Senior Information Security Consultant (QSA)
Alexandria, VA 
Share
Posted 16 days ago
Job Description
Description

Security - Sr. Information Security Consultant (QSA) (Remote)

What to expect when you join the Sikich family

Team members at Sikich have a lot in common while also being part of a rich and diverse group of contributors, creating a distinct and thriving culture. Chief among our commonalities is a desire for growth and a shared unity of purpose in our professional lives. We believe that through diverse perspectives, challenging the status quo and rewarding action, we accelerate innovation and drive growth - for our clients, for ourselves and for our communities.

The professional services landscape continues to evolve. For Sikich, this means we have an opportunity to further cement our leadership position in this industry and continue to grow our organization in increasingly exciting ways. This growth is meaningful for every team member at our company because larger companies simply see more interesting client opportunities and can attract impressively talented individuals like you. Through a dedicated focus on key business priorities and intentionally creating a rewarding employee experience, Sikich has developed into a highly regarded provider of professional services and a sought-after employer of choice.

Do you want to work with other skilled practitioners and serve clients in a way that makes a difference? Are you seeking a supportive environment backed by a deep and extensive set of skillsets? Are you ready to make an impact and be acknowledged for your contributions? If you answered yes to these questions, we see a mutually beneficial and gratifying relationship on the horizon!

Are you ready to grow with us?

Position Summary

Are you an experienced information security professional looking to make a significant impact? Join our dynamic team as a Sr. Information Security Consultant (QSA)! This remote, full-time role offers the opportunity to assist clients in meeting their compliance obligations by evaluating business technology and operations against top security standards like PCI DSS, NIST, and CMMC.

You'll produce detailed, high-quality reports, take ownership of projects from start to finish, and mentor other consultants on best practices. As a Subject Matter Expert, you'll help clients develop and maintain robust security programs, execute control reviews, and contribute to top-level strategy decisions. Your expertise will drive high-quality standards and client satisfaction.

Requirements include a minimum of three years of PCI compliance assessment and ROC writing experience, current QSA certification (or ability to obtain within one month), and strong analytical and communication skills. Additional audit or security certifications are preferred, and membership in relevant organizations is a plus. Willingness to travel up to 50% is required.

Ready to elevate your career in cybersecurity? Apply now and be part of a team dedicated to excellence in security consulting!

What will you do in this role?

  • Assist clients in meeting compliance obligations by evaluating business, technology & operations against security standards (ex. PCI DSS, NIST, CMMC).
  • Produce detailed, high-quality reports for clients & industry third parties (ex. payment card brands & the PCI Security Standards Council).
  • Take ownership of project work, such as a PCI DSS assessment, from start to finish including deliverables and work product.
  • Act as a mentor and coach for other consultants on PCI compliance and security best practices.
  • Serve as a SME to Sikich customers assisting them with developing and/or maintaining their security program.
  • Develop and maintain technology related policies, procedures, and standards that address requirements related to strategies, regulations, business & technology risks, and industry standards.
  • Execute control reviews across technology and business teams to address risk and compliance against various industry and technology frameworks outside of the PCI DSS (i.e., SSAE18 SOC2; NIST Cybersecurity Framework, CIS, and ISO27001).
  • Assist clients in meeting compliance obligations by evaluating business, technology & operations against security standards (ex. HIPAA, PCI, NIST, CMMC, etc.).
  • Contribute to assessment methodology, project planning, reporting, budgeting, and scheduling.
  • Share expertise to help make top-level decisions on strategy & scope of engagements.
  • Provide clear, organized findings & recommendations to clients & be able to track progress towards resolution.
  • Analyze requirements & work closely with team members to produce results aligned to client needs.
  • Work closely with the project team to ensure high-quality standards.
  • Learn from the Security group & contribute tools, industry news & lessons learned back to the team.
  • Efficiently juggle several concurrent client projects at any given point in time.
  • May require some domestic & international travel to client sites & events (up to 50%).

What do you need to succeed in this role?

  • Must have a minimum of three years' experience performing security assessments for PCI compliance as a QSA.
  • Current QSA certification from the PCI Security Standards Council, or ability to obtain it within one month of hire.
  • Audit or security certifications (e.g., CRISC, CRMP, CISSP, CISM, CISA) preferred.
  • Strong demonstrated experience in assessing, developing, and implementing cybersecurity risk management programs that integrate with Enterprise Risk Management within an organization.
  • Ability to present security concepts & findings to technical & functional audiences.
  • Willingness to obtain additional professional certifications.
  • Membership in relevant organizations (ex. OWASP, InfraGard, or ISSA) desired.
  • Strong analytical & problem-solving skills, with excellent written & verbal communication skills.
  • Ability to work independently and collaboratively with clients and team members and manage multiple projects and deadlines.
  • Willingness to travel up to 50% of the time to client sites, as needed

In addition, specific skills/experience required are as follows:

  • Servant Leader - You are hyper focused on engaging employees, fostering their development, and building a positive culture.
  • Solutions Focused - You see opportunities in every business problem and can develop, articulate, and implement solutions.
  • Collaboration - You are a relationship builder across all levels of the organization and across all business units.
  • Instills Trust - You do what you say, and you follow through on commitments, you act with integrity, you are consistent and are perceived as credible.
  • Impact & Influence Thinking - You gain support for ideas, proposals, and solutions, and get others to act, with or without formal authority, to advance initiatives/objectives.

About Sikich LLC

Sikich LLCis a global company specializing in Accounting, Advisory, and Technical professional services. With employees across the globe, Sikich ranks as one of the largest professional services companies in the United States. Our comprehensive skillsets, obtained over decades of experience as entrepreneurs, business owners and industry innovators, allow us to provide insights and transformative strategies to help strengthen every dimension of our clients' businesses.

Sikich Total Rewards


Our team members enjoy expansive benefits ranging from competitive compensation and insurance options to wellness programs and a flexible time off policy, to name only a few. Sikich also takes pride in prioritizing team members' health, total wellbeing and time spent with family, friends and in the pursuit of personal goals, hobbies, and endeavors.

Some examples of our many benefits:

* Sikich maintains a Flexible Time Off (FTO) Policy. We encourage every full-time employee, as your role permits, to utilize paid time off (personal time, mental/physical health care, vacation, sick leave, etc.). Waiting for time off to accrue is common at other companies. At Sikich, you do not have to wait for this benefit to kick in. FTO is activated on your first day with our organization.

* Sikich will also recognize paid holidays during the year and strives to permit employees to have time off the last week of the calendar year when client and project work permits.

* Sikich offers a comprehensive wellness program to engage, challenge and empower team members to take responsibility for their wellbeing. Activities can be tracked through our wellness provider to obtain gift cards and other rewards.


We also offer:

* Flexible work arrangements

* Health, dental, vision, life, and accident/death/disability insurance options

* HSA employer contribution

* Nine (9) paid holidays annually.

* A robust paid Parental Bonding Leave program covering birth, adoption, and foster children.

* 401(k) with employer contributions

* CPA bonus with four (4) paid exam days & four (4) paid study days.

* Tuition reimbursement

* Generous employee referral bonus program

* Client referral bonus program

* Pet insurance

* FORCE - Sikich community volunteer program enabling each team member to use up to four hours of paid time annually to volunteer and make a difference in their localcommunities.

Want to learn more? Visit our Careers website or Glassdoor profile.

Sikich LLC is an Equal Opportunity Employer M/F/D/V

Sikich currently practices in an alternative practice structure in accordance with the AICPA Professional Code of Conduct and applicable law, regulations, and professional standards. Sikich CPA LLC is a licensed CPA firm that provides audit and attest services to its clients. Sikich LLC has a contractual arrangement with Sikich CPA LLC under which Sikich LLC provides Sikich CPA LLC with professional and support personnel and other services to support Sikich CPA LLC's performance of its professional services, and Sikich CPA LLC shares certain client information with Sikich LLC with respect to the provision of such services.


Cotton & Company is an Equal Opportunity Employer


(Minorities/Females/Protected Veterans/Disability)

 

Job Summary
Start Date
As soon as possible
Employment Term and Type
Regular, Full Time
Required Experience
3+ years
Email this Job to Yourself or a Friend
Indicates required fields