Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Cybersecurity Compliance Consultant (US Remote)

$95k - $120k

Intelligent Technical Solutions (ITS)

Washington DC
  • Remote job

Job Description

Job Description

Job Summary

The  Security Advisor (Senior Cybersecurity Compliance Consultant) delivers active security practice management engagements, serving as the assigned security officer (vCISO) for a portfolio of client organizations. The role combines hands-on compliance delivery with client relationship ownership, risk management, and ongoing security advisory work. The role requires subject matter expertise across regulatory compliance frameworks, strong client-facing communication, and organizational discipline to manage a high volume of concurrent engagements. This position sits at the senior end of the practice: it carries the most complex and highest-regulatory-risk engagements in the portfolio and sets the technical standard for the practice's compliance deliverables.

Job Responsibilities

1. Client Advisory & vCISO Delivery: 

  • Serve as the assigned security officer (vCISO) for a portfolio of client engagements: lead recurring meeting cadences, act as the primary point of contact for clients' cybersecurity concerns and provide regular updates and reports on the status of security initiatives, including performance metrics, findings, and recommendations for improvement. 
  • Build strong client relationships, understand each client's unique regulatory and business requirements, and address their needs with tailored strategies and security roadmaps. 
  • Identify above-contract demand and security program growth opportunities within assigned accounts, surfacing right-sizing and expansion recommendations to practice leadership ahead of contract renewal. 
  • Track and maintain contract health ensuring that issues with delivery are communicated early. 

2. Compliance Program Delivery: 

  • Lead CMMC Level 1 and Level 2 readiness engagements: NIST SP 800-171 control assessments, System Security Plan (SSP) development, POA&M creation and management, SPRS score submission support, evidence collection, and client preparation for third-party assessment. 
  • Advise clients on CUI scoping, DFARS View phone number on ziprecruiter.com and FAR 52.204-21 obligations, and enclave architectures, including Microsoft GCC High environments. 
  • Deliver compliance engagements across additional frameworks as assigned, including HIPAA / HITECH, SOC 2 (Types I and II), PCI DSS v4.0, FTC Safeguards Rule, GLBA, ISO/IEC 27001 and 27002, NIST Cybersecurity Framework 2.0, NIST SP 800-53, CIS Critical Security Controls v8, and AI governance (NIST AI RMF, ISO/IEC 42001). 
  • Advise on sector- and state-specific regimes as engagements require, including NY DFS 23 NYCRR Part 500, SEC cybersecurity disclosure rules, CJIS Security Policy, StateRAMP / FedRAMP readiness, and U.S. state privacy laws (CCPA/CPRA and successors) alongside GDPR and ISO/IEC 27701 where clients have international exposure. 
  • Map overlapping control sets across frameworks to build unified control matrices, eliminating duplicate evidence collection across a client's concurrent compliance obligations. 

3. Security Assessment & Engineering Support: 

  • Conduct comprehensive risk assessments to identify potential threats and vulnerabilities, develop and implement mitigation strategies to enhance clients' security postures, and monitor compliance with regulatory requirements and industry standards, recommending remediation actions to address gaps or deficiencies.
  • Oversee data collection efforts to verify compliance and gather critical security information within client infrastructures, ensuring accuracy and reliability.
  • Review and interpret security tooling outputs across the Microsoft security stack (Defender XDR, Sentinel, Entra ID Protection, Intune, Purview, Conditional Access) and coordinate remediation with client IT teams and internal engineers.

4. Other Responsibilities: 

  • Perform general Security Officer duties, such as running security huddles, supporting cyber insurance questionnaires and attestations, and ensuring security tool functionality for assigned clients. 
  • Assist with incident response (IR) activities, including possibly participating in the on-call incident escalation rotation, supporting SOC coordinators, communicating with key stakeholders during incidents, contributing to playbooks, and conducting postmortems with clients.
  • Maintain accurate, timely time entries in the PSA (ConnectWise Manage); delivered hours are the practice's operational and financial source of truth.
  • Contribute to scalable templates, engagement processes, and the practice knowledge base, fostering a culture of continuous improvement and knowledge sharing.
  • Serve as an escalation resource on advanced framework interpretation and control-determination questions, and support quality review of compliance deliverables prior to client or assessor submission.
  • Stay informed about emerging threats, vulnerabilities, and regulatory changes — including the DoD's phased CMMC rollout — assessing their potential impact on clients and adjusting strategies accordingly. 

Job Qualifications

Credentials & Eligibility: 

  • CISSP (active and in good standing) — required at time of hire. This is a hard requirement: commitments to obtain, lapsed or Associate-level credentials, and equivalent-experience substitutions will not be considered.
  • CMMC ecosystem credentials required: CCP (Certified CMMC Professional) active at time of hire, with CCA (Certified CMMC Assessor) required within the first 12 months. Registered Practitioner (RP) status alone does not satisfy this requirement.
  • Additional certifications a plus: CISM, CRISC, CISA, GIAC (GSLC, GCCC), CompTIA Security+, Security X, Microsoft SC-series.
  • Minimum eight (8) years of progressive information security experience, including at least three (3) years delivering compliance or vCISO engagements across a multi-client portfolio in a consulting, MSP, or MSSP environment or something similar.
  • Demonstrated ownership of at least two (2) completed CMMC Level 2 readiness engagements, or equivalent NIST SP 800-171 assessment work, including SSP authorship and POA&M management through to third-party assessment.
  • Documented working depth in a minimum of three (3) distinct regulatory frameworks — surface familiarity across many frameworks is not a substitute for demonstrated depth.
  • Experience defending deliverables and control determinations directly to auditors, third-party assessors, or regulators.
  • U.S. person status (U.S. citizen or lawful permanent resident) required due to access to Controlled Unclassified Information (CUI) under DFARS flow-down obligations.
  • U.S.-based remote with reliable availability across U.S. business time zones; occasional travel to client sites for assessment support. 

Technical Skills: 

Cybersecurity & Compliance Knowledge: 

  • Working command of cybersecurity principles and practices, including compliance standards and regulations such as CMMC / NIST SP 800-171 and 800-171A, NIST SP 800-53, NIST CSF 2.0, HIPAA / HITECH, SOC 2, PCI DSS v4.0, FTC Safeguards Rule, GLBA, ISO/IEC 27001 / 27002, and CIS Controls v8.
  • Familiarity with the federal contracting compliance stack — DFARS View phone number on ziprecruiter.com, 7019, 7020 and 7021, FAR 52.204-21, CUI marking and handling per 32 CFR Part 2002, and the phased CMMC rule.
  • Awareness of adjacent privacy and sector regimes: U.S. state privacy laws, GDPR, NY DFS Part 500, SEC cyber disclosure obligations, and CJIS.
  • Proficiency in incident response and threat mitigation strategies. 

Risk Management: 

  • Ability to conduct comprehensive risk assessments and map findings to security controls.
  • Experience building and maintaining remediation plans (POA&Ms) and mitigation strategies. 

Technical Tools: 

  • Familiarity with cybersecurity tools and technologies (e.g., SIEM, EDR/XDR, IDS/IPS, firewalls), with Microsoft security stack experience preferred.
  • Experience with GRC and compliance platforms (e.g., IntelliGRC, Vanta, Secureframe, Drata, Onetrust, FutureFeed) and evidence-collection workflows. 

Engagement Management Skills: 

  • Ability to manage a high volume of concurrent client engagements (20–30 relationships) with disciplined prioritization.
  • Strong scheduling and follow-through; proficiency with PSA/ticketing and project tracking tools.
  • Ability to work within — and improve — standardized templates and delivery processes. 

Interpersonal Skills: 

  • Excellent communication skills for interacting with client stakeholders from IT staff to executives; ability to translate technical findings into business terms.
  • Ability to build and maintain strong client relationships and work effectively with coordinators and a distributed team. 

Analytical and Reporting Skills: 

  • Ability to track and report on engagement metrics, compliance status, and deliverable progress.
  • Proficiency in generating clear client-facing and executive-level reports.
  • Expertise in monitoring regulatory compliance and refining security policies and procedures based on industry best practices. 

Professional Development: 

  • Commitment to staying current on emerging trends and technologies in cybersecurity, the CMMC ecosystem, and evolving compliance requirements.
  • Participation in industry training, conferences, and credential maintenance.

Compensation

Pay rate starts at $95,000.00 up to $120,000.00 annually (inclusive of delivery-based bonus paid monthly) and may vary by experience and location.

