Principal - Cyber Risk Advisory | Remote US

United States

Applications have closed

Coalfire

Coalfire is a cybersecurity and compliance services company that works with enterprises and tech businesses in FedRAMP, cloud migration, AI Risk, pen…

View all jobs at Coalfire

About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do. We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
The Cyber Risk Advisory (CRA) Principal Consultant will work as part of a team assessing the security, privacy and risk of client firms to best provide advice on cybersecurity programs, industry requirements and standards, and support remediation activities. This role will be an AI, Risk, and Privacy subject matter expert (SME), with a strong understanding of AI Risk methodologies (NIST AI RMF, ISO 27001, MITRE, OWASP), privacy regulations (state, national, and global), and the ability to perform cybersecurity risk assessments and lead interviews. They will develop plans, policies, and reports for clients. They will work closely with Project Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.    

What You’ll Do

  • Develop engagement methodologies to enhance our client AI Risk, Privacy, and Cyber offerings
  • Serve as a Thought Leader in the industry through development of professional blog material, whitepapers, webinars, etc.
  • Lead client engagements including assessment plan preparation, review of technical plans, documentation and evidence, evaluation of procedures, and client interviews
  • Support and guide information security, privacy, and risk discussions with technical and non-technical groups
  • Perform information risk, security and related compliance assessments, including testing of related controls
  • Develop and operationalize enterprise information security and privacy programs and related components
  • Support with business development and sales opportunities by meeting with potential customers to explain our offerings, methodologies, pricing, etc.
  • Continuous professional development in maintaining industry specific certifications to maintain a strong depth of knowledge in the practice area

What You’ll Bring

  • At least 8 years working experience in cyber security and privacy
  • Consulting experience or security experience in an industry segment (finance, healthcare, energy, technology, etc.)
  • Bachelor’s degree in Business Administration, Computer Science, Information Systems, Engineering or related field, or equivalent combination of education and experience
  • Knowledge and awareness of the latest information risk, security and privacy innovations, trends, challenges and solutions
  • Exposure to industry acclaimed information governance, risk and security standards/frameworks and professional practices (NIST, ISO, CIS, etc.)
  • Knowledge of the typical enterprise risk and security operational practices
  • Knowledge of information security related solutions, tools and utilities
  • Strong analytical and problem-solving abilities
  • Strong oral, written, and presentation skills
  • Ability to work independently and time-manage

Bonus Points

  • CIPM, CIPP (or other privacy-related certification)
  • CISM, CCSK, CIPP, CISA, CGEIT, or CRISC certification(s)
  • AWS, Azure, Google Cloud Platform certification(s) and experience
Why You’ll Want to Join Us
At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.
Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, our Human Resources team at HumanResourcesMB@coalfire.com.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0
Category: Compliance Jobs

Tags: AWS Azure CCSK CIPP CISA CISM Cloud Compliance Computer Science CRISC Finance GCP Governance ISO 27001 NIST OWASP Privacy Risk assessment RMF

Perks/benefits: Career development Competitive pay Flex hours Flex vacation Health care Insurance Parental leave Salary bonus Team events

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.