Cyber Risk and Compliance Consultant

Posted 7 Days Ago
Be an Early Applicant
Chicago, IL
135K-145K Annually
Senior level
Information Technology
The Role
As a Cyber Risk and Compliance Consultant, you will develop custom cybersecurity programs, perform risk assessments, manage risk management plans, and collaborate with clients on cybersecurity initiatives. You will also lead training and presentations, conduct vendor risk assessments, and ensure alignment with regulatory requirements in cybersecurity.
Summary Generated by Built In

Risk and Compliance Consultant

Reports To: VP, Cybersecurity Department: Cybersecurity
Location: Remote Exemption Status: Exempt

PURPOSE:
The role of the Risk and Compliance Consultant provides the expertise required to properly scope and deliver cybersecurity solutions and services to our clients. They work closely with our clients to deliver risk management services that align industry best practices and regulatory requirements. The Risk and Compliance Consultant will identify risks and compliance gaps and collaborate with clients to prioritize and execute cybersecurity initiatives. 
RESPONSIBILITIES:

  • Develop custom cybersecurity programs and drive cybersecurity initiatives that support regulatory requirements, risk appetite, budget targets, and desired outcomes 
  • Performs cybersecurity risk assessments to identify and document client risks in accordance with industry best practices and regulatory bodies to include CMMC, 
  • DFARS, NIST 800-171, NIST CSF, HIPAA, FDIC, GLBA, ISO 27001/2, PCIDSS, and MITRE ATT&CK 
  • Continually manages risk management plans, milestones, and quarterly objectives to track progress and anticipate/notify of potential issues 
  • Collaborates with IT resources and key stakeholders from other business units to assess impacts to business processes, consider compensating controls, and effectively communicate risk remediation initiatives 
  • Leads monthly, quarterly, and annual presentations of risk management initiatives among client technical resources, key stakeholders, and senior management 
  • Leads cybersecurity engineering resources to deliver vulnerability management, endpoint protection, privilege and identity management, network security, etc. 
  • Actively monitors evolving threats and compliance changes and communicates findings to both Ascend and client stakeholders 
  • Conducts vendor risk assessments to identify technical, operational, and compliance risks and recommend risk reduction strategies 
  • Works closely with Ascend’s cybersecurity team to report issues, develop process improvement strategies, and ensure service success 
  • Writes and updates cybersecurity policies and procedures aligned with client requirements 
  • Leads cybersecurity training, tabletop exercises, and marketing events 
  • Other Responsibilities as assigned by management 


MINIMUM SKILLS, EDUCATION AND EXPERIENCE

  • 5+ Years experience in cybersecurity, and framework alignment (CMMC, DFARS, NIST 800-171, NIST CSF, HIPAA, FDIC, GLBA, ISO 27001/2, CIS, etc.) 
  • 5+ Years of strong working knowledge of system, application, network, cloud, and data security best practices 
  • One or more of the following certifications: CISSP, CISA, CISM, CRISC, GLSC, GSTRT, or equivalent 
  • Proven success managing business risk, conducting vendor risk assessments, and executing cybersecurity controls 
  • Working knowledge of Microsoft 365, Azure Active Directory/Active Directory, Security Awareness strategies, and Vulnerability Management practices 
  • Excellent analytic, problem-solving, active-listening and decision-making skills 
  • Excellent presentation, writing, interpersonal and communication skills 
  • Comfortable engaging at executive levels to influence and provide strategic insight 
  • Experience and/or strong desire to work in a fast-paced environment with evolving conditions 


PREFERRED SKILLS, EDUCATION OR EXPERIENCE

  • 5+ Years experience in Incident Response and Digital Forensics 
  • Industry Specialized Certifications for PCI DSS, HITRUST, etc. 
  • Working knowledge of PowerShell, Threat Hunting Techniques, SIEM, SOC, EDR Platforms, Privilege and Identity Management Platforms 
  • Bachelor’s degree in computer science, management information systems, information Technology, engineering, mathematics, or a related field 


At Ascend Technologies we firmly believe that diversity, equity, and inclusion are not only fundamental values but also powerful drivers of innovation, growth, and success. We are committed to fostering an environment where every individual feels valued, respected, and empowered.
CORE VALUES
We are seeking highly motivated individuals who have the willingness and ability to demonstrate Ascend core values:

  • Committed to Client Success: Our actions and our words always align with the best interest of the client.
  • One Team: We work collaboratively to overcome challenges with humility and respect and do what it takes to find innovative solutions.
  • Integrity: We are unquestionably committed to doing the right thing even when it is hard.
  • Accountability: We hold ourselves and each other accountable for keeping our commitments to our clients, our communities, and one another.
  • Transparency: We create open lines of communication with each other and our clients, fostering relationships founded on candor and trust.

Salary Expectations: $135,000 - $145,000


Updated December 2024

 
 

Top Skills

Azure Active Directory
Cmmc
Dfars
Fdic
Glba
Hipaa
Iso 27001/2
Microsoft 365
Nist 800-171
Nist Csf
Pcidss
Powershell
The Company
HQ: Chicago, IL
263 Employees
On-site Workplace
Year Founded: 2020

What We Do

Ascend Technologies enables business growth with innovation and technology. We help you make IT investments with confidence, eliminate threats, meet the needs of the business and optimize user productivity. Your business endures, grows and innovates on a foundation of efficiently run core IT systems. We are here to help you make technology the catalyst for your business expansion. Visit www.teamascend.com to learn more.

Similar Jobs

ActiveCampaign Logo ActiveCampaign

Head of Global Security, Risk and Compliance

eCommerce • Information Technology • Marketing Tech • Software
Hybrid
Chicago, IL, USA
850 Employees
293K-358K Annually

McDonald’s Global Technology Logo McDonald’s Global Technology

Manager of Application Security

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
Chicago, IL, USA
1400 Employees
130K Annually

McDonald’s Global Technology Logo McDonald’s Global Technology

Jira & Confluence Administrator

eCommerce • Food • Information Technology • Mobile • Cybersecurity • App development • Big Data Analytics
Hybrid
Chicago, IL, USA
1400 Employees
98K-125K Annually

Discover Logo Discover

Senior Sox Auditor

Cloud • Fintech • Machine Learning • Analytics • Financial Services
Hybrid
Chicago, IL, USA
18000 Employees
65K-110K Annually

Similar Companies Hiring

Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Cloud
Chicago, IL
45 Employees
InCommodities Thumbnail
Renewable Energy • Machine Learning • Information Technology • Energy • Automation • Analytics
Austin, TX
234 Employees
HERE Thumbnail
Software • Logistics • Information Technology
Amsterdam, NL
9000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account