Cybersecurity Manager
$104,500–$213,800 year
On-siteChicago, Illinois, United States or Indianapolis, Indiana, United States
Job Summary
Plan and execute cybersecurity and resilience assessments across technology and operational domains, including data protection, HIPAA Security and Privacy Rule evaluations, third-party risk management, incident response, and business continuity. Evaluate the design and operating effectiveness of controls against frameworks like NIST CSF, ISO 27001, and HIPAA. Act as a strategic advisor to client security functions, helping build and operationalize GRC and business resiliency programs. Lead program execution activities, including control implementation, metrics reporting, and issue remediation. Mentor junior consultants and prepare comprehensive documentation and recommendations for client stakeholders.
Required Qualifications
- Minimum of 5 years of total professional experience
- 4+ years of hands-on experience delivering cybersecurity or IT risk assessments
- Strong working knowledge of: Cybersecurity operations and controls
- Strong working knowledge of: Data protection principles
- Strong working knowledge of: HIPAA Security and Privacy Rule requirements
- Demonstrated ability to independently manage engagements from planning through reporting with limited oversight
- Strong written and verbal communication skills, particularly in documenting observations and explaining results to diverse audiences
- Bachelor's degree
- One or more relevant professional certifications (e.g., CISSP, CISA, HCISPP, or equivalent)
- In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire
Desired Qualifications
- Experience assessing or advising on: HIPAA compliance
- Experience assessing or advising on: Cybersecurity programs
- Experience assessing or advising on: Business continuity and disaster recovery
- Experience assessing or advising on: Operational or cyber resilience initiatives
- Prior experience at a public accounting or advisory firm delivering cybersecurity, privacy, or resilience services to healthcare or life sciences organizations
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.