Role: Cybersecurity Lead
Location: Hybrid
Role (Boston, MA, West Palm Beach, FL) / Remote with Travel
Duration: 6 Month Contract To Hire.
Position Summary
The Cybersecurity Lead is responsible for developing the
organization's cybersecurity strategy, ensuring the confidentiality, integrity,
and availability of company and customer information. This role provides
technical leadership across product security, enterprise security, cloud
security, and compliance while partnering with engineering, IT, product management,
and operations to embed security throughout the organization. The Cybersecurity
Lead will play a critical role in protecting the company's physical security
and identity management solutions from emerging cyber threats.
Key Responsibilities
· Develop Client’s
cybersecurity strategy aligned with business objectives and industry best
practices.
· Lead role in
protecting the company and customers emerging cyber threats and to position the
company at the forefront of security and compliance within the physical
security industry
· Establish and maintain
secure software development lifecycle (SSDLC) practices
· Ensure the
architectures for cloud, on-premises, and hybrid product deployments include
all necessary security design requirements
· Collaborate with product
management PAM and Zero Trust Security initiatives
· Support customer
security assessments, security questionnaires, audits and RFP responses.
· Establish security
metrics, KPIs and executive reporting to communicate cyber risk and program
effectiveness
· Build relationships
with external security researchers, auditors and strategic technology partners
Qualifications
Required
· Bachelor's degree in
Cybersecurity, Computer Science, Engineering, Information Systems, or related
field.
· 8+ years of
cybersecurity experience with increasing technical and leadership
responsibilities.
· Experience securing
enterprise and cloud environments (AWS, Azure, or Google Cloud).
· Strong knowledge of
network security, application security, identity management, encryption, PKI,
and secure authentication technologies.
· Experience
implementing security controls aligned with NIST CSF, CIS Controls, or ISO
27001.
· Experience with
vulnerability management, penetration testing, SIEM, EDR, and security
monitoring tools.
· Knowledge of DevSecOps
practices, CI/CD security, and infrastructure-as-code security.
· Strong understanding
of security incident response and digital forensics.
· Excellent
communication skills with the ability to explain technical risks to executive
leadership and customers.
Preferred
· Master's degree in
Cybersecurity, Computer Science, or Engineering.
· Professional
certifications such as CISSP, CISM, CCSP, GIAC, Security+, or Azure/AWS
Security certifications.
· Knowledge of embedded
systems security, firmware security, and secure device lifecycle management.
· Experience working
within regulated industries or government environments.
Technical Skills
· Zero Trust
Architecture
· Cloud Security
· Secure Software
Development Lifecycle (SSDLC)
· Security Information and
Event Management (SIEM)
· Endpoint Detection
& Response (EDR)
· Vulnerability
Management
· Threat Modeling
· Penetration Testing
· Security Risk
Assessments
· Incident Response
· PKI, TLS, Encryption,
and Key Management
· Microsoft Defender,
Microsoft Sentinel, CrowdStrike, Splunk, or similar platforms
Success Measures
· Reduced organizational
cyber risk through proactive security initiatives
· Timely remediation of
critical vulnerabilities measured against defined SLAs.
· Compliance process,
with customer and regulatory security requirements built into product releases
rather than retrofitted.
· Improved security
awareness and adoption of security best practices throughout the organization.
· Successful attainment
and maintenance of relevant certifications (ISO 27001, SOC 2, and others as
required by customers and markets).
· Reduced turnaround
time on customer security questionnaires, audits, and RFP responses.
· Effective,
well-coordinated response to security incidents across both product and
enterprise IT environments, with minimal business impact.
· Improved security
awareness and adoption of secure-by-design practices across engineering, IT,
and the wider organization.
Skills Required
- Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Systems, or a related field
- 8+ years of cybersecurity experience with increasing technical and leadership responsibilities
- Experience securing enterprise and cloud environments using AWS, Azure, or Google Cloud
- Knowledge of network security, application security, identity management, encryption, PKI, and secure authentication technologies
- Experience implementing security controls aligned with NIST CSF, CIS Controls, or ISO 27001
- Experience with vulnerability management, penetration testing, SIEM, EDR, and security monitoring tools
- Knowledge of DevSecOps, CI/CD security, and infrastructure-as-code security
- Understanding of security incident response and digital forensics
- Excellent communication skills for explaining technical risks to executives and customers
- Master's degree in Cybersecurity, Computer Science, or Engineering
- Professional certification such as CISSP, CISM, CCSP, GIAC, Security+, or an Azure/AWS Security certification
- Knowledge of embedded systems security, firmware security, and secure device lifecycle management
- Experience working in regulated industries or government environments
What We Do
Established in 2004, 3Core System is a certified small minority owned business providing ERP Systems Integration, AMS, IT Consulting and Staff Augmentation Services to Fortune 1000, SMB, and State, Local and Education (SLED) customers. While our System Integration services help organizations achieve digital and cloud transformation objectives, AMS Services help increase the availability of critical services of end user applications. On the other hand, our IT Consulting Services would provide subject matter experts to help you assist with specific project needs and the Staff Augmentation services help you balance workload and achieve budget parameters. >ERP System Integration Services: 3Core Systems is an SAP Silver Partner and authorized service provider offering technical architecture, application design and configuration, integration, testing, data migration and solution adoption services for solutions including SAP SuccessFactors, SAP HCM On-Premises and SAP Business Intelligence >Application Management Services (AMS): We offer post go-live, System Health Check and Optimization, Function Enhancements, Integration Monitoring, Release, and patch services. Our AMS services span across SAP Solutions including ERP (S/4 HANA), Financial Management, Human Capital Management, Data and Analytics, Supply Chain, CRM, and Customer Experince. >IT Consulting and Staffing Augmentation Services: Ever since its inception, 3Core Systems has been offering IT Consulting and Staff Augmentation solutions including temporary, long-term, project based and contract staffing services that could be personalized based on your needs. Our staffing services span across emerging technologies and legacy solutions including but not limited to Artificial Intelligence, Machine Learning, Data Science, Cloud, ERP, CRM, BI/BW/ETL, Database, Web & E-Commerce, UI/UX, Network & Security and Mobile.