Benefits
  • Medical Insurance Plan
  • Dental & Vision
  • Life Insurance
  • Disability Coverage
  • Paid Time Off (starts at 15 days per year)
  • Paid Maternity/Paternity Leave
  • Paid US Holidays
  • Retirement Plan
  • Salary Advancement/Loan
  • Health & Wellness Program
  • Company-paid training and certification
  • Supplemental Life Insurance (Employee-paid)
  • Supplemental Health Plans (Employee-paid)

 

Fraud Alert – Recruitment Scams

Intelligent Technical Solutions (ITS) has been made aware of fraudulent job postings and communications misrepresenting our company. Applicants are advised to exercise caution and apply only through official ITS channels.

  • ITS does not request payment or financial information at any stage of the hiring process.
  • Sensitive personal information (e.g., Social Security numbers) will not be requested prior to a formal offer.
  • We have become aware of fake profiles on LinkedIn, Facebook, and other social media platforms impersonating our employees and falsely claiming to represent our company. Please exercise caution when interacting with these accounts.
  • If you receive suspicious messages or requests, do not engage. Report them to View email address on ziprecruiter.com.  
  • All verified job openings are posted here: -openings.
Skip the wait, fast-track your application and jump straight into your next big opportunity. Start your instant interview now:

PRE-RECORDED VIDEO INTERVIEW 

Vacancy posted 19 days ago
Similar jobs that could be interesting for youBased on the Senior Cybersecurity Compliance Consultant (US Remote) in Washington DC vacancy
  • $95k - $120k

     ...Job Summary The  Security Advisor (Senior Cybersecurity Compliance Consultant) delivers active security practice...  ...flow-down obligations. U.S.-based remote with reliable availability across U....  ...Maternity/Paternity Leave Paid US Holidays Retirement Plan Salary... 
    Remote job
    Senior
    Permanent employment
    Contract work
    Fixed term contract

    Intelligent Technical Solutions

    Virginia
    19 days ago
  • $160k - $190k

     ...Job Description Job Description Senior Federal Cybersecurity & Compliance Consultant  (Expert in CMMC, NIST, FedRAMP,...  ...Regulatory Compliance)  Remote / Full-Time    Are you a brilliant...  ...AI Governance. Our clients value us because we don’t just deliver checklists... 
    Remote work
    Senior
    Full time
    Flexible hours

    Elevate

    Coral Gables, FL
    a month ago
  • $35 - $40 per hour

     ...SpecialistRemote - Memphis preferred, open to remote candidates so please specify location/...  ...global regulatory submissions, including US 510(k) and EU technical documentation,...  ...Operating Procedures (SOPs) intended to assure compliance with applicable global regulatory... 
    Remote work
    Senior
    Contract work

    Planet Professional

    Cordova, TN
    2 days ago
  •  ...REQUISITIONLegal, Risk & Compliance - Regulatory Compliance Senior ConsultantLOCATIONTORONTOADDITIONAL...  ...our way, inclusion moves us forward together,...  ...the most trusted global consulting firm. Where We Need...  ...with a purpose and working remotely. This model creates meaningful... 
    Remote work
    Senior
    Full time
    Local area
    Flexible hours

    Protiviti

    Toronto, OH
    10 hours ago
  • $140k - $165k

     ...APPROXIMATELY 60% ONSITE/40% REMOTE. AUSGAR...  ...Information Assurance, Cybersecurity and Systems Engineering...  ...right individual! Senior Cybersecurity Analyst...  ...cybersecurity vulnerabilities and compliance issues. Work with the...  .... Please e-mail us at ****@*****.*** if... 
    Remote work
    Senior
    Full time
    Contract work
    For contractors
    Work experience placement

    AUSGAR Technologies Inc.

    San Diego, CA
    10 hours ago
  •  ...Technical Group (LMR) is seeking a Senior Cyber Security Specialist....  ...is critical to ensuring compliance with DoD cybersecurity policies, standards and...  ...support for network switches and remote system updates. Perform...  ...process, please contact us at ****@*****.*** . EOE... 
    Remote work
    Senior
    Full time
    Temporary work

    Lmr Technical Group

    Panama City, FL
    10 hours ago
  • $135k - $143k

     ...Work Location: Remote with occasional on-site...  ...per month. The Senior Cybersecurity Analyst leads in the...  ...Risk Management & Compliance: Conduct comprehensive...  ...Requirements US citizenship required....  ...requirements. Gunnison Consulting Group's total compensation... 
    Remote work
    Senior
    Full time
    Contract work
    Casual work
    Flexible hours

