Associate vCISO at Coretelligent
Boston, Massachusetts, USA -
Full Time


Start Date

Immediate

Expiry Date

19 Oct, 25

Salary

85000.0

Posted On

20 Jul, 25

Experience

7 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Information Security, Security Controls, Siem, New Hires, Iso, Aws, It, Azure, Firewalls, Financial Services, Training, Endpoint Protection, Cissp

Industry

Financial Services

Description

Founded in 2006, Coretelligent is a provider of comprehensive managed IT solutions, specializing in areas like cybersecurity, private cloud services, IT planning and strategy, and backup and disaster recovery. We cater to industries such as financial services, life sciences, technology, and professional services. The company has been recognized for its achievements, including being named to Inc. magazine’s Power Partner Awards and as AT&T Cybersecurity North American Partner of the Year for 2023. Coretelligent focuses on meeting regulatory requirements and ensuring clients’ IT platforms are robust and compliant. We have a significant presence across various U.S. locations and offer co-managed IT solutions as well.

REQUIRED SKILLS AND QUALIFICATIONS:

  • 7 years of proven experience in IT, Information Security, or related technical field, with an interest in Security/
  • Familiar with cybersecurity frameworks and their practical implementation, such as the CIS Critical Security Controls, NIST CSF, and Secure Controls Framework
  • High-level understanding of security technologies, including firewalls, intrusion detection/prevention systems, SIEM, endpoint protection, etc.
  • Familiarity with cloud security concepts and technologies (AWS, Azure, etc.)
  • Must be willing to travel at times for critical client meetings (less than 5% travel)
  • Relevant advanced certifications such as CISSP, CISM, CRISC, Security X (formerly CASP+), CCISO, or similar.

PREFERRED SKILLS:

  • Experience in financial services and/or biotech/life sciences industries is strongly preferred
  • First-hand experience with 3rd party audits such as SOX, SOC 2, ISO, or PCI-DSS preferred
  • Prior experience in a Managed Service Provider or IT Consulting environment or other small business environment preferred
    Salary Range for this position (depending upon experience):
    $85,000 - $110,000
    This range reflects the minimum and maximum targets for new hires across all US locations (with the exception of MA, NY, and CA). Within the range, individual pay is determined by job-related skills, experience, work location, and relevant education or training.
Responsibilities
  • Serve as the primary point of contact and subject matter expert for cybersecurity and compliance matters, providing virtual CISO services to multiple clients, advising them on best practices and industry standards, enhancing their security posture, and helping them satisfy compliance requirements
  • Maintain primary accountability for customer needs and deliverables within our scope, working with team members and assisting where needed to ensure deadlines are met.
  • Lead customers in data-centric approaches to cybersecurity to ensure recommendations are aligned to business risk.
  • Engage with customers on a business level, seeking to understand business goals and needs and how cybersecurity can help empower business progress.
  • Conduct risk assessments and gap analysis to identify security and compliance deficiencies and recommend appropriate remediation measures
  • Develop policies including business continuity plans, information security policies, procedures, and controls, tailored to each client’s specific needs and regulatory compliance requirements
  • Review information from IT security audits, risk assessments, vulnerability assessments, and other reports on ways to minimize threats
  • Design and facilitate tabletop exercises, customized to client environments.
  • Advise and lead clients in Third Party Risk Management efforts.
  • Communicate with key client stakeholders about IT security threats, process/workflow improvements, etc
  • Track the latest IT security innovations, cybersecurity technologies, trends, threats, and regulatory requirements to ensure proactive and effective risk management
  • Respond to fluctuating client needs and topics of interest to provide customized advising to each client.
  • Assist with other needs that arise during the daily flow of our team’s operations
Loading...