Director of Cybersecurity Consultant

Rochester, New York, United States - Remote

Applications have closed

ProArch

At ProArch, we help our clients accelerate growth and mitigate risk with IT services, cybersecurity services, application development, cloud computing, and data analytics.

View company page


Job Description

ProArch is a global IT consulting firm specializing in managed Cloud and Hybrid cybersecurity. Cybersecurity is one of our primary practice areas but is also engrained in our other practice areas - Data and Analytics, Cloud native application development, and Cloud and Infrastructure.

As a Director of Security Consulting, you will lead a team of Security Managers, Consultants, Specialists, and Engineers aligned to delivering cybersecurity Governance Risk and Compliance, Assessments, Managed Security solutions, and Security control implementations. You will engage with the other Directors and leadership to drive top-down security partnerships and all initiatives. You must possess a high sphere of influence. You need to understand the threat landscape, and the business risks those bring to make the right decisions. You must have the required diversity of experience and depth of knowledge.

Developing strong security partnerships for ProArch and its Clients.

This role is essential to delivering outsourced cybersecurity services to our clients. Your part in the team will be to lead and ensure the team has the skills and capabilities to deliver the solutions we offer. Solutions include assessments, security consulting, and implementation of Microsoft security solutions, as well as managed services for maintaining and operating them.

Desired Candidate Qualifications:

  • 10-15 years of overall Security services experience
  • Experience in client-facing services delivery as part of a managed cybersecurity service company
  • Prior team leadership and management experience.
  • Broad technical expertise in the Microsoft security stack (XDR) and zero trust architecture.
  • Experience in client-facing service delivery and the ability to handle high-pressure situations productively and professionally.
  • Understanding technical controls that make up a robust security program, such as security hardening, EDR, IDR, XDR, and vulnerability management.
  • The candidate should demonstrate and practice the culture of putting the customer first, taking ownership, demonstrating accountability, continual learning, and foster a culture of continual success and do it right - the first time.
  • Knowledge in at least 3 domains in Cyber Security / Network Security / Cloud and Infra Security.
  • Microsoft Security/Endpoint Security/Vulnerability Management/Risk Compliance/SOC/SIEM etc.
  • Substantial work experience in architecting cybersecurity solutions.
  • Experience delivering presentations and dealing with clients globally.
  • Smart and presentable. English and communication skills must be very good (both written and verbal).
  • Preferred to have at least one of the following certifications CCSP, CISSP, CISM, CRISC.
  • Other certifications like Microsoft AZ-900, SC-200, AZ-500, MS-500, SC-900 would be beneficial.

Requirements


  • Deep expertise in Microsoft Defender for Endpoint, Microsoft Defender for Cloud, Azure Active Directory, Defender for Identity, Defender for IoT/OT, and Microsoft Sentinel.
  • Proficiency in using various security tools, but not limited to Qualys, Intune, and KnowBe4.
  • Experience with Microsoft Azure and Microsoft 365.
  • Experience conducting Security Consulting and ability to analyze and create remediation strategies for vulnerability management programs, security architecture reviews, and security assessments.
  • Experience overseeing and onboarding clients to our Managed Detection and Response Services portfolio.
  • Experience in implementing and maintaining security solutions, tools, and IT Policies and standards.
  • Familiarity with industry standards such as ISO27001, PCI DSS, NY DFS, HIPAA\HiTech\HiTrust, DFARS and CMMC, SOC1, SOC2, SOX, GDPR, Data Privacy, NIST SP-800 series, CIS Critical Security Controls, OWASP and how to configure the technical security controls to meet those control requirements.

Communication Skills:

Communication skills are essential as this position will be the technical contact point for team members and an escalation point for client relationships. The Director of Cybersecurity Consulting should be able to act proactively to ensure smooth team operations, delivery of solutions, and effective collaboration. This position should lead by setting a good example and engaging the team to achieve the organizational goals leadership has set forth. An essential outcome of this position is continuously improving the security consulting team's efficiency, optimization, and scalability.

Job accountabilities as a Director of Security Consulting, you will…

  • Build a good understanding of the business domain, its strategies, investments, technology diversities, and the appetite for risks.
  • Work closely with other Directors and leadership to drive security initiatives across the domain and various product verticals.
  • Understand the threat landscape and use them in the context of the business.
  • Develop security acumen and the ability to negotiate and challenge.
  • Facilitate prioritization; you help the business make informed decisions.
  • Drive adoption/deployment of security capabilities into the delivery teams.
  • Produce insightful metrics at the macro level on initiatives taken and their effectiveness.
  • Be the advocate for security and strengthen our client's internal standards and guidelines.
  • Manage activities for the members of your team and team performance.
  • Develop the internal backlog and aid the team in executing.
  • Nurture and enforce technical practices to deliver technical excellence.
  • Foster and support experimentation and innovation within the delivery team in solving problems.
  • Nurture and enforce technical practices to deliver technical excellence.
  • Organize knowledge & information gained by the team to operate sustainably in the long term.
  • Own the systems and platforms related to the domain area and ensure they remain effective through their lifecycle.
  • Deliver required outcomes for the security programs and investments.
  • Educate and manage any contractors or third parties in their deliveries related to the domain area.
  • Finances for the team and any product or services are accurately budgeted for and managed.
  • Remain current with principles, concepts, and emerging technologies related to the role.

Benefits

Pro Arch offers a competitive salary plus the following benefits:

  • Health insurance coverage with Vision and Dental options
  • 401k plan
  • Paid holidays and vacation

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Active Directory Analytics Azure CCSP CISM CISSP Cloud CMMC Compliance CRISC DFARS EDR Endpoint security GDPR Governance HIPAA HITRUST ISO 27001 Network security NIST OWASP PCI DSS Privacy Qualys Security assessment SIEM SOC SOC 1 SOC 2 SOX Vulnerability management XDR Zero Trust

Perks/benefits: 401(k) matching Career development Competitive pay Health care

Regions: Remote/Anywhere North America
Country: United States
Job stats:  21  2  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.