Heartland Business Systems

Senior Information Security Consultant

Heartland Business Systems$100K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of related experience in cybersecurity
  • 5+ years implementing Cybersecurity Programs
  • 3+ years implementing Compliance and Governance Programs
  • CISSP or other relevant industry certification
  • Experience as a security consultant, analyst, engineer, or similar role focused on information security

Responsibilities

  • Provide consultative risk and security support to HBS clients
  • Identify and address gaps in risk and security programs
  • Develop and implement controls for risk management
  • Lead security remediation and mitigation efforts
  • Manage large project deliverables and collaborate with engineering resources
  • Assist in the sales process by validating privacy and security solutions
  • Conduct risk assessments and advise on policy development

Benefits

  • Collaborative team environment with leadership opportunities
  • Exposure to diverse industries and client relationships
  • Access to ongoing professional development and training
  • Opportunity to speak at industry conferences and publish articles
  • Support for obtaining and maintaining cybersecurity certifications
Full Job Description
Job Type

Full-time

Description

The Senior Information Security Consultant is responsible for providing cybersecurity and risk assessment services, subject matter expert support and solutions for Heartland Business Systems' (HBS) customers. Deliverable areas could include, but are not limited to, Risk & Security Assessments, Remediation and Mitigation Recommendations, Strategic Roadmaps, Privacy and Security Policy, Procedure and Program development, Awareness and Education, and SME support. Senior Information Security Consultants at HBS provide strategic guidance to our clients and serve as the virtual Chief Information Security Officer for multiple organizations. This position is also responsible for collaborating with sales and marketing to ensure proposed deals include technical solutions that accurately address client needs.

Roles and Responsibilities/ Essential Functions:
  • Work as a member of the cybersecurity team providing consultative and proactive risk & security related support to HBS' account base.
  • Assist clients with identifying gaps within existing risk & security programs and designing solutions to address those challenges.
  • Support clients with the identification, development, and implementation of technological and organizational controls to support risk and security programs.
  • Deliver leadership services in support of security remediation or mitigation.
  • Responsible for overall project management of many large projects and may work directly with other engineering resources in addition to the client.
  • Lead work in all phases of the engagement, including project planning, developing project plans, leading teams in completing tasks, client status reporting, and presenting project results to the client.
  • During the entire sales process, provide sales consultants and other HBS staff with assistance, review, validation, and optimization of privacy and security solutions.
  • Maintain a high level of knowledge related to privacy and security regulations (i.e. HIPAA, CMMC, PCI, GDPR, etc.) and standards best practices (NIST 800, ISO 2700X, CIS, etc.), OCR enforcement trends, HHS/OCR guidelines, and state-specific consumer-protection rules.
  • Prepare articles, whitepapers, blogs and speak at industry conferences to create awareness of our brand/services as it relates to privacy, security, and risk management.
  • Conduct a variety of risk assessments and provide guidance on improving processes, creating policies & procedures, and working with other HBS teams when necessary, on solution sets.
  • Present educational and information sessions with clients and other staff, as appropriate.
  • Develop information security programs and provide strategic guidance to clients while serving as vCISO.
  • Build and further develop client relationships.
  • Work in a team atmosphere as both a leader and contributor as assigned. At all times maintaining a professional and respectful demeanor.
  • Provide input on the improvement of customer facing documentation such as proposals, statements of work, status reports, reports, marketing materials, etc.
  • Provide input on the improvement of risk and cybersecurity products and services offered to clients.
  • Work to attain and maintain relevant cybersecurity and risk certifications.
  • Minimum of 1350 hours, or equivalent vCISO work, billed per fiscal year prorated based on start date. These charge hour requirements will be balanced against professional development and on the job training.


Requirements

How to qualify:
  • 5+ years of related experience
  • 5+ years implementing Cybersecurity Programs
  • 3+ years implementing Compliance and Governance Programs
  • CISSP or other current industry standard certifications in areas of security expertise
  • Significant experience as a security consultant, analyst, engineer, system administrator, IT lead, or similar role focused on information security responsibilities
  • Proven experience recommending and delivering cybersecurity, compliance, and risk management services
  • Ability to identify and evaluate risk to IT systems and associated business processes and communicate risks to management
  • Demonstrated experience with regulatory/compliance requirements (e.g., PCI, HIPAA/HITRUST, SOX, FISMA), information security frameworks and controls (e.g., NIST, ISO, CIS)
  • Demonstrated experience reviewing and recommending appropriate technical, administrative, and physical controls
  • Demonstrated experience selecting and implementing appropriate risk mitigation strategies to ensure IT systems remain within established risk tolerance levels
  • Ability to develop policies, standards, and baseline configurations
  • Strong attention to detail and ability to document findings and convey information
  • Ability to manage project deliverables and deadlines
  • Ability to provide superior customer service via phone and email
  • Excellent professional verbal and written communication skills
  • Strong listening and presentation skills
  • Ability to clearly communicate with co-workers, management, clients, and vendors
  • Maintain an professional appearance and vocabulary
  • Ability to multi-task, prioritize, and manage time effectively
  • Maintain an outcome focused mindset
  • Have strong prioritization skills
  • Always be a team player
  • Carry a professional attitude and respectful demeanor

About Heartland Business Systems

Heartland Business Systems is an information technology services company that provides a range of services, including network design and implementation, cloud computing, and cybersecurity. The company works with a variety of clients, including small businesses, government agencies, and educational institutions. Heartland Business Systems is headquartered in Chippewa Falls, Wisconsin and has additional offices in Minnesota and Illinois. The company was founded in 2002 and has since grown to become a leading provider of IT services in the Midwest.
Learn more about Heartland Business Systems
Size
200 employees
Industry
Founded
2002

Similar Jobs

More Jobs at Heartland Business Systems

More Information Technology Jobs

Find similar Senior Information Security Consultant jobs: