Role : Program Director - Expert/Lead - Consultant
State Government/County (Experience Required)
Client : Government of North Carolina(NCDHHS)
Work Type : Hybrid
Location : Raleigh,North Carolina
Minimum Relevant Experience : 7 Years
Duration : 12 Months(Extendable)
Max Payrate : 92$ Per Hour
eSystems Inc. is a fast-growing Systems Integrator based in Princeton, New Jersey. We provide strategic IT solutions and services with primary practice areas in Java and Microsoft centric e-Business solutions, ERP solutions, Enterprise Application Integration, Data Warehousing and Business Intelligence solutions.
Our clients include Fortune 500 corporations, government agencies, small and mid-sized local businesses, and non-profit organizations.
As an equal opportunity employer, eSystems complies with all applicable laws, rules and regulations preventing discrimination against job applicants based on: race, ethnicity, religious beliefs, gender, gender identity, age, veteran status, marital status, physical challenges, or any other relevant factor
THE JD and the required skillset are below. Please make sure that the suitable candidate has atleast 90% of the skillset mentioned
Seeking an experienced Lead Consultant with strong technical expertise and the leadership skills necessary to develop the assessment strategy, manage the technical risk assessment team, and ensure consistent, high-quality execution across all counties.
The DHHS Privacy & Security Office is launching a large-scale cybersecurity initiative involving technical security risk assessments and penetration testing across 100 counties. This initiative covers county IT infrastructure including servers, desktops, networks, firewalls, user access provisioning, MFA, VPNs, security hardening procedures, vulnerability management, and patch management processes. The Technical Security Risk Assessment & Penetration Testing Lead Consultant will be responsible for designing and conducting technical security assessments, performing penetration testing activities, creating standardized methodologies and templates, and managing the assessment team s assignments and project timelines. The consultant will also provide clear, non-technical communication of complex security topics to business leaders, CMS and stakeholders.
| | Skill | Required / Desired | Amount(Years) |
| | Experience in cybersecurity risk assessments and penetration testing. | Required | 7 |
| | Lead and perform technical security risk assessments on county IT environments (servers, desktops, networks, firewalls, IAM, MFA, VPNs, patching pro | Required | 5 |
| | Conduct internal/external penetration testing, vulnerability identification, and exploit validation | Required | 7 |
| | Develop a repeatable assessment methodology, templates, testing procedures, and reporting formats for use across 100 counties. | Required | 5 |
| | Manage and coordinate assessment team workloads, assignments, schedules, and deliverables. | Required | 7 |
| | Create and maintain project plans, timelines, and progress reports. | Required | 7 |
| | Familiarity with NIST, CIS Controls, ISO 27001, and related frameworks. ________________________________________ | Required | 3 |