Cyber Security Consultant

Public Consulting Group8 months ago
Phoenix, Arizona, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

Position Overview

Public Consulting Group LLC (PCG) is a leading public sector solutions firm partnering with health, education, and human services agencies to improve lives. Collaborating with our Technology Consulting team, you will help organizations streamline operations, achieve strategic goals, and enhance service delivery to the public. This is a hybrid role with travel/onsite requirements; you must have a safe, private, and distraction‐free work environment.

Key Responsibilities

  • Strategy, Architecture, Planning, and Procurement
  • Business Enablement
  • Business Solutions
  • Project Assurance
  • Performs security assessments of information technology (IT) systems to verify compliance with applicable security standards.
  • Performs reviews and assessments of organizational security controls to ensure compliance with applicable security standards.
  • Coordinates and/or conducts penetration testing or simulates attacks to identify vulnerabilities.
  • Coordinates with client organizations to perform security audit activities.
  • Prepares reports documenting findings from security assessments and testing.
  • Advises project managers on security and privacy requirements mandated by state and federal agencies.
  • Assists with the development and implementation of security standards and best practices.
  • Interfaces with architects, technicians, and business leaders to understand IT security needs and constraints.
  • Researches the latest IT security trends and adapts to new technologies in Information Security.
  • Creates and documents security and privacy policies, procedures, or contractual language as required.
  • Establishes standard documentation and reporting templates for security assessments.
  • Recommends security enhancements and participates in proposal teams by writing responses and advising on strategic approaches.

Required Qualifications

  • Experience with writing and developing system security plans (NIST 800-53)
  • Experience with databases, SQL, and penetration testing
  • Experience with cloud architecture and federal standards
  • Experience working with state and federal government agencies
  • Excellent interpersonal, verbal, and written communication skills, including effective presentation abilities
  • Ability to multi-task, communicate clearly, learn new technologies and processes, and support process/solution owners
  • Strong analytical and conceptual skills with a proven ability to thrive in diverse hierarchical settings
  • Experience collaborating with internal resources across multiple locations and business units
  • Experience with DevOps practices and automated deployment of applications
  • A B.S. or B.A. degree is a plus in a related business discipline
  • 3+ years of experience in information security or risk management with general knowledge of application and infrastructure security, threat/risk, and data classification
  • Familiarity with industry standards such as NIST-800, HIPAA, HITECH, FERPA and security protocols (PKI, SSL, Encryption, Data Redacting, DLP)
  • Knowledge of tools such as FireEye, Qualys, Email Security Systems, DLP, Antivirus, SIEM (Log Analysis), IRS Publication 1075, and MARS-E is a plus
  • 3+ years managing or developing IT systems/solutions, with understanding of systems like MS Active Directory, MS Windows, MS Exchange, and Unix/Linux OS
  • Information security professional certifications (e.g., CEH, CISSP, SANS, CISA, GIAC) are highly desired

Benefits & Perks

  • Medical and dental care benefits
  • 401k
  • PTO
  • Parental leave and bereavement leave

Compensation

Compensation for roles at Public Consulting Group varies based on office location, role, skill set, and experience. As required by law, this role offers a reasonable compensation range of $75,000–$120,000.

Required Skills

Technical Communication
Information Security Assessments
Compliance with HIPAA/HITECH
Cloud Architecture
DevOps & Automated Deployment
Risk Management
SQL & Database Management
System Security Planning
Penetration Testing
NIST 800-53