Cybersecurity Senior Consultant
$80,500–$159,300 year
On-siteChicago, Illinois, United States or Indianapolis, Indiana, United States
Job Summary
Plan and execute cybersecurity and resilience assessments across technology and operational domains, including data protection, HIPAA Security assessments, third-party risk management, and incident response. Evaluate the design and operating effectiveness of controls against regulatory requirements and frameworks like NIST CSF and ISO 27001. Act as a strategic advisor to client security functions to build and operationalize cybersecurity programs across governance, risk, and compliance. Serve as an extension of client teams to lead program execution activities, including control implementation, metrics reporting, and issue remediation. Mentor junior consultants and prepare clear documentation and deliverables independently. Communicate assessment scope, findings, and recommendations to diverse client stakeholders while maintaining engagement quality throughout the delivery lifecycle.
Required Qualifications
- Minimum of 3 years of total professional experience
- 2+ years of hands-on experience delivering cybersecurity or IT risk assessments
- Strong working knowledge of: Cybersecurity operations and controls
- Strong working knowledge of: Data protection principles
- Strong working knowledge of: HIPAA Security and Privacy Rule requirements
- Demonstrated ability to independently manage engagements from planning through reporting with limited oversight
- Strong written and verbal communication skills, particularly in documenting observations and explaining results to diverse audiences
- Bachelor's degree
- One or more relevant professional certifications (e.g., CISSP, CISA, HCISPP, or equivalent)
- Experience assessing or advising on: HIPAA compliance
- Experience assessing or advising on: Cybersecurity programs
- Experience assessing or advising on: Business continuity and disaster recovery
- Experience assessing or advising on: Operational or cyber resilience initiatives
- Prior experience at a public accounting or advisory firm delivering cybersecurity, privacy, or resilience services to healthcare or life sciences organizations
- In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.