IT Security Consultant
$128.1k - $239.6kEY
EY Infosec is seeking a Cloud Security consultant with expertise in cloud security architecture, configuration, and governance across the Microsoft Azure platform with subject matter expertise on Cloud Native Application Protection Platform (CNAPP) technology and its integration into development, release, and operational practices. This is a hands‑on role to guide, implement and maintain the security of cloud services and infrastructure. The consultant will lead the enablement of CNAPP technology and apply best practices for secure deployments to proactively identify and mitigate security risks for EY’s business applications hosted in the Azure environment. The ideal candidate will also have familiarity with other cloud platforms such as GCP and AWS. Role Summary This position is a Business security consultant to drive the full lifecycle enablment of the Wiz CNAPP platform across a large and growing portfolio of applications hosted in Azure, as well as at the Azure infrastructure level. The consultant will work within a DevSecOps model and enable automated security testing and compliance, vulnerability management, and overall risk reduction in the environment. The ideal candidate will have to think outside the box to solve unique security issues that arise and adopt new cloud services. The role will also provide advice to the project teams in designing, developing and implementing all aspects of security for complex global applications based on Microsoft Azure technology and generally the Microsoft technology stack. The role is very much an individual contributor capable of supporting multiple project teams. In other words, it is not a program management or oversight role, but one that requires collaboration with product owners, architects, developers, DevOps, and other information security roles in the design, implementation and certification of security controls across multiple projects/applications. This also requires knowledge of various IT system architectures and Cloud technology, as well as supporting technologies such as SAST tools, DAST tools, Identity and Access Management (IAM), network security, firewalls, audit and logging, and other security concepts as outlined in ISO27001, OWASP and related security standards. The consultant should have knowledge of 3rd Party security assessments and applicability of SOC1 and SOC2 reports and concepts of vendor risk management. Key Responsibilities SME to mature/advance our cloud security posture using the Wiz CNAPP across the Azure cloud platform. Guide and help integrating Wiz to drive risk‑based remediation with product/DevOps teams and automate guardrails that keep our environment compliant and resilient. Drive the implementation of existing and new features of Wiz and build the capabilities of CNAPP within EY. Develop, tune, and enforce security policies, requirements, standards, and procedures for cloud environments and containerized workloads, including Kubernetes clusters setup, and orchestration solutions, emphasizing vulnerability reduction and compliance. Collaborate with cross‑functional teams to shift left (IaC scanning in CI/CD, approve/deny policies), integrate security best practices into the software development lifecycle (SDLC) and continuous integration/continuous deployment (CI/CD) pipelines. Develop and implement security automation solutions to continuously monitor cloud environments for compliance, threats, and performance anomalies. Automate ingestion of security defects and vulnerability findings to Jira/ServiceNow. Conduct regular security assessments, vulnerability scans, and threat modeling for cloud environments. Identify, evaluate, and mitigate risks in cloud infrastructure using automated/customized methods. Work with cross‑functional teams, including security architects, engineers, developers and product owners to explore new ideas and develop innovative ways to automate, monitor, and improve security at scale across cloud platforms. Work with Security Ops and Incident response teams to investigate and remediate security incidents, providing expertise on cloud‑specific attack vectors and mitigation strategies. Generate dashboards and executive metrics (risk reduction, SLA adherence, coverage) for assigned portfolio of business products and services. Report related security risks, incidents, and findings to leadership and relevant stakeholders. Collaborate with stakeholders to define project scope, deliverables, and expectations, ensuring alignment with business objectives. Identify gaps in existing security tools and services, and, when necessary, collaborate with development teams to create custom security solutions to protect the organization. Qualifications Bachelor’s degree in Computer Science, Information Security, or related field 8+ years of experience working as a Cloud Security Engineer/Architect with Wiz (or similar CNAPP platforms and capabilities) Hands‑on experience with Wiz (or similar CNAPP) capabilities at Enterprise level including – CSPM, CWPP, Vulnerability scanning, Compliance assessments, DevSecOps integration CI/CD familiarity (GitHub/GitLab/Azure DevOps), IaC (Terraform/CloudFormation) Scripting/automation (Rego/Python/TypeScript), APIs/webhooks, event pipelines Strong understanding of DevSecOps principles and practices. Must possess excellent communication, presentation, and collaboration skills. Relevant security certifications such as CISSP or GIAC certs or Azure Security Engineer is a plus Frameworks: CIS Benchmarks, NIST 800‑53, 800‑190, ISO 27001/27002, SOC 2 and other industry standards Bonus: data classification (GDPR/CCPA), Container/Kubernetes security (EKS/AKS) What we offer you The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we’ll develop you with future‑focused skills and equip you with world‑class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more. We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $128,100 to $239,600. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $153,800 to $272,300. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team‑led and leader‑enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40‑60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well‑being. EY accepts applications for this position on an on‑going basis. For those living in California, please click here for additional information. EY focuses on high‑ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on click.appcast.io. #J-18808-Ljbffr
- MANTECH is seeking a motivated, customer-oriented Cyber Security Analyst to support our Marine Corps Systems Command (MCSC) contract in Quantico... ...(RMF), Cybersecurity Framework (CSF), technical knowledge of IT systems. Preferred Qualifications USMC or Navy Validator...SuggestedContract workWork at office
$119.6k - $215.4k
...solving problems for customers? Is Network and Infrastructure Security your passion? Join our Enterprise Security Architect Team... ...global business units empowering and supporting our peers. We also consult with customers and prospects on the application of our advanced...SuggestedWork experience placementWork at office$102.17k
...clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate... ...across infrastructure and applications. • Partner with IT and software development teams to remediate vulnerabilities and...SuggestedWork experience placementH1b$71.2k - $166.1k
...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required...SuggestedContract workTemporary workWork experience placementRelocationFlexible hours- ...Responsibilities Protecting the organization’s IT infrastructure by monitoring and responding to security threats Performing root cause analysis Implementing remediation strategies Managing cybersecurity tools Conducting risk assessments Maintaining compliance with standards...Suggested
$40 per hour
A cybersecurity-focused company is seeking experienced professionals to evaluate AI-generated security content and provide technical solutions. This flexible role, available as full-time or part-time, allows you to work remotely. Candidates should possess at least 2 years...Remote jobHourly payFull timePart timeFlexible hours$40 per hour
...for experienced cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats...Hourly payFull timePart timeRemote work- Responsibilities Acts as the primary resource for assigned, high profile providers or groups to establish, oversee, and maintain positive relationships. Optimizes interactions with assigned providers and internal business partners. Monitors service capabilities and collaborates...Contract work
$123.4k - $176.3k
...low TCO, and speed to market. Roadmaps & Standards: Develop IT strategies, architecture roadmaps, reference architectures leveraging... ...across business, data, integration, infrastructure, and security teams. Innovation & Research: Monitor emerging technologies,...Temporary workWork experience placementLocal areaImmediate startRemote workFlexible hours$94.1k - $170k
...across the full lifecycle of cloud-based services-including infrastructure, application development, testing, and operations-ensuring secure, scalable, and efficient integration of enterprise applications on multitenancy as appropriate. The engineer supports customer-...Contract workWork at office$115k - $150k
...Hagerty Consulting, Inc. (Hagerty) is the nation's leading emergency management and homeland security consulting firm. Known for its public spirit, innovative thinking, problem-solving, and exceptional people, Hagerty is sought after to work on some of the largest and...Permanent employmentTemporary workLocal areaImmediate startRemote workFlexible hours$80.2k - $133.68k
...in incident response, Endpoint Detection & Response (EDR), and Security Information and Event Management (SIEM). In this critical role,... ...forensic data, and network traffic across a complex healthcare IT environment Help to develop and tune SIEM correlation rules and...Full timeTemporary workWork experience placementRemote workShift work- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead efforts in expanding their incident response business. This role involves engaging with key stakeholders, managing strategic relationships, and driving business development...
