Senior Cybersecurity Compliance Consultant (US Remote)
$95k - $120kIntelligent Technical Solutions
Job Description
Job Description
Job Summary
The Security Advisor (Senior Cybersecurity Compliance Consultant) delivers active security practice management engagements, serving as the assigned security officer (vCISO) for a portfolio of client organizations. The role combines hands-on compliance delivery with client relationship ownership, risk management, and ongoing security advisory work. The role requires subject matter expertise across regulatory compliance frameworks, strong client-facing communication, and organizational discipline to manage a high volume of concurrent engagements. This position sits at the senior end of the practice: it carries the most complex and highest-regulatory-risk engagements in the portfolio and sets the technical standard for the practice's compliance deliverables.
Job Responsibilities
1. Client Advisory & vCISO Delivery:
- Serve as the assigned security officer (vCISO) for a portfolio of client engagements: lead recurring meeting cadences, act as the primary point of contact for clients' cybersecurity concerns and provide regular updates and reports on the status of security initiatives, including performance metrics, findings, and recommendations for improvement.
- Build strong client relationships, understand each client's unique regulatory and business requirements, and address their needs with tailored strategies and security roadmaps.
- Identify above-contract demand and security program growth opportunities within assigned accounts, surfacing right-sizing and expansion recommendations to practice leadership ahead of contract renewal.
- Track and maintain contract health ensuring that issues with delivery are communicated early.
2. Compliance Program Delivery:
- Lead CMMC Level 1 and Level 2 readiness engagements: NIST SP 800-171 control assessments, System Security Plan (SSP) development, POA&M creation and management, SPRS score submission support, evidence collection, and client preparation for third-party assessment.
- Advise clients on CUI scoping, DFARS View phone number on us.fitly.work and FAR 52.204-21 obligations, and enclave architectures, including Microsoft GCC High environments.
- Deliver compliance engagements across additional frameworks as assigned, including HIPAA / HITECH, SOC 2 (Types I and II), PCI DSS v4.0, FTC Safeguards Rule, GLBA, ISO/IEC 27001 and 27002, NIST Cybersecurity Framework 2.0, NIST SP 800-53, CIS Critical Security Controls v8, and AI governance (NIST AI RMF, ISO/IEC 42001).
- Advise on sector- and state-specific regimes as engagements require, including NY DFS 23 NYCRR Part 500, SEC cybersecurity disclosure rules, CJIS Security Policy, StateRAMP / FedRAMP readiness, and U.S. state privacy laws (CCPA/CPRA and successors) alongside GDPR and ISO/IEC 27701 where clients have international exposure.
- Map overlapping control sets across frameworks to build unified control matrices, eliminating duplicate evidence collection across a client's concurrent compliance obligations.
3. Security Assessment & Engineering Support:
- Conduct comprehensive risk assessments to identify potential threats and vulnerabilities, develop and implement mitigation strategies to enhance clients' security postures, and monitor compliance with regulatory requirements and industry standards, recommending remediation actions to address gaps or deficiencies.
- Oversee data collection efforts to verify compliance and gather critical security information within client infrastructures, ensuring accuracy and reliability.
- Review and interpret security tooling outputs across the Microsoft security stack (Defender XDR, Sentinel, Entra ID Protection, Intune, Purview, Conditional Access) and coordinate remediation with client IT teams and internal engineers.
4. Other Responsibilities:
- Perform general Security Officer duties, such as running security huddles, supporting cyber insurance questionnaires and attestations, and ensuring security tool functionality for assigned clients.
- Assist with incident response (IR) activities, including possibly participating in the on-call incident escalation rotation, supporting SOC coordinators, communicating with key stakeholders during incidents, contributing to playbooks, and conducting postmortems with clients.
- Maintain accurate, timely time entries in the PSA (ConnectWise Manage); delivered hours are the practice's operational and financial source of truth.
- Contribute to scalable templates, engagement processes, and the practice knowledge base, fostering a culture of continuous improvement and knowledge sharing.
- Serve as an escalation resource on advanced framework interpretation and control-determination questions, and support quality review of compliance deliverables prior to client or assessor submission.
- Stay informed about emerging threats, vulnerabilities, and regulatory changes — including the DoD's phased CMMC rollout — assessing their potential impact on clients and adjusting strategies accordingly.
Job Qualifications
Credentials & Eligibility:
- CISSP (active and in good standing) — required at time of hire. This is a hard requirement: commitments to obtain, lapsed or Associate-level credentials, and equivalent-experience substitutions will not be considered.
- CMMC ecosystem credentials required: CCP (Certified CMMC Professional) active at time of hire, with CCA (Certified CMMC Assessor) required within the first 12 months. Registered Practitioner (RP) status alone does not satisfy this requirement.
- Additional certifications a plus: CISM, CRISC, CISA, GIAC (GSLC, GCCC), CompTIA Security+, Security X, Microsoft SC-series.
- Minimum eight (8) years of progressive information security experience, including at least three (3) years delivering compliance or vCISO engagements across a multi-client portfolio in a consulting, MSP, or MSSP environment or something similar.
- Demonstrated ownership of at least two (2) completed CMMC Level 2 readiness engagements, or equivalent NIST SP 800-171 assessment work, including SSP authorship and POA&M management through to third-party assessment.
- Documented working depth in a minimum of three (3) distinct regulatory frameworks — surface familiarity across many frameworks is not a substitute for demonstrated depth.
- Experience defending deliverables and control determinations directly to auditors, third-party assessors, or regulators.
- U.S. person status (U.S. citizen or lawful permanent resident) required due to access to Controlled Unclassified Information (CUI) under DFARS flow-down obligations.
- U.S.-based remote with reliable availability across U.S. business time zones; occasional travel to client sites for assessment support.
Technical Skills:
Cybersecurity & Compliance Knowledge:
- Working command of cybersecurity principles and practices, including compliance standards and regulations such as CMMC / NIST SP 800-171 and 800-171A, NIST SP 800-53, NIST CSF 2.0, HIPAA / HITECH, SOC 2, PCI DSS v4.0, FTC Safeguards Rule, GLBA, ISO/IEC 27001 / 27002, and CIS Controls v8.
- Familiarity with the federal contracting compliance stack — DFARS View phone number on us.fitly.work, 7019, 7020 and 7021, FAR 52.204-21, CUI marking and handling per 32 CFR Part 2002, and the phased CMMC rule.
- Awareness of adjacent privacy and sector regimes: U.S. state privacy laws, GDPR, NY DFS Part 500, SEC cyber disclosure obligations, and CJIS.
- Proficiency in incident response and threat mitigation strategies.
Risk Management:
- Ability to conduct comprehensive risk assessments and map findings to security controls.
- Experience building and maintaining remediation plans (POA&Ms) and mitigation strategies.
Technical Tools:
- Familiarity with cybersecurity tools and technologies (e.g., SIEM, EDR/XDR, IDS/IPS, firewalls), with Microsoft security stack experience preferred.
- Experience with GRC and compliance platforms (e.g., IntelliGRC, Vanta, Secureframe, Drata, Onetrust, FutureFeed) and evidence-collection workflows.
Engagement Management Skills:
- Ability to manage a high volume of concurrent client engagements (20–30 relationships) with disciplined prioritization.
- Strong scheduling and follow-through; proficiency with PSA/ticketing and project tracking tools.
- Ability to work within — and improve — standardized templates and delivery processes.
Interpersonal Skills:
- Excellent communication skills for interacting with client stakeholders from IT staff to executives; ability to translate technical findings into business terms.
- Ability to build and maintain strong client relationships and work effectively with coordinators and a distributed team.
Analytical and Reporting Skills:
- Ability to track and report on engagement metrics, compliance status, and deliverable progress.
- Proficiency in generating clear client-facing and executive-level reports.
- Expertise in monitoring regulatory compliance and refining security policies and procedures based on industry best practices.
Professional Development:
- Commitment to staying current on emerging trends and technologies in cybersecurity, the CMMC ecosystem, and evolving compliance requirements.
- Participation in industry training, conferences, and credential maintenance.
Compensation
Pay rate starts at $95,000.00 up to $120,000.00 annually (inclusive of delivery-based bonus paid monthly) and may vary by experience and location.
Benefits- Medical Insurance Plan
- Dental & Vision
- Life Insurance
- Disability Coverage
- Paid Time Off (starts at 15 days per year)
- Paid Maternity/Paternity Leave
- Paid US Holidays
- Retirement Plan
- Salary Advancement/Loan
- Health & Wellness Program
- Company-paid training and certification
- Supplemental Life Insurance (Employee-paid)
- Supplemental Health Plans (Employee-paid)
Fraud Alert – Recruitment Scams
Intelligent Technical Solutions (ITS) has been made aware of fraudulent job postings and communications misrepresenting our company. Applicants are advised to exercise caution and apply only through official ITS channels.
- ITS does not request payment or financial information at any stage of the hiring process.
- Sensitive personal information (e.g., Social Security numbers) will not be requested prior to a formal offer.
- We have become aware of fake profiles on LinkedIn, Facebook, and other social media platforms impersonating our employees and falsely claiming to represent our company. Please exercise caution when interacting with these accounts.
- If you receive suspicious messages or requests, do not engage. Report them to View email address on us.fitly.work.
- All verified job openings are posted here: -openings.
PRE-RECORDED VIDEO INTERVIEW
$160k - $190k
...Job Description Job Description Senior Federal Cybersecurity & Compliance Consultant (Expert in CMMC, NIST, FedRAMP,... ...Regulatory Compliance) Remote / Full-Time Are you a brilliant... ...AI Governance. Our clients value us because we don’t just deliver checklists...Remote workSeniorFull timeFlexible hours$95k - $120k
Senior Cybersecurity Compliance Consultant This senior-level role combines cybersecurity compliance consulting, risk management, and client-facing security... ...professional certification opportunities. U.S.-based remote work with flexibility across business time zones. Opportunity...Remote workSeniorHourly payPermanent employmentContract workFixed term contract- ...future direction of BCBSA's cybersecurity program. -Assess internal and... ...Management Program (FedRAMP) compliance strategy by building and scaling... ...providing status updates to Senior/Executive management.... ...with the law. SummaryLocation: US IL Chicago E. RandolphType: Full...SeniorFull timeShift work
$35 - $40 per hour
...SpecialistRemote - Memphis preferred, open to remote candidates so please specify location/... ...global regulatory submissions, including US 510(k) and EU technical documentation,... ...Operating Procedures (SOPs) intended to assure compliance with applicable global regulatory...Remote workSeniorContract work$140k - $165k
...APPROXIMATELY 60% ONSITE/40% REMOTE. AUSGAR... ...Information Assurance, Cybersecurity and Systems Engineering... ...right individual! Senior Cybersecurity Analyst... ...cybersecurity vulnerabilities and compliance issues. Work with the... .... Please e-mail us at ****@*****.*** if...Remote workSeniorFull timeContract workFor contractorsWork experience placement- ...Technical Group (LMR) is seeking a Senior Cyber Security Specialist.... ...is critical to ensuring compliance with DoD cybersecurity policies, standards and... ...support for network switches and remote system updates. Perform... ...process, please contact us at ****@*****.*** . EOE...Remote workSeniorFull timeTemporary work
$135k - $143k
...Work Location: Remote with occasional on-site... ...per month. The Senior Cybersecurity Analyst leads in the... ...Risk Management & Compliance: Conduct comprehensive... ...Requirements US citizenship required.... ...requirements. Gunnison Consulting Group's total compensation...Remote workSeniorFull timeContract workCasual workFlexible hours- Baker Tilly is seeking a Senior Payroll Consultant within our Human Resources & Payroll Consulting team... ...focused on payroll operations, compliance, and process improvement. You’ll work... ...working with clients, and building expertise across #J-18808-Ljbffr Baker Tilly USRemote jobSenior
- Core Compliance & Legal Services, Inc. (“Core Compliance”), an industry... ...specializing in compliance consultation for SEC registered RIAs, is in... .../Hybrid), open to West Coast remote candidates willing to travel... ...objectives and goals. What sets us apart from other firms: 1% of...Remote workSeniorWork at office
$100k - $130k
...moins utilisés et pour consulter vos préférences, veuillez... ...l’identification.Sr. Compliance Officer - Monitoring &... ...Associate), TD Securities (US) page is loaded## Sr.... ...), TD Securities (US)remote type: Hybridelocations:... ...Qualifications:**This Senior Compliance Officer is a...Remote workSeniorTemporary workWork experience placementWork from homeFlexible hours$80k - $135k
...accountable and experienced Senior Cybersecurity Analyst who will serve as a... ...and internal audit control compliance and responses to due diligence... ...entrusted their good name to us. That passion – built on a... ...detailed overview, visit our careers website at #LI-Remote#LI-EH1...Remote workSeniorTemporary work$75 - $150 per hour
...Treliant, LLC is seeking experienced consultants with expertise in Fair Lending, UDAAP, and CRA for fully remote engagements. As a consultant, your primary responsibilities include advising clients on compliance efforts and reviewing their policies. Ideal candidates possess...Remote workSeniorHourly pay- ...Owning global compliance responsibilities, the full-time Senior Compliance Officer will provide real-time advisory compliance... ...framework while working remotely. Key responsibilities Provide real... ...multi-venue regulatory obligations in regions such as the US, EU, or UK...Remote workSeniorFull time
- ...Assisting the US Regulatory Leads, the full-time Senior Associate Regulatory Affairs will coordinate and execute US regulatory... ..., manage documentation for regulatory compliance, and support Global Regulatory Team interactions in a remote capacity. Key responsibilities include:...Remote workSeniorFull timeLocal area
- ...while delivering secure, scalable, and future-ready cloud solutions. You will partner with sales and technical teams to drive strategy, architecture, and successful client outcomes in complex environments, ensuring long-term cloud adoption #J-18808-Ljbffr Jobleads-USRemote jobSenior
- ...Title: Senior SAP ABAP Developer (Remote) Job ID : 21361-1 Contract: 12 -month contract to hire Citizenship Requirement: US Citizenship or Perm Residents required Shift : 4/10, 1st Shift Pay Rate: $100.00 - $125.00/hr on W2!...Remote workSeniorPermanent employmentContract workShift workDay shift
- A leading cybersecurity company is seeking a Solutions Consultant to guide clients through their security transformation journeys. This role involves providing technical leadership, building customer relationships, and delivering impactful presentations. The ideal candidate...Remote jobSenior
- ..., unicorns). Weraised 4M+ in VC funding, and are currently building TA communities & scouting new projects all over Europe, APAC and US. Extensive (+3 years) recruitment experience (in-house or agency) Strong sourcing and client management skills Experience hiring for...Remote workSenior
- ...Senior Associate - Regulatory Affairs, Oncology At ***, if you feel like you're part... ...'ll thrive as part of the *** team. Join us and transform the lives of patients while... ...the direction of the US Regulatory Lead in compliance with corporate standards and regulatory requirements...Remote workSeniorLocal area
- ...Regulatory Affairs Specialist In this vital role you will assist the US Regulatory Leads and the Global Regulatory Team (GRT) in the... ...submissions under the direction of the US Regulatory Lead in compliance with corporate standards and regulatory requirements. To manage...Remote workSeniorLocal area
- Remote People in the United States is seeking a Senior Recruitment Consultant to spearhead growth in the US market. You will manage business development and recruitment processes, directly impacting the company's success in this region. This role requires a minimum of 5...Remote jobSenior
- ...Senior Regulatory Affairs Specialist Saluda Medical is a commercial-stage medical device... ...and guidance documents to ensure ongoing compliance to regulatory requirements Assist with... ...: Experience with European, US and/or Australian Medical Device Regulations...Remote workSenior
$140k - $160k
...Senior Regulatory Affairs Specialist Iovance Biotherapeutics aims to be the global leader... ...eCTD format a plus. Understanding of US, and Ex-US including international regulations... ...required to engage in both in-person and remote team members. Excellent interpersonal,...Remote workSeniorWork at office$130k - $140k
...: : As a member of the FedRAMP compliance and advisory team, your work will revolve... ...cloud and container environments, As a Senior Consultant on the team, your specific... ...Monday to Friday Work Location: Hybrid remote in McLean, VA 22102 No Agencies please...Remote workSeniorFull timeWork experience placementWork at officeMonday to FridayFlexible hours- A leading NetSuite solution partner in the US is seeking a Senior NetSuite Consultant to lead a team and drive project delivery. The role requires 4+ years of NetSuite experience and strong communication skills. You'll mentor junior consultants and stay hands-on with clients...Remote jobSenior
$120k
...day-to-day projects - it further protects the US defense industrial base from cyber threats,... ...an impact. Essential Functions The Senior Compliance Analyst assists Summit 7 and our clients in meeting key cybersecurity compliance initiatives including Cybersecurity...Remote workSeniorPermanent employmentWork at office- ...Senior Regional Compliance Associate Hybrid - Irving, TX Company Description Farther is a rapidly... ...record working with distributed or remote advisor teams Please note: Some... ...on the region you support. Why Join Us Competitive comp package that...Remote workSenior
- ...Senior Compliance Analyst, Global Streaming Technology, Analytics and Assurance Remote 12 months Responsibilities: The Senior... ...Prior experience at a Big 4 consulting firm (Deloitte, PwC, EY, KPMG... .... Why Join Us? • Remote-first work environment...Remote workSeniorFlexible hours
- Klarna is seeking a US Screening Adjudication Expert to own sanctions, PEP, and adverse media screening for the US market, including... ...SOPs, with a focus on regulatory timelines and cross-border compliance. Remote-ready in the US with a dynamic fintech scope. #J-18808-Ljbffr...Remote workSenior
- ...technology business is seeking an experienced Benefits Specialist to manage US benefits and leave programs. This fully remote role involves owning various employee benefit programs, ensuring compliance across multiple states, and supporting broader HR operations. Ideal...Remote jobSenior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cybersecurity Compliance Consultant (US Remote). Be the first to apply!
- regulatory analyst Baltimore, MD
- risk and compliance analyst Baltimore, MD
- regulatory affairs specialist Baltimore, MD
- compliance analyst Baltimore, MD
- aml compliance analyst Baltimore, MD
- medicare compliance specialist Baltimore, MD
- cybersecurity policy and compliance analyst Baltimore, MD
- regulatory officer Baltimore, MD
- compliance coordinator Baltimore, MD
- coding compliance specialist Baltimore, MD



