Manager – Cyber Security

Jobtailor

Los Angeles (CA)

On-site

USD 140,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Jobtailor is seeking a Senior Cybersecurity Consultant in Los Angeles to conduct risk assessments against ISO 27001, NIST CSF 2.0, PCI-DSS and GDPR/CCPA requirements. You will design security architectures across AWS/Azure/GCP and drive security transformation projects end-to-end.

The role requires 5+ years of consulting experience, hands-on engineering and advisory capabilities, and travel within the LA/OC area. CISSP or equivalent certifications are preferred.

Qualifications

  • Bachelor's degree in a technical field is required.
  • Hands-on cybersecurity engineering and advisory experience.
  • Experience with cloud security services across AWS/Azure/GCP.

Responsibilities

  • Perform cybersecurity risk and maturity assessments across multiple standards.
  • Lead security transformation projects including architecture design and remediation.
  • Provide threat modeling, pen testing advisory and proactive defense guidance.
  • Uplift security capabilities across VM, IR, DR, BC, TI and Monitoring.
  • Support privacy programs (CCPA/CPRA, GDPR) and PCI-DSS compliance.
  • Map adversary techniques using MITRE ATT&CK to inform controls.
  • Review disaster recovery plans and develop remediation playbooks.
  • Design secure cloud architectures and implement controls for containers and serverless.
  • Drive engagement timelines and client confidence as a project leader.

Skills

ISO 27001
NIST CSF 2.0
CIS 18
PCI-DSS
NIST 800-53
MITRE ATT&CK
Threat Modeling
Penetration Testing
Infrastructure-as-Code
API Security
Cloud Security (AWS/Azure/GCP)
Docker
Kubernetes
Terraform
CI/CD Security
Security Architecture

Education

Bachelor's degree in Information Systems, Computer Science, Mathematics, or related technical field

Tools

AWS Security Services
Azure Security Services
GCP Security Services
Tenable
Qualys
Rapid7
Docker
Kubernetes
Terraform
CloudFormation
Bicep
Palo Alto
Fortinet
Cisco

Job description


  • Conduct cybersecurity risk and maturity assessments using ISO 27001, NIST CSF 2.0, CIS 18, PCI-DSS, NIST 800-53, Cloud Security Alliance, and MITRE ATT&CK

  • Perform security tool gap analysis, consolidation, and implementation across vulnerability management, endpoint security, SIEM, IDS/IPS, and firewall platforms

  • Lead security transformation programs, including architecture design, solution implementation, and technical remediation

  • Provide threat modeling, penetration testing advisory, and proactive defense strategy

  • Uplift capabilities across Vulnerability Management, Incident Response, IT Disaster Recovery, Business Continuity, Threat Intelligence, and Security Monitoring

  • Conduct privacy program audits supporting CCPA/CPRA and GDPR compliance

  • Implement and advise on PCI-DSS compliance

  • Apply MITRE ATT&CK and other threat modeling methodologies to map adversary techniques and inform defensive controls

  • Review and harden application and system disaster recovery plans; identify technical gaps and develop remediation playbooks

  • Assess Incident Response preparedness; design IR playbooks and runbooks and facilitate technical tabletop exercises

  • Design logical and technical cloud security architectures and define functional requirements for secure cloud environments

  • Architect and implement security controls for containers, infrastructure-as-code, and serverless functions

  • Design and enforce API security standards and secure integration patterns across AWS, Azure, and GCP

  • Conduct solution-based gap analysis and engineer controls for asset testing, code scanning, and application and infrastructure monitoring

  • Drive engagement timelines, deliverables, and client confidence as a project leader

  • Manage concurrent assessment, implementation, and compliance workstreams

  • Lead cross-functional project teams and delegate work across Senior Associates and other practice members

  • Own engagement success from scoping and project planning through final delivery


Requirements


  • Bachelor's degree required in Information Systems, Computer Science, Mathematics, or a related technical field

  • Minimum of 5 years of Big 4 or related consulting/professional services experience with hands-on Cybersecurity engineering and advisory expertise

  • Hands-on experience with AWS, Azure, and/or GCP security services and native security tooling

  • Experience with containers (Docker, Kubernetes), infrastructure-as-code (Terraform, CloudFormation, Bicep), serverless security, and CI/CD pipeline security

  • Experience with firewalls (Palo Alto, Fortinet, Cisco), VPN, IDS/IPS, micro segmentation, and zero-trust architecture

  • Experience with EDR/XDR platforms, PAM, IAM, MFA, and SSO solutions

  • Experience with Tenable, Qualys, Rapid7, or equivalent vulnerability management tools; familiarity with CVSS scoring and patch prioritization

  • Experience with SAST/DAST tooling, API security testing, secure SDLC practices, and code scanning platforms

  • Ability to travel locally throughout Los Angeles and Orange County

  • Preferred certifications include CISSP, CCSP, AWS Certified Security Specialty, Microsoft SC-100/AZ-500, CISM, CEH, OSCP, or other relevant security certifications


Core Competencies

Demonstrates expertise in conducting cybersecurity risk assessments and implementing security controls across cloud environments, vulnerability management, and compliance frameworks. Proficient in leading security transformation programs and ensuring adherence to industry standards such as ISO 27001 and PCI-DSS.


Highest-signal resume keywords


  • Cybersecurity Risk Assessment

  • Cloud Security Architecture

  • Vulnerability Management Tools

  • Incident Response Preparedness

  • Compliance with CCPA/CPRA and GDPR


Hard Skills


  • ISO 27001

  • NIST CSF 2.0

  • CIS 18

  • PCI-DSS

  • NIST 800-53

  • MITRE ATT&CK

  • Threat Modeling

  • Penetration Testing

  • Infrastructure-as-Code

  • API Security


Soft Skills


  • Project Leadership

  • Cross-Functional Team Management

  • Client Engagement


Certifications & Qualifications


  • CISSP

  • CCSP

  • AWS Certified Security Specialty

  • Microsoft SC-100

  • CISM

  • CEH

  • OSCP


Industry Keywords


  • Cybersecurity Engineering

  • Security Transformation Programs

  • Vulnerability Management

  • Incident Response

  • Business Continuity


Tools & Technologies


  • AWS Security Services

  • Azure Security Services

  • GCP Security Services

  • Docker

  • Kubernetes

  • Terraform

  • CloudFormation

  • Palo Alto

  • Fortinet

  • Cisco

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000
Technical Lead, Security Embedded Engineering
Technical Lead, Security Embedded Engineering

Jobtailor • Plano (TX)

On-site
USD 140,000 - 180,000
Vulnerability Management Technical Lead
Vulnerability Management Technical Lead

Jobtailor • San Francisco (CA)

On-site
USD 180,000 - 230,000
Director of Cyber Security
Director of Cyber Security

Jobtailor • Concord (MA)

Hybrid
USD 180,000 - 260,000
Information Security Manager – Configuration Management
Information Security Manager – Configuration Management

Jobtailor • Minnesota

On-site
USD 150,000 - 190,000
Lead, Incident Response – Global CSIRT
Lead, Incident Response – Global CSIRT

Jobtailor • United States

On-site
USD 150,000 - 190,000
Health insurance
Senior Manager, Detection and Response
Senior Manager, Detection and Response

Jobtailor • California (MO)

On-site
USD 200,000 - 260,000
Staff Corporate Security Engineer
Staff Corporate Security Engineer

Jobtailor • Lehi (UT)

On-site
USD 120,000 - 180,000
Intern, IT Product Engineering – Common Capabilities
Intern, IT Product Engineering – Common Capabilities

Jobtailor • Webster (MA)

On-site
USD 22,000 - 29,000
Senior Information Security Analyst – CSIRT
Senior Information Security Analyst – CSIRT

Jobtailor • Mount Laurel Township (NJ)

On-site
USD 110,000 - 170,000