Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Consultant, Security Governance

Presidio Networked Solutions, LLC

Description

Presidio, Where Teamwork and Innovation Shape the Future
At Presidio, we're at the forefront of a global technology revolution, transforming industries through cutting-edge digital solutions and next-generation AI. We empower businesses - and their internal customers - to achieve more through innovation, automation, and intelligent insights.

The Ro le
A Principal Security Governance Consultant is expected to have a deep level of expertise and vast knowledge base in core information security governance, risk, compliance, and privacy domains. It is critical that a Principal Security Governance Consultant be able to present complex solutions and topics in a concise manner. The consultant must be comfortable blending multiple service offerings and deliverables into a single aggregate final risk report/deliverable and executive presentation for audiences of all levels and skillsets.

The consultant will have experience in reviewing, understanding, and interpreting risk management and compliance frameworks, security standards, and privacy models. The consultant must have a professional and practical understanding of Information Technology, including how technical and administrative controls are implemented across various industry verticals and company sizes. The candidate should be well versed in assessing said controls, understand how controls should be governed, and be able to assist in the strategic development of aligning security goals to business objectives.

As a PCI QSA company, we are expanding the pool of PCI Qualified Security Assessors (QSAs) and CMMC Registered Practitioners (RPs) on the Information Security Governance (ISG) team to meet client demand. The ideal consultant will have a certification from both List A and List B from the QSA qualification requirements listed below. If a certification has not yet been attained from either List A or List B, the consultant will be expected to attain a certification within the first 3 months of employment in order to register for PCI QSA training within 6 months of hire date and complete CPEs annually to renew certifications. If the consultant is not yet a CMMC RP, the consultant will be expected to attain CMMC RP certification within 3 months of attaining PCI QSA certification.

Travel Requirements:

This is a remote role located in the Continental US. You will be required to travel up to 30% to client locations to deliver professional services when needed.

Responsibilities Include:

  • Lead client engagements and project execution providing information security consultation and assessment services, helping our clients meet their compliance obligations by evaluating their business, technology, and operations against industry security standards
  • Educate, mentor, advise, and share your expertise with clients and colleagues to aid in making decisions on topics like Artificial Intelligence, organizational security strategy and services scope as well provide consultative guidance on complex projects
  • Providing clear, organized findings and recommendations to clients and tracking progress towards resolution and compliance
  • Consult/advise with C-level Security Leaders (CISO, CSO, CIO, etc.) and the Board of Directors with our most valued and strategic clients
  • Develop strategic, operational, and tactical recommendations tailored to each client with the intent to improve a client's security posture and compliance position
  • Create detailed strategic security roadmaps with short-term, mid-term, and long-term goals that prioritize remediation recommendations and address all instances of non-compliance with applicable regulatory, statutory, contractual, and organizational obligations
  • Lead large security engagements in concert with other cybersecurity practices and Presidio teams
  • Develop security policies, standards, and procedures that are custom-tailored to each client's unique culture, security goals, and organizational objectives using industry best practices and compliance requirements
  • Review, analyze, and assess key factors, including inherent risk, mitigating controls, business impact, likelihood and other key elements to determine organizational security risk
  • Ensure and assess client alignment to, and/or compliance with, applicable regulatory, federal, state, local, contractual, and organizational requirements and best practices standards such as ISO 27001, NIST Cyber Security Framework (CSF), PCI DSS, HIPAA, FERPA, NIST 800-171, CMMC, etc.
  • Work closely with organizations to conduct security program development by establishing the foundation for a best of breed security program architecture reference model using industry frameworks and standards such as ISO 27001, NIST 800-53, NIST CSF, etc.
  • Work with other seasoned Principal Security Consultants in a collaborative setting to support and assist on the execution and delivery of key services such as Cloud Governance, Advisory Services, security program development, documentation review, and security consulting services
  • Execute tabletop exercises after collaborating with client stakeholders to select the scenario then create an After-Action Report
  • Deliver PCI Advisory Services, including PCI Gap Analysis, SAQs, ROCs and AOCs
  • Deliver CMMC Advisory Services, including CMMC Readiness Assessments
  • Assist leadership in cybersecurity administrative functions, such as documentation maintenance, documentation creation, peer review, and other internal cybersecurity activities

Additional Professional Experience and Service Delivery Requirements:

  • Strong professional expertise in information security with the ability to thoroughly understand complex principles and apply them practically
  • Deliver consulting services on time and on budget
  • Comfortably present security concepts and/or findings to both highly technical and entirely non-technical audiences
  • Must be analytical, detail oriented, innovative, and recognize opportunities to provide value added consulting services to clients
  • Ability to manage multiple and simultaneous clients, tasks, and responsibilities, work alone or in small teams, achieve established goals and objectives, and proactively communicate progress
  • Ability to work collaboratively or independently as required by the engagement's needs
  • Ability to be flexible and embrace change
    • Continuously evolve approaches based on changing requirements, new information, or updated guidance
    • Ability to manage multiple and changing priorities and tasks

