Job Description:
We are seeking a highly skilled and strategic Senior Cybersecurity Consultant to lead our organization’s efforts in securing infrastructure, applications, and data assets. In this expert-level role, you will advise clients and internal teams on cybersecurity best practices, perform risk assessments, and design robust security frameworks that align with business goals and regulatory requirements.
As a trusted security advisor, you will be responsible for driving security strategy, managing complex projects, and implementing enterprise-grade security solutions across cloud and on-premise environments.
Key Responsibilities:
- Conduct in-depth security assessments, threat modeling, and gap analyses for systems, networks, and applications.
- Develop and implement enterprise-wide cybersecurity strategies, policies, and governance frameworks.
- Design and deploy security architectures including identity and access management (IAM), encryption, firewalls, and endpoint protection.
- Advise internal teams and clients on compliance with industry standards and regulations (e.g., ISO 27001, NIST, GDPR, HIPAA).
- Lead incident response planning, forensic investigations, and security audits.
- Collaborate with software, infrastructure, and DevOps teams to integrate security into the SDLC and CI/CD pipelines.
- Mentor junior security analysts and contribute to internal security awareness and training initiatives.
- Evaluate and recommend security tools and technologies to strengthen defense posture.
- Stay current with evolving threats, vulnerabilities, and security trends to proactively manage risk.
Requirement :
- Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
- 7+ years of experience in cybersecurity with a focus on consulting, risk management, and security architecture.
- Strong expertise in network security, cloud security (AWS, Azure, or GCP), and application security.
- Hands-on experience with SIEM, firewalls, IDS/IPS, vulnerability scanners, and endpoint protection platforms.
- Deep understanding of cybersecurity frameworks such as NIST, ISO 27001, and OWASP.
- Proven ability to design and implement complex security solutions in enterprise environments.
- Excellent communication skills with the ability to translate technical risks into business language.