,250.00 per year
Full Time

Skills

Risk management framework
Incident management
NIST 800-53
Cyber security
Problem solving
Data Analysis
Proposal writing
Professional development
Risk management
Risk assessment
System security
Security analysis
Contingency plan
Vulnerability scanning
Cloud computing
Information assurance
Federal government
Technologist
Recruiting
Research
Training
Mentorship
IMPACT
Strategy
Data
Policies
Reporting
Clarity
Leadership
Presentations
Regulatory Compliance
Metrics
Security clearance
Documentation
SSP
SAR
CISSP
Certified Ethical Hacker
CISM
CISA
Network
Agile
Authorization
eMASS
CSAM
XACTA

Job Details

The Team:

Are you an experienced, passionate pioneer in technology - a solutions builder, a roll-up-your-sleeves technologist who wants a daily collaborative environment, think-tank feel and share new ideas with your colleagues - without the extensive demands of travel? If so, consider an opportunity with our US Delivery Center - we are breaking the mold of a typical Delivery Center.

Our US Delivery Centers have been growing since 2014 with significant, continued growth on the horizon. Interested? Read more about our opportunity below...

Recruiting for this position will end on 04/30/2024

Work you'll do:

As a Solution Senior Consultant within our US Delivery Center Cyber Risk team, you will:
  • Work with Government & Public Services clients to mitigate cyber risk and threats
  • Identify opportunities for efficiencies in process and innovative approaches to completing scope of work
  • Participate in team problem solving efforts and offer ideas to solve client issues
  • Conduct relevant research, data analysis, and create reports
  • Maintain responsibility for completion and accuracy of work products
  • Assist in proposal development, as requested
  • Actively expand consulting skills and professional development through training courses, mentoring, and daily interaction with clients
  • Identify and evaluate complex business and technology risks
  • Understand how business functions operate and how industry trends impact a client's business
  • Assessing or developing an organization's cyber risk strategy and posture, as it relates to data risk, cyber risk management, cyber risk frameworks and policies, and/or cyber risk measures, methods, and reporting
  • Strategically drive the development and execution of risk assessments and mitigation plans to enhance the client's ability to identify, evaluate, prioritize, and mitigate risks
  • Implement risk management solutions aligned to the client's vision and strategic priorities
  • Deliver key messages with clarity, confidence, and poise to instill confidence in clients
  • Drive development and implementation of cyber strategies targeted on key client's risk and business needs, and enhanced by leading practices
  • Develop impactful reports and presentations that support the achievement of engagement goals and objectives
  • Execute large scale cyber risk and security engagements across global customers by developing security strategies based on risk management and compliance requirements while maintaining metrics on milestones, customer satisfactions and profitability

Qualifications:

Required:
  • Bachelor's degree required
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
  • Must be able to obtain and maintain the required clearance for this role
  • Experience and thorough understanding of Risk Management Framework (RMF) - lifecycle to include a working knowledge of the each of the stages within the process.
  • Creating documents such as System Security Plan (SSP), Security Assessment Report (SAR), Contingency Planning, Incident Response Plan, Plans of Actions and Milestones (POA&Ms)
  • Ability to interpret vulnerability scan results. -
  • 2+ years' experience conducting risk and controls assessments per NIST 800-53, Rev.4 and Rev 5.

Preferred:
  • Previous Federal Consulting experience
  • Understanding of fundamental cloud computing concepts
  • Experience with Information Assurance concepts and processes within the Federal government
  • CISSP, CEH, CISM or CISA certifications
  • Strong architecture, network and infra security, or next gen security expertise (agile/hybrid agile, cloud)
  • Working knowledge of common assessment & authorization (A&A) application platforms e.g. eMASS, CSAM, Xacta, is preferred

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $84,750 - $141,250

Information for applicants with a need for accommodation: ;br>
cyber_daf_fy24

#LI-AW1

About Deloitte