Required Skills and Professsonal Experience:

  • Bachelor's Degree with a focus on Information Security, IT, Computer Science, or Engineering preferred or the equivalent work experience and/or military experience
  • 5-8 years previous consulting experience
  • 5-8 years' experience conducting Information Security risk and compliance assessments
  • 5-8 years' experience evaluating compliance with regulatory and key IT standards such as HIPAA, PCI DSS, NIST CSF, ISO 27001, and other similar standards/frameworks
  • Cloud experience with AWS, Azure or Google Cloud Platform or non-foundational certification for any of these cloud platforms or one of the following cloud agnostic certifications: Certified Cloud Security Professional (CCSP), Certificate of Cloud Security Knowledge (CCSK), GIAC Cloud Security Essentials (GCLD)
  • Possess at least one of the following accredited, industry-recognized professional certifications from each list:
    • List A
      • ISC2 Certified Information System Security Professional (CISSP)
      • ISACA Certified Information Security Manager (CISM)
      • Certified ISO 27001 Lead Implementer
    • List B
      • ISACA Certified Information Systems Auditor (CISA)
      • GIAC Systems and Network Auditor (GSNA)
      • Certified ISO 27001, Lead Auditor, Internal Auditor 1
      • IRCA ISMS Auditor or higher-e.g., Auditor/Lead Auditor, Principal Auditor
      • IIA Certified Internal Auditor (CIA)

Additional Professional Experience and Service Delivery Requirements:

  • Strong professional expertise in information security with the ability to thoroughly understand complex principles and apply them practically
  • Deliver consulting services on time and on budget
  • Comfortably present security concepts and/or findings to both highly technical and entirely non-technical audiences
  • Must be analytical, detail oriented, innovative, and recognize opportunities to provide value added consulting services to clients
  • Ability to manage multiple and simultaneous clients, tasks, and responsibilities, work alone or in small teams, achieve established goals and objectives, and proactively communicate progress
  • Ability to work collaboratively or independently as required by the engagement's needs
  • Ability to be flexible and embrace change.
    • Continuously evolve approaches based on changing requirements, new information, or updated guidance
    • Ability to manage multiple and changing priorities and tasks

Preferred Skills and Professional Experience

  • One or more AI certifications (e.g., ISO 42001, ISACA AAISM, ISACA AAIR, IAPP AIGP)
  • Experience leading AI security assessments, maturity reviews, and developing remediation roadmaps for clients
  • Ability to translate technical AI risks into executive-level recommendations and measurable controls

Your future at Presidio
JoiningPresidio means stepping into a culture of trailblazers - thinkers, builders, and collaborators - who push the boundaries of what's possible. With our expertise AI-driven analytics, cloud solutions, cybersecurity, and next-gen infrastructure, we enable businesses to stay ahead in an ever-evolving digital world.

Here, your impact is real. Whether you're harnessing the power of Generative AI, architecting resilient digital ecosystems, or driving data-driven transformation, you'll be part of a team that is shaping the future.

Ready to innovate? Let's redefine what's next-together.

About Presidio
Presidio is committed to hiring the most qualified candidates to join our amazing culture. We aim to attract and hire top talent from all backgrounds, including underrepresented and marginalized communities. We encourage women, people of color, people with disabilities, and veterans to apply for open roles at Presidio. Diversity of skills and thought is a key component to our business success.

At Presidio, speed and quality meet technology and innovation. Presidio is a trusted ally for organizations across industries with a decades-long history of building traditional IT foundations and deep expertise in AI and automation, security, networking, digital transformation, and cloud computing. Presidio fills gaps, removes hurdles, optimizes costs, and reduces risk. Presidio's expert technical team develops custom applications, provides managed services, and enables actionable data insights and builds forward-thinking solutions that drive strategic outcomes for clients globally. For more information visit

****

Applications will be accepted on a rolling basis.

Presidio has a strong commitment to the community we serve and our employees. As an Equal Opportunity Employer, we strive to have a workforce that includes the community we serve.

Presidio is an Equal Opportunity Employer Disability/Vets. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information, and other legally protected categories.

The "Know Your Rights" Poster is available here:

Presidio EEO Policy Statement is available here:

Presidio is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to View email address on click.appcast.io and let us know the nature of your request and your contact information.

Presidio is a VEVRAA Federal Contractor requesting priority referrals of protected veterans for its openings. State Employment Services, please provide priority referrals to.

Notice of Massachusetts Candidates: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Recruitment Agencies, Please Note: Presidio does not accept unsolicited agency resumes/CVs. Do not forward resumes/CVs to our career's email address, Presidio employees or any other means. Presidio is not responsible for any feeds related to unsolicited resumes/CVs.

#LI-PH1

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Principal Consultant, Security Governance in New York, NY vacancy
  •  ...a Sr. Enterprise Architect Principal to serve as the Electronic Health...  ...oversight, and engineering governance across a complex, largescale...  ..., performance, and security of enterprise EHR services....  ...the highest-level engineering consultant to program leadership and customer... 
    Principal

    General Dynamics Information Technology

    New York, NY
    2 days ago
  •  ...of interest from US-based candidates for the position of Principal Consultant - Security. Responsibilities Act as a leader for technical client...  ...Response (SOAR). Cybersecurity Operations/Compliance & Governance. Privileged Access & Vulnerability Management. User Defined... 
    Principal
    Full time
    Contract work
    Remote work

    LAB3

    New York, NY
    2 days ago
  •  ...OpenAI is looking for a Principal Software Engineer to join the Infrastructure Security team. This role involves designing and implementing high-scale security systems critical to safeguarding OpenAI's technology and user data. Candidates should possess strong software... 
    Principal

    OpenAI

    New York, NY
    2 days ago
  • A global law firm is seeking a Principal Security Engineer to manage their information security systems and processes. The ideal candidate has over 7 years of experience in information security engineering, extensive knowledge of SIEM systems, and the ability to analyze... 
    Principal
    Remote work

    Insight Global

    New York, NY
    13 days ago
  • $276k - $414k

     ...execute with privacy at the forefront. We're looking for a Principal Software Engineer to join the Ads Platform team at Snap. What...  ...demonstrate progress towards our environmental, social, and governance (ESG) goals, and we lay out our plans looking forward. The... 
    Principal
    Live in
    Work at office
    Local area

    Snap

    New York, NY
    5 days ago
  •  ...ManTech is looking for a visionary Senior Principal Cyber Security Engineer to join their Enterprise Cyber Security Team. You will be instrumental in engineering automated and secure environments that protect critical assets. The role requires extensive experience in... 
    Principal

    ManTech

    New York, NY
    2 days ago
  • $220.8k - $276k

    A leading technology firm is seeking a candidate for a customer-facing pre-sales role focusing on enterprise solutions in New York. Responsibilities include driving customer opportunities, integrating products, and managing relationships with customers and technology partners...
    Principal
    Remote work
    Flexible hours

    Cohesity

    New York, NY
    20 hours ago
  • $347k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of...  ...security culture. About the Role OpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (InfraSec... 
    Principal

    OpenAI

    New York, NY
    2 days ago
  • $90k - $125k

     ...United States About Skylight Skylight is a digital consultancy using design and technology to help government agencies deliver better public services. We’re at...  ..., you may be required to obtain a public trust or security clearance. You may be required to complete a company... 
    Principal
    Full time
    Temporary work
    For contractors
    Remote work
    Flexible hours

    Skylight

    New York, NY
    2 days ago
  • $170.63k - $243.75k

     ...Zscaler is seeking a Principal Specialist Sales Engineer for Data Security to engage with SLED and Healthcare customers. In this role, you will create technical presentations, gather requirements, and guide product evaluations. Candidates need a BSCS or equivalent and... 
    Principal

    Zscaler

    New York, NY
    2 days ago
  •  ...changes. Our projects cover multiple fields such as microservice governance, RPC frameworks, MQ messaging middlewares, and data...  ...middleware technologies to ensure high availability, scalability, and security of the system. Proficient in microservices frameworks such as... 
    Principal

    Framework Ventures

    New York, NY
    2 days ago
  • $206k - $303k

     ...CRWV) in March 2025. Learn more at The Security Products organization at CoreWeave...  ...role CoreWeave is seeking a Staff or Principal Engineer for our Security Products team...  ...controlled information. To conform to U.S. Government export regulations applicable to that... 
    Principal
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    2 days ago
  • A leading staffing firm is seeking a Senior Governance, Risk, and Compliance (GRC) Analyst / Engineer. In this role, you will work on security best practices and compliance for cutting-edge robotic delivery solutions. You'll assess risks related to financial and IT systems... 
    Remote work

    Prestige Staffing

    New York, NY
    9 days ago
  • Flagstar Bank is seeking a Principal Technology Engineer in New York, NY. This role involves being a hands-on technical expert responsible for the backend compute environment, including M365 and disaster recovery readiness. The engineer will coordinate with cross-functional... 
    Principal

    Flagstar Bank

    New York, NY
    3 days ago
  • ## Senior Engineer, Cyber Security GenerationApplylocations: Perrytime type: Full timeposted on: Posted Todayjob requisition id: 4001...  ...are achieved. Learn more about our environmental, social, and governance efforts and read the company’s sustainability report at hardworking... 
    Local area

    Vistra Energy

    Brooklyn, NY
    2 days ago
  •  ...ISVG Engineer (IBM Security Verify Governance) Department: Information Technology Office: Remote Location: Remote No Third Parties Must be able to obtain a Federal Clearance. No exceptions can be made. Job Description: Strategic Technology Partners LLC has an opportunity... 
    Work at office
    Local area
    Remote work

    Strategic Technology Partners LLC

    New York, NY
    2 days ago
  • $190k - $284k

     ...our community and helps businesses grow. We're looking for a Principal Product Marketing Manager to join our Product Marketing team...  ...we demonstrate progress towards our environmental, social, and governance (ESG) goals, and we lay out our plans looking forward. The... 
    Principal
    Live in
    Work at office
    Local area

    Snap

    New York, NY
    1 day ago
  •  ...Enterprise Architect or Lead Engineer/Security/Governance/Banking Location: Hybrid in Midtown, NYC (Local) This is an Information Security...  ..., data). Proven leadership as a Distinguished Engineer, Principal Engineer, Staff Engineer, or Fellow in a Fortune 500 or... 
    Local area

    InterSources

    New York, NY
    1 day ago
  •  ...Job Responsibilities • Help build, maintain and execute a strategy to secure our customer-facing products • Perform security reviews and code reviews of our products • Oversee our Agile-SDL process ensuring security throughout all phases of the SDL • Partner with the... 
    Principal

    Procyon TS

    New York, NY
    4 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Global organization modernizing enterprise risk, data governance, and cyber protection. Industry Internet Type Privately Held About the Role The Company is seeking a Chief Information Security... 

    Confidential

    New York, NY
    4 days ago
  •  ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence...  ..., strategic role in leading the design, formalization, and governance of an enterprise-wide cybersecurity program. The successful candidate... 
    Part time

    Confidential

    New York, NY
    4 days ago
  • $300k - $400k

     ...Chief Information Security Officer New York, New York, United States About Us DriveWealth is on a mission to make investing...  ...the company's entire security function across four key domains: Governance, Risk & Compliance (GRC), Offensive Security (Red Team),... 
    Full time
    Work at office
    Worldwide

    DriveWealth

    New York, NY
    4 days ago
  • A financial technology company is seeking a Chief Information Security Officer (CISO) to lead the establishment of its information security...  ...programs. The CISO will develop and oversee cybersecurity governance as the bank prepares to launch. This role requires substantial... 
    Remote work

    Affirm

    New York, NY
    9 days ago
  • ## Associate Principal ConsultantApplylocations: North Wales, PAtime type: Full timeposted on: Posted Todayjob requisition...  ...Completeness. Define and enforce comprehensive data governance frameworks, RBAC policies, and security best practices, while providing technical leadership... 
    Principal

    Jade Global, Inc.

    New York, NY
    2 days ago
  • $200k - $245k

     ...About AvePoint: Beyond Secure. AvePoint is the global leader in data security, governance, and resilience, going beyond traditional solutions to ensure a robust data foundation and enable organizations everywhere to collaborate with confidence. Over 25,000... 
    Principal
    Worldwide

    AvePoint

    Jersey City, NJ
    20 hours ago
  •  ...Principal Engineer, Platform & Infrastructure Security Locations: AMER; London; New York; Seattle About Nscale Nscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start‑ups and large enterprise customers... 
    Principal
    Remote work
    Flexible hours

    Nscale Ltd.

    New York, NY
    4 days ago
  • $119k - $299.93k

     ...compliance with regulations including assessing governance and risk management processes and...  ...processes and controls, cyber security measures, data and AI systems, and their...  ...Degree - 7 years of IT controls auditing, consulting and/or implementing IT solutions - Certified... 
    H1b

    PricewaterhouseCoopers

    New York, NY
    3 days ago
  • $119k - $299.93k

     ...compliance with regulations including assessing governance and risk management processes and...  ...processes and controls, cyber security measures, data and AI systems, and their...  ...Degree ~7 years of IT controls auditing, consulting and/or implementing IT solutions ~ Certified... 

    PwC (US)

    New York, NY
    1 day ago
  • $147k - $237.5k

     ...Chronosphere is trusted by the world's most innovative brands, including DoorDash, Affirm, and Zillow. Job Summary As a hands-on Security Engineer, you will play a crucial role within the infrastructure engineering team. Your responsibilities include defining and... 
    Principal
    Remote work
    Flexible hours

    Palo Alto Networks

    New York, NY
    5 days ago
  • $200k

     ...expertise and strategic guidance supporting cybersecurity posture, governance, and risk analysis for advanced technology modernization...  ...product and an overall system risk. Coordinate with the proper Security Agencies to ensure cyber threat intelligence is included in risk... 
    Extra income
    Contract work
    Temporary work
    Remote work
    Flexible hours

    Colsa-5

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Consultant, Security Governance. Be the first to apply!