Senior Consultant, SOC 2 Assessment in Chicago, Illinois at Coalfire Systems
NewSalary: $86000 - $148000Job Function: Consultant
Coalfire Systems
Chicago, Illinois, 60611, United States
Posted on
New job! Apply early to increase your chances of getting hired.
Explore Related Opportunities
Job Description
Coalfire Systems
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
Senior Consultant, SOC 2 Assessment
What You'll Bring
$86,000 - $148,000 a year
Bonus Points
Why you'll want to join us
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
Senior Consultant, SOC 2 Assessment
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But thats not who we are thats just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
As a Senior Consultant you will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. You will have an expert understanding of framework requirements, perform audit/assessments, and develop reports for clients. In the Senior Consultant role you will work closely with Project Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
At Coalfire as a Senior Consultant you will help enhance our clients’ security posture, working with a wide range of clients to ensure that business and customer data is protected. This role will evaluate the design and effectiveness of technology controls throughout the business cycle and will help identify performance improvement opportunities. As a senior member of the team, you will also be responsible for enhancing engagement methodology, improving internal processes and overseeing and reviewing the work of Associates and Consultants.
This role facilitates Security Control Assessments and other advanced-level monitoring activities, often within cloud-based environments. To succeed, you will need a strong understanding of technical and non-technical security related system controls and an understanding of the various testing methods utilized to ascertain the effectiveness of those controls. The role works in a team atmosphere with an experienced Technical Project Lead, and is assigned technical sections and expected to create client-ready deliverables.
What You'll Do- Lead audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews with a primary focus on SOC 2 followed by SOC 1 and C5 audits.
- Maintain strong depth of knowledge in one or more cybersecurity frameworks.
- Prepare, review, and approve assessment reports.
- Manage priorities, tasks, and hours on projects in conjunction with the project manager and delivery team members to achieve delivery utilization targets.
- Ensure quality products and services are delivered on time.
- Escalate client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue.
- Provide mentorship to team members in areas of audit, assessment, technical review and writing.
- Interface with clients through entire engagement, interacting with all levels of client organizations.
- Establish and maintain positive collaborative relationships with clients and stakeholders.
- Continuous professional development in maintaining industry specific certifications. Maintains strong depth of knowledge in the practice area.
- Collaborate with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.
- Establish account relationships and identifies upsell and cross sell opportunities and escalates to sales.
- Draft audit programs that sufficiently address both the required objectives of the regulatory body and the complexity of the client environment.
- Lead interview and inquiry walkthroughs with clients to determine the conformity of environments against stated requirements.
- Communicate effectively with internal team members and external clients regarding assessment status.
- Assess security vulnerabilities against the appropriate security frameworks,
- Pursue and corroborate conclusions derived from inquiry procedures with client while ensuring diligent interview notes are captured.
- Offline and remote evidence inspection of client provided documentation; appropriately mark artifacts requiring follow-up or additional clarification.
- Educate and interpret compliance activities for clients.
- Understand how to apply quality standards and adhere to a minimum benchmark for quality assurance throughout the documentation of each work product or deliverable.
- Provide advice to customers on issues affecting the scope of work in a manner that provides additional value.
- Develop documentation and author recommendations associate with findings on how to improve the customer’s security posture in accordance with appropriate controls.
- Up to 20% Travel
- Bachelor’s degree (four-year college or university) or equivalent combination of education and work experience. Degree preferably in Information Systems, CIS, MIS or IT
- 3-5 years of experience in security frameworks and regulatory requirements (such as SOC 2, C5, SSPA, ISO, NIST, COBIT, HIPAA/HITECH, HITRUST or PCI).
- The ability to evaluate the design and effectiveness of technology controls throughout the business cycle.
- Demonstrated ability to structure and lead projects successfully
- Strong written and verbal communication skills, with the ability to communicate succinctly and instill confidence with internal stakeholders and external customers.
- Excellent Consulting skills: ability to advise and challenge the status quo while building strong relationships
- Ability to build high-trust relationships, rapport and credibility quickly
- Strong personal initiative to appropriately manage time, and manage time of others, to meet deadlines
- Ability to shift focus frequently while maintaining excellent quality
- Skill and will to train and mentor junior staff
- Computer and typing skills that permit rapid data collection and note taking
- Ability to facilitate meetings to small or large groups
- Public speaking and executive presence that solicits attention
- Inquisitive and curious nature with the ability to effectively probe for deeper information
- Diplomatic and broad minded
- Strong technical researcher
- Any relavent CSP certifications (AWS solutions architect, etc.)
- Any of the following information security certifications (CCSK, Security +, CISSP, CISM, Certified ISO 27001 Lead Implementer) or one audit certification (CISA, GSNA, Certified ISO 27001 Lead Auditor/Internal Auditor, IRCA ISMS Auditor or higher, CIA)
- Experience working with technologies hosted via cloud computing environments (e.g., Amazon Web Services, Microsoft Azure, Google Cloud Platform)
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
Why Youll Want to Join Us
At Coalfire, youll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where youll work most effectively whether youre at home or an office.
Regardless of location, youll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. Youll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And youll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at HumanResourcesMB@coalfire.com.
$86,000 - $148,000 a year
Bonus Points
Why you'll want to join us
Scan to Apply
Just scan this QR code to apply from your phone.
Job Location
Chicago, Illinois, 60611, United States
Frequently asked questions about this position
Similar Jobs In Chicago, Illinois
Consulting Manager, Governance, Risk & Compliance (Workiva)
Clearsulting LLC
Chicago, Illinois
Director of Pharmacy
Powers Health
East Chicago, Indiana
Manager
American Sale
Naperville, Illinois
Loss Control Specialist
Lake County
Waukegan, Illinois
Accessibility Specialist
WT Group AEC
Hoffman Estates, Illinois
Continue to apply
Enter your email to continue. You’ll be redirected to the employer’s application.By clicking Continue, you understand and agree to JobTarget's Terms of Use and Privacy Policy.