Senior Security Advisor - GRC

Soteria

$120K — $150K *
US-AnywhereRemote in Charleston, SC
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of industry experience in cybersecurity
  • Experience in cybersecurity consulting and leadership roles
  • Expertise in authoring System Security Plans and navigating RMF or ATO processes
  • In-depth knowledge of regulatory compliance (HIPAA, PCI-DSS, CMMC, GDPR)
  • Relevant professional certifications (CISSP, CISM, CISA, CEH)

Responsibilities

  • Communicate with clients to assess their security needs and develop engagement plans
  • Lead security assessments to identify gaps in clients' security programs
  • Manage the end-to-end development of System Security Plans
  • Identify cybersecurity regulatory requirements and develop compliance strategies
  • Review policies and procedures to enhance clients' security documentation
  • Maintain ongoing client relationships to support security improvement efforts
  • Train and mentor junior advisors to build team capacity

Benefits

  • Remote work flexibility with a majority of hours set from 9:00 AM to 5:00 PM EST
  • Potential for occasional travel for client engagements and team meetings
Full Job Description
About the role

As a Senior Security Advisor at Soteria, you will bring seasoned GRC expertise to a fast-paced team serving a growing roster of clients navigating today's threat landscape. This role calls for authenticity, engagement, curiosity, and care reflected in every client interaction. Exercising sound judgment with minimal direction, you will lead complex risk and compliance engagements, guiding clients toward stronger security postures, delivering polished, timely, well-documented findings.

Success here requires deep technical grounding, paired with strong judgment, operating with minimal oversight, and client relationship management skills. You will lead multiple engagements at once, mentor junior advisors, adapt quickly, maintain the highest quality under tight deadlines.

What you'll do

  • Communicate with prospective and existing clients to understand their security needs and develop engagement plans to satisfy their requirements.
  • Develop an understanding of the business requirements and other motivating factors for clients.
  • Lead and perform security assessments to help organizations understand where gaps exist within their security programs.
  • Lead development of System Security Plans (SSPs) end to end, including control selection, implementation statements, system categorization, stakeholder coordination through approval.
  • Identify cybersecurity-related regulatory requirements (e.g., PCI-DSS, HIPAA, CCPA, GDPR, NYDFS) as well as gaps in compliance, and develop strategic plans to achieve and maintain compliance.
  • Develop and review policies, procedures, and other related documentation to establish a documented security program.
  • Work closely with Customers and the Soteria team to develop plans of action for clients to ensure they achieve their desired outcomes.
  • Document and present findings and recommendations to clients, including C-Suite and board-level executives, in a professional manner.
  • Maintain relationships with clients post-assessment in order to assist and advise as they continue to build and improve their security.
  • Maintain competence in security trends, technologies, and practices through self-study and attendance of industry events.
  • Train and mentor other employees in order to build the company's overall capacity and capability.
  • Work with Soteria leadership to develop, achieve, and enhance the revenue goals.
  • Provide Soteria Finance the data, reports, and project updates as required by clients, Soteria leadership, and business associates.
  • Effectively manage all Advisory projects, ensuring professional and proactive client communication is maintained by all Advisors and that client expectations are always met
  • Perform business development tasks from the initial call with a referral or repeat client, through the proposal stage, and finally, to contract execution.

Qualifications

  • 10+ years of industry experience with a deep understanding of the cybersecurity space
  • Prior experience in a cybersecurity consulting role
  • Prior experience in a cybersecurity leadership role
  • Prior experience authoring System Security Plans, supporting RMF or ATO-style processes.
  • Knowledge and understanding of common regulatory and compliance requirements such as HIPAA, PCI-DSS, CMMC, GDPR, etc.
  • Relevant certifications such as CISSP, CISM, CISA, CEH, etc.

Hours of Operation:

  • Soteria is a remote workforce with flexibility in scheduling. The majority of work time will be 9:00 AM EST to 5:00 PM EST.

This is a remote position; however, occasional travel may be required for client engagements, team meetings, or other business needs.

The pay range for this role is:

120,000 - 150,000 USD per year (Remote)

Similar Jobs

More Jobs at Soteria

More Information Technology Jobs

Find similar Senior Security Advisor - GRC jobs: