Security Advisor - GRC

Posted 8 Days Ago
Be an Early Applicant
Hiring Remotely in Charleston, SC, USA
In-Office or Remote
80K-135K Annually
Senior level
Cybersecurity
The Role
Conduct cybersecurity GRC assessments, control gap analyses, risk and compliance reviews, social engineering simulations, and client interviews. Develop executive reports, remediation plans, policies, procedures, and security recommendations aligned with regulatory frameworks. Manage multiple consulting engagements, present findings to executives and boards, support advisory services, review deliverables for quality, and maintain long-term client relationships. The role is remote with occasional travel.
Summary Generated by Built In

Established in 2014 and based in Charleston, South Carolina, Soteria's expertise in the cybersecurity domain is predicated upon the accumulated practical experience across all team members. Soteria's security professionals have held leading positions in private industries, state governments, and federal intelligence communities.

Driven by this combined pool of knowledge as well as the belief that “Security is for Everyone,” Soteria offers advisory services and solutions which are significantly differentiated from the security status quo. Soteria treats each client as a unique case deserving of individualized security insights and specialized hands-on assistance.

About the role

As a Security Advisor at Soteria, you will join a fast-paced GRC team supporting a growing roster of clients navigating today's threat landscape. This role calls for authenticity, engagement, curiosity, and care reflected in every client interaction. You will assess risk, evaluate controls, guide clients toward stronger security postures, delivering clear, timely, well-documented findings.

Success here requires solid technical grounding, paired with strong project management, requirements gathering, and client communication skills. You will juggle multiple engagements at once, adapting quickly, maintaining high quality under tight deadlines.

What you'll do

  • Perform control gap, risk, and compliance/regulatory assessments to help organizations understand where gaps exist within client security programs.
  • Develop and perform social engineering simulations (phishing, vishing) and present social engineering training to organizations to improve their security awareness programs.
  • Provide project management tasks to ensure assessment delivery is on time and meets the client’s needs. 
  • Identify gaps in desired control implements and determine appropriate recommendations for clients based on identified regulatory framework and desired controls.
  • Conduct interviews with clients and the Soteria team to evaluate a client’s IT environment and security practices.
  • Work closely with clients and the Soteria team to develop deliverables to include, but not limited to:
    • executive summary reports
    • detailed findings and recommendations reports
    • presentation slide decks
    • plans of action and milestones
    • policy and procedure development
    • ad-hoc written reports
  • Provide support and guidance where necessary to Advisory team members to achieve excellence in the various business areas of Trusted Advisory and vCISO, Risk/Gap Assessments, Incident Response Readiness, Table Top Exercises, Business Continuity and Disaster Recovery Plans and Policy development. 
  • Write clear and well-structured reporting to detail observations and strategic recommendations, at an appropriate level for the intended audience.
  • Identify cybersecurity-related regulatory requirements (e.g., PCI-DSS, HIPAA, CCPA, GDPR, NYDFS) as well as gaps in compliance, and develop strategic plans to achieve and maintain compliance.
  • Work closely with clients and the Soteria team to develop remediation plans to ensure clients achieve their desired outcomes.
  • Document and present findings and recommendations to clients, including C-Suite and board-level executives, in a professional manner.
  • Support project team with quality assurance review of deliverables. 
  • Maintain relationships with clients post-assessment in order to assist and advise as they continue to build and improve their security.
  • Maintain competence in security trends, technologies, and practices through self-study and attendance of industry events.
  • Maintain integrity and confidentiality for sensitive client information.
  • Assess and research common business platforms and technologies to deliver recommendations for secure configurations.

Qualifications

  • 5+ years of industry experience with an understanding of the cybersecurity space
  • 2+ years of experience in a cybersecurity consulting role; specifically conducting IT audits or assessments
  • Familiarity with cybersecurity frameworks such as NIST CSF, CMMC,  ISO 27001, and CIS Controls
  • Strong knowledge of Microsoft Suite, Advanced Excel skill a plus
  • Relevant certifications such as CISSP, CISM, CISA, etc.

Hours of Operation:

  • Soteria is a remote workforce with flexibility in scheduling. The majority of work time will be 9:00 AM EST to 5:00 PM EST.

This is a remote position; however, occasional travel may be required for client engagements, team meetings, or other business needs.

Skills Required

  • 5+ years of industry experience with an understanding of cybersecurity
  • 2+ years of experience in cybersecurity consulting, specifically conducting IT audits or assessments
  • Familiarity with NIST CSF, CMMC, ISO 27001, and CIS Controls
  • Strong knowledge of Microsoft Suite
  • Advanced Excel skills
  • Relevant certification such as CISSP, CISM, or CISA
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: North Charleston, SC
30 Employees
Year Founded: 2014

What We Do

Soteria is a cyber security firm founded by former members of the National Security Agency and industry experts hailing from financial services, transportation, manufacturing, and technology fields. With a combination of technical security expertise and industry-specific insight, the Soteria team provides tailored security services and solutions spanning managed detection, assessments, incident response, penetration testing, and security program development. Rather than viewing implementing security as a series of “box-ticking” exercises to meet compliance, Soteria looks for points of weakness to penetrate a client’s business and develops meaningful remediation strategies that complement a client’s workflows and resource availability. It is this combination of unparalleled security and industry expertise that enables Soteria to develop tailored solutions that strategically align with a client’s security needs.

Similar Jobs

In-Office or Remote
Charleston, SC, USA
30 Employees
120K-150K Annually

General Motors Logo General Motors

Automation Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees

General Motors Logo General Motors

Buick GMC District Manager, Parts and Service - North Central Region

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
106K-141K Annually
Easy Apply
Remote
United States
900 Employees
225K-240K Annually

Similar Companies Hiring

Copia Automation Thumbnail
Cybersecurity • Industrial
New York, New York
50 Employees
SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account