Lead Consultant Sensitive Data Compliance - 2237548

FORVIS

$110K — $130K *
Business Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Cybersecurity, MIS, Computer Science, or equivalent experience
  • 10 years of work experience in cybersecurity consulting
  • Experience with federal cyber compliance frameworks (NIST 800-171, FISMA, FedRAMP)
  • 5 years in cybersecurity, IT audit, or governance, risk, and compliance
  • Proficient in frameworks like PCI DSS, NIST Cybersecurity Framework, ISO 27001

Responsibilities

  • Lead PCI compliance assessments and risk evaluations for enterprise clients
  • Execute assessments against federal compliance frameworks and identify compliance gaps
  • Document comprehensive reports with proofs of concept and recommendations
  • Assist clients in developing security documentation and compliance strategies
  • Manage multiple consulting projects to ensure timely and budget-conscious delivery

Benefits

  • Opportunity to work with Fortune 1000 and international clients
  • Engagement in industry-leading cybersecurity compliance solutions
  • Support for continuing education and professional development
  • Dynamic consulting environment across various industries
  • Collaboration with skilled IT Risk & Compliance professionals
Full Job Description
Description & Requirements

The Sensitive Data Compliance Lead Consultant role at FORVIS MAZARS working with the Sensitive Data Cyber Compliance leadership to define, refine and expand the firm's practice areas and services offerings. This role will be primarily focused on supporting PCI DSS projects with clients of all size, complexity, and industry, including international and Fortune 1000 companies, and U.S. Department of Defense contractors.

The right individual will help lead PCI DSS projects as an experienced subject matter resource with previous experience with various US federal compliance frameworks, including PCI DSS, CMMC / NIST 800-171, FISMA, FedRAMP, and NIST CSF.

What You Will Do:

  • Lead and execute PCI compliance related assessments and sensitive data compliance assessments for enterprise clients by identifying key risks and gaps and documenting clear reporting with proof-of-concept and recommendations.
  • Help execute information security risk and compliance assessments against federal and other government required cyber frameworks, NIST 800-171, NIST 800-53, FedRAMP, and the NIST Cybersecurity Framework, among others.
  • Assesses IT environments and identifies gaps and vulnerabilities that impair compliance with required standards and assists with the documenting of clear reporting with proof-of-concept and recommendations.
  • Help the IT Risk & Compliance team maintain industry leading solutions for PCI and other evolving cybersecurity compliance frameworks but pursuing continuing education.
  • Participate on consulting teams with large enterprise clients in multiple industries to:
    • Assist organizations with defining boundaries of in-scope systems.
    • Assisting clients with documentation development, including system security plans (SSP), policies/procedures, strategy development, and plans of action and milestones (POAMs).
    • Define and integrate solutions, including tools, processes, and data flows to maintain required compliance obligations and reduce cyber risk.
  • Effectively manage multiple projects concurrently, helping define and drive project management to keep projects on schedule and within budget.

Minimum Qualifications:

  • Bachelor's Degree in a Cybersecurity, MIS, Computer Science, or a similar discipline or minimum of 10 years of work experience in Cybersecurity Consulting
  • Experience providing consulting, assessment, or implementation services associated with federal cyber compliance frameworks, including NIST 800-171, FISMA, or FedRAMP.
  • Working knowledge of cyber risk management frameworks (CMMC / NIST 800-171, FISMA, FedRAMP, NIST Cybersecurity Framework, NIST SP 800-53)
  • At least 5 years of experience in cybersecurity, IT audit, or governance, risk, and compliance required, including 1 - 2 of the following frameworks:
    • Payment Card Industry Data Security Standard (PCI DSS)
    • NIST Cybersecurity Framework (CSF)
    • ISO 27001 / 27002
    • FedRAMP / StateRAMP
    • FISMA and NIST SP 800-53
    • CIS Critical Security Control

P referred Qualifications:

  • Cybersecurity and/or privacy-related certifications (e.g. CISSP, CISA, CISM, preferred).
  • Payment Card Industry Qualified Security Assessor (PCI QSA) credential.

#LI-ATL, #LI-SGF, #LI-CLTSP, #LI-DFW

#LI-GM1

Similar Jobs

More Jobs at FORVIS

More Business Services Jobs

  • Branch Vice President
    $150K — $250K + $30K bonus + equity, medical, dental, vision, life, std/ltd, auto allowance, *
    Just Rite Equipment / DuraServ
    South Windsor, CT 06074 (Capitol County)
  • Branch Vice President
    $200K — $500K++ $30K bonus + equity, medical, dental, vision, life, std/ltd, auto allowance, *
    Casco Dock & Door / DuraServ
    West Sacramento, CA 95691 (Yolo County)
  • Branch Vice President
    $150K — $250K + $30K bonus + equity, medical, dental, vision, life, std/ltd, etc. *
    Southern Dock Products / DuraServ
    Oklahoma City, OK 73111 (Oklahoma County)
  • Director of Business Development
    $130K — $150K *
    Warren Whitney
    Richmond, VA 23226 (Henrico County)
  • Risk Manager
    $130K — $140K *
    Cal State Long Beach
    Long Beach, CA 90802 (Los Angeles County)

Find similar Lead Consultant Sensitive Data Compliance - 2237548 jobs: