Cyber Senior Consultant - Cloud DevSecOps
- Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to complete assigned activities on time and with high quality.
- Assess current-state security capabilities across people, processes, technology, and governance; analyze gaps and contribute to target-state recommendations, prioritized roadmaps, operating models, and implementation plans.
- Design and implement Secure-by-Design and Application Security processes across the software development lifecycle, including application intake, risk classification, architecture reviews, threat modeling, control assessments, approvals, exception management, and go-live governance.
- Support the integration of security tooling, automation, and AI-enabled capabilities into CI/CD and developer workflows, including SAST, DAST, SCA, secrets, infrastructure-as-code, container, API, and vulnerability management, as well as AI-assisted triage, remediation, validation, and secure AI guardrails.
- Perform cloud-native and software supply chain security assessments, including cloud, container, Kubernetes, runtime, dependency, SBOM, artifact integrity, secure build, code-signing, secrets management, and software provenance activities; help define and prioritize remediation actions.
- Contribute to client delivery and team development by facilitating workshops, preparing technical and executive deliverables, tracking work plans, risks, issues, and dependencies, supporting metrics and dashboards, mentoring junior practitioners, reviewing work for quality, and contributing to proposals and reusable practice assets.
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, Information Systems, or a related technical discipline
- 4+ years of professional experience in at least one of the following domains: DevSecOps, Application Security, Secure SDLC, Cloud Security, cybersecurity engineering, software security, or cybersecurity consulting.
- 2+ years of hands-on experience with DevSecOps, Application Security, Secure SDLC, or Secure-by-Design activities, including assessment, design, implementation, or security engineering.
- 1+ year of experience leading or independently owning a cybersecurity, DevSecOps, Application Security, or Secure SDLC project workstream.
- 2+ years of experience with CI/CD or modern software engineering environments, including experience with at least 3 of the following security capabilities: SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, or vulnerability management.
- 1+ year of experience translating cybersecurity policies, standards, or control requirements into technical controls, engineering requirements, security procedures, or SDLC workflows.
- Experience applying at least 1 cybersecurity framework or standard, such as NIST CSF, NIST SP 800-53, NIST SSDF, OWASP SAMM, ISO 27001, or comparable framework, on at least 1 project.
- 1+ year of experience with at least 1 cloud or cloud-native environment, including Microsoft Azure, AWS, Google Cloud Platform, Kubernetes, or container-based application environments.
- 1+ year of experience using at least 1 engineering, security workflow, or automation platform, such as ServiceNow, Jira, Azure DevOps, GitHub, GitLab, Jenkins, or comparable technology.
- Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
- Experience producing at least 2 types of client or enterprise security deliverables, such as assessment reports, technical recommendations, process flows, control mappings, roadmaps, architecture documentation, dashboards, or executive presentations.
- Experience facilitating or supporting at least 2 client or stakeholder workshops, requirements sessions, technical working sessions, or security assessments.
- Experience coordinating activities with at least 1 cross-functional or geographically distributed delivery team.
- 6+ months of experience or project exposure to AI-enabled cybersecurity, Generative AI security, AI-assisted vulnerability management/remediation, or Agentic AI security automation.
- Experience implementing or supporting at least 1 AI-assisted security use case, such as vulnerability triage, remediation recommendations, code remediation, security analysis, control validation, or security workflow automation.
- Experience with at least 1 software supply chain security capability, such as SBOM, SLSA, dependency governance, code signing, artifact integrity, PKI/HSM, or software provenance.
- Experience with OWASP SAMM, BSIMM, NIST SSDF, SLSA, or comparable software security maturity frameworks.
- At least 1 relevant cybersecurity or cloud certification, such as CCSP, CISSP, CISA, CSSLP, Security+, AWS security certification, Microsoft Azure security certification, Google Cloud security certification, or comparable credential.
- 1+ year of consulting or professional services experience preferred.
- Experience using at least 1 reporting or analytics platform, such as Microsoft Power BI, Tableau, or comparable technology.
- Experience supporting security requirements associated with at least 1 regulatory or compliance framework, such as ISO 27001/27017, SOC 2, PCI DSS, HIPAA, SOX, GLBA, or NIST SP 800-53.
Recommended Jobs
Window Rigger/Sawyer
Quanex is looking for a Window Rigger/Sawyer to join our team located in Phoenix, AZ . In this role, you will be responsible for working cooperatively with team members to cut and assemble wind…
Pharmacy Relationship Manager
Job Description Job Description Whether you are working in a Pharmacy looking for additional income, an established healthcare sales professional, or looking to break into Medical Sales, Healthca…
Premium Auditor
Job Description Job Description Join Davies Risk Services as a Premium Auditor — No Experience Required! Are you a self-starter who thrives on independence, loves working with numbers, and e…
EMT or Paramedic (PRN)
Medcor is looking to hire an EMT or Paramedic on a PRN basis (as-needed) to be an Onsite Health Technician in an employer based, occupational health clinic in Phoenix, AZ. The clinic operates Monday…
Entry Level Sales Representative
Job Description Job Description Summit is on the lookout for an individual to join our team in an Entry Level Direct Sales position. This role is tailored for someone who has at least 5 years of …
UTI Technician Prospects
This requisition is for UTI students that will be graduating in 2026 to be considered for a full-time technician role. # Your application will be reviewed by our Cummins technician recruiter # Th…
Product Development Manager
Great company. Great people. Great opportunities. If you’d like the chance to make your mark with the world’s largest equipment rental provider, come build your future with United Rentals! …
Retail Sales Associate
At Nespresso, we place people and specialty coffee at the heart of what we do. As part of our team, you'll be empowered to inspire, care, act, and innovate to reach your full potential and reimagine …
MAT Ramp: Mechanical Design Engineer
Job Title: Mechanical Design Engineer Location: Tucson, AZ Zip Code: 85756 Duration: 12 Months Pay Rate: $92.23 /hr. Start Date: Immediate Shift: Standard, 40 hours/wk *Active US Secret Clearan…
Structural Engineer - PE
Job Description Job Description Local structural engineering firm is looking for a senior structural design engineer with at least 5 years of project design experience for commercial building des…