$150k - $180k
...drives innovation, and ensures our technology landscape is scalable, secure, and future‑ready. You’ll work across business, application, data... ...& Team Leadership Build strong relationships with business and IT leaders to foster alignment. Communicate architectural vision,...Full time$150.16k
...application architecture, ensuring alignment with our strategic IT direction through a Microsoft-centric, cloud-first approach. You... ...closely with business and technology stakeholders to deliver scalable, secure, and integrated solutions across the enterprise application...Work experience placementH1bRemote work$20 per hour
Overview DataAnnotation is committed to creating quality AI. Join our team to help train AI chatbots while gaining the flexibility of remote work and choosing your own schedule. We are looking for analytical, detail-oriented small business owners, freelancers, and independent...Hourly payFull timeContract workPart timeFor contractorsSelf employmentFreelanceRemote work$40k
...mission‑critical programs across national security, defense, and public service delivery.... ...position. Maximus TCS (Technology and Consulting Services) Internal Job Profile Code: TCS0... ...operations, vulnerability management, or IT security functions. ~ Familiarity with...Contract workRemote work$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you'll collaborate...Work at officeRemote work$112.5k - $202.5k
...building solutions to help improve the security of the company? Do you want to collaborate... .... You will work directly with Akamai's IT and engineering organizations providing... ...171. Providing security guidance and consultation to Akamai business units. Leveraging...Work experience placementWork at officeWorldwide- Telework Eligible Yes Major Duties Serves as an Inventory Management (IM) Supervisor for DLA Energy; this is a supervisory position primarily responsible for providing direct and operational oversight of assigned Inventory Management team members at the site. ...Full timeWork at officeRemote work
$106.3k - $234.6k
...Job Description Develops advanced testing tools and methodologies to proactively identify and address security weaknesses. Uses expertise to recognize and escalate complex security violations, ensuring prompt response and resolution. Contributes to compliance assessments...Temporary workFlexible hoursShift work$110k - $140k
...Maximus is seeking a Security Compliance Architect to support DHS enterprise IT systems, ensuring security and compliance across environments. The role involves leading RMF activities, maintaining security artifacts, and ensuring adherence to federal standards. The ideal...$144.9k - $265.8k
...help to build a better working world. Consulting - Cybersecurity - Identity and Access Management... ...programs. ~ Translating business, security and regulatory needs into practical... ...identity, governance, privileged access or IT service management platforms. ~...Summer holidayFlexible hours$98.09k - $156.95k
...business partners. This includes verbal, written, and electronic communication, and delivering presentations when needed. Provide consultative support in analyzing business requirements / use cases / functional requirements in order to ensure the development of efficient...Work at officeLocal areaRemote workFlexible hours2 days per week$88.9k - $160.1k
...standards while addressing complex issues in routing and data center fabrics. Your work will ensure scalability, reliability, and security across a multi-vendor environment. As a Network Engineer II, you will be responsible for: Designing, building, and maintaining...Work experience placementWork at office- ...a critical role in maintaining the stability, performance, and security of Ardent’s network infrastructure. This individual will be responsible... ...and implement effective solutions Collaborates with other IT teams to resolve issues that span multiple infrastructure...Work at office
- ...Description & Qualifications Are you an Information System Security Engineer (ISSE) looking for a place where you can make an impact... ...related discipline with a minimum of 10 years of Cybersecurity or IT related knowledge and experience in lieu of degree Minimum 8...Full timeContract workPart timeInterim roleLocal areaFlexible hours
$140k
...here ( . Job Description : Job Description The Network Security Architect will design and build the network security... ...Serves as the technical expert and trusted advisor to engineering, IT, and business partners on network security design questions. ·...Full timeWork at office$95k - $110k
...and customer-focused outcomes. Qualifications ~5+ years of experience as a Project Manager. ~ Bachelor's degree in Business, IT Project Management, IT Management, Information Technology, Data Science/Analytics, or related area of study. ~ Experience managing...Permanent employmentWork experience placementLocal areaWorldwide- Cadmus is seeking a Technical Project Manager to deliver high-quality projects for a major telecom client. You will lead data engineering, analytics, ML, and data science initiatives across multiple teams, owning deliverables and improving delivery processes. The role centers...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security Consultant. Be the first to apply!