    Gunnison Consulting Group Inc

    Washington DC
    10 hours ago
  • $86.8k - $198k

    Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen...  ...KPIs to other operational teams and senior leadership.Join us. The world can't wait.You Have:4+ years...  ...their cameras on during meetings.Remote: If this position is listed as remote... 
    Remote work
    Senior
    Full time
    Contract work
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    McLean, VA
    4 days ago
  • $105k - $145k

    Senior Cyber Security Specialist — Denver, Colorado...  ...activities, and ensuring compliance with global cyber...  ...such as NERC CIP, NIST Cybersecurity Framework, or IEC 6244...  ..., and vision care for US team members starts on...  ...office, Monday and Friday remote)Monthly personal phone... 
    Remote work
    Senior
    Work at office
    Local area
    Monday to Friday

    Lightsource bp

    Denver, CO
    10 hours ago
  •  ...Accountant to manage accurate financial records and support accounting functions. This fully remote role requires strong analytical skills and familiarity with eCommerce accounting, US GAAP, and financial statements. Ideal candidates have over 5 years of experience and... 
    Remote work
    Senior

    Elite Talent Recruit

    United States
    4 days ago
  • $75 - $150 per hour

     ...Treliant, LLC is seeking experienced consultants with expertise in Fair Lending, UDAAP, and CRA for fully remote engagements. As a consultant, your primary responsibilities include advising clients on compliance efforts and reviewing their policies. Ideal candidates possess... 
    Remote work
    Senior
    Hourly pay

    Treliant

    United States
    1 day ago
  • Reference: 630660Posted: 2026-09-10Location: Remote, IllinoisCompany: Planet Pharma...  ...contact reports and OPDP submissions) in US archive and EDMS (15%)Supports document retrieval...  ...) (5%)Delivery of metrics and reporting compliance (5%)Support development and... 
    Remote work
    Senior

    Planet Pharma

    Illinois
    4 days ago
  •  ...while delivering secure, scalable, and future-ready cloud solutions. You will partner with sales and technical teams to drive strategy, architecture, and successful client outcomes in complex environments, ensuring long-term cloud adoption #J-18808-Ljbffr Jobleads-US
    Remote job
    Senior

    Jobleads-US

    Kentucky
    4 days ago
  •  ...Owning global compliance responsibilities, the full-time Senior Compliance Officer will provide real-time advisory compliance...  ...framework while working remotely. Key responsibilities Provide real...  ...multi-venue regulatory obligations in regions such as the US, EU, or UK... 
    Remote work
    Senior
    Full time

    Virtual Vocations Inc

    United States
    3 days ago
  •  ...looking for a sharp, detail-oriented compliance professional to join our growing team as a Senior Regional Compliance Associate. In...  ...working with distributed or remote advisor teamsPlease note: Some regional...  ...the region you support.Why Join Us Competitive comp package that... 
    Remote work
    Senior

    Farther Advisors

    New York, NY
    4 days ago
  •  ...Assisting the US Regulatory Leads, the full-time Senior Associate Regulatory Affairs will coordinate and execute US regulatory...  ..., manage documentation for regulatory compliance, and support Global Regulatory Team interactions in a remote capacity. Key responsibilities include:... 
    Remote work
    Senior
    Full time
    Local area

    Virtual Vocations Inc

    United States
    1 day ago
  • $120k - $150k

     ...Learn more at As a Senior GRC Analyst, you will be a cornerstone...  .... You will manage our compliance with key industry standards, lead...  ...certifications such as CIPP/E, CIPP/US, CIPT CISA, CISM, CRISC, or...  ...highlight: ~ Flexible remote and hybrid working options... 
    Remote work
    Senior
    Permanent employment
    Full time
    Contract work
    Apprenticeship
    Work experience placement
    Internship
    Flexible hours
    Shift work

    Shift Technology

    Boston, MA
    1 day ago
  • DescriptionSenior Compliance and Privacy AnalystBring your passion to THR...  ...!!Work location: Hybrid - Remote opportunities and will office...  ...hire requiredWhat You Will DoThe Senior Compliance and Privacy Analyst...  ...hospitals.We invite you to join us in furthering your career... 
    Remote work
    Senior
    Work at office
    Monday to Friday

    Texas Health Resources

    Arlington, TX
    2 days ago
  • $2,000 - $4,500 per month

     ...Position: Senior Legal Compliance and Licensing Specialist (Remote) About Us We are a rapidly expanding med-spa organization operating across multiple U.S. states, including Oklahoma, Texas, Tennessee, Kentucky, Ohio, Indiana, Georgia, and Florida. As we continue... 
    Remote work
    Senior

    DermaVe Spa

    United States
    3 days ago
  •  ..., unicorns). Weraised 4M+ in VC funding, and are currently building TA communities & scouting new projects all over Europe, APAC and US. Extensive (+3 years) recruitment experience (in-house or agency) Strong sourcing and client management skills Experience hiring for... 
    Remote work
    Senior

    Product Pulse

    Miami, NM
    5 days ago
  •  ...Senior Associate - Regulatory Affairs, Oncology At ***, if you feel like you're part...  ...'ll thrive as part of the *** team. Join us and transform the lives of patients while...  ...the direction of the US Regulatory Lead in compliance with corporate standards and regulatory requirements... 
    Remote work
    Senior
    Local area

    Aequor Inc

    United States
    4 days ago
  •  ...contract Description: In this vital role you will assist the US Regulatory Leads and the Global Regulatory Team (GRT) in the...  ...regulatory submissions under the direction of the US Regulatory Lead in compliance with corporate standards and regulatory requirements. To... 
    Remote work
    Senior
    Contract work
    Local area

    Varite

    United States
    2 days ago
  •  ...Title: Senior SAP ABAP Developer (Remote) Job ID : 21361-1 Contract: 12 -month contract to hire Citizenship Requirement: US Citizenship or Perm Residents required Shift : 4/10, 1st Shift Pay Rate: $100.00 - $125.00/hr on W2!... 
    Remote work
    Senior
    Permanent employment
    Contract work
    Shift work
    Day shift

    Trispoke Managed Services Pvt Ltd

    United States
    1 day ago
  • Reference: 13578Senior Compliance Officer, Investec USAInvestec - Where Out of...  ....Act as a trusted advisor to senior stakeholders, delivering timely,...  ...4 days in the office and one day remote. We believe that being together enables us to live our values and support our... 
    Remote work
    Senior
    Full time
    Work at office

    Investec

    New York, NY
    1 day ago
  • $85k - $145k

    COMPLIANCE SPECIALIST SENIOR WEALTH MANAGEMENTWHAT IS THE OPPORTUNITY?The Compliance...  ....Functions as an internal consultant to colleagues throughout City...  ...company culture, visit us at About Us.INCLUSION AND EQUAL...  ...indicated as fully remote, reporting into a designated... 
    Remote work
    Senior

    City National Bank

    Minneapolis, MN
    10 hours ago
  •  ...Senior Regulatory Affairs Specialist Saluda Medical is a commercial-stage medical device...  ...and guidance documents to ensure ongoing compliance to regulatory requirements Assist with...  ...: Experience with European, US and/or Australian Medical Device Regulations... 
    Remote work
    Senior

    Saluda Medical

    United States
    3 days ago
  •  ...healthcare innovation empowers us to build a world where complex...  ..., United States of America, Remote (US), Santa Clara, California,...  ...searching for the best talent for a Senior Regulatory Affairs Specialist...  ...Management, Regulatory Compliance, Regulatory Development, Regulatory... 
    Remote work
    Senior
    Full time
    Local area
    Immediate start

    Johnson & Johnson

    Cincinnati, OH
    2 days ago
  • $92.5k - $131.7k

     ...an open and supportive team means each of us has the freedom to take responsibility and...  ...SummaryChurch & Dwight is seeking a Regulatory Senior Specialist to join our team. This role is...  ...: This role is performed on a remote basis and is open to candidates located anywhere... 
    Remote work
    Senior
    Full time
    Work at office

    Church & Dwight Company

    Princeton, NJ
    10 hours ago
  •  ...shaping the future direction of BCBSA's cybersecurity program. Assess internal and third-...  ...Authorization Management Program (FedRAMP) compliance strategy by building and scaling an AI-...  ...for providing status updates to Senior/Executive management. Responsible for... 
    Senior
    Work experience placement
    Shift work

    Blue Cross Blue Shield Association

    Chicago, IL
    4 days ago
  •  ...Senior Compliance Analyst, Global Streaming Technology, Analytics and Assurance Remote 12 months Responsibilities: The Senior...  ...Prior experience at a Big 4 consulting firm (Deloitte, PwC, EY, KPMG...  .... Why Join Us? • Remote-first work environment... 
    Remote work
    Senior
    Flexible hours

    3B Staffing LLC

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Cybersecurity Compliance Consultant (US Remote). Be the first to apply!