Senior Associate - Cyber Security

CNM LLP

Los Angeles (CA)

Hybrid

USD 120,000 - 150,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

CNM LLP, a boutique consulting firm in Los Angeles, seeks a Cyber Security Senior Consultant to work with Fortune 500 clients. You will conduct security assessments, manage projects, and guide teams in an exciting environment.

Qualifications include a Bachelor's degree and 3+ years of security experience. You will also have the opportunity to earn a promotion to Manager. CNM LLP values professional growth and offers a collaborative workspace.

Qualifications

  • 3+ years of relevant work experience in incident response and vulnerability assessments.
  • 2+ years of hands-on application and web application security experience.
  • Certifications such as CPTC, CPTE, CEH preferred.

Responsibilities

  • Conduct IT security assessments and provide actionable recommendations.
  • Manage project teams and maintain client relations.
  • Produce quality deliverables and communicate effectively with clients.

Skills

IT security risk assessment frameworks
Vulnerability and penetration testing
Scripting knowledge (Windows, Unix, Python)
Security policies and tools

Education

Bachelor’s degree in information systems or computer science

Tools

Cenzic
Wireshark
Kali Linux
NMAP
Burp Suite

Job description

CNM LLP is a specialized boutique consulting firm looking for a Cyber Security Senior Consultant. We represent Fortune 500 and newly public high growth entities in rapidly changing environments in the Los Angeles and Orange County markets. You will work with the largest entertainment and public companies to review information system and network security which requires a thorough understanding of information security frameworks, ERP and cloud-based applications, and information system auditing and vulnerability assessment techniques. As a result, you will have the opportunity to grow your career in a collaborative environment that is a playground for highly skilled, self-motivated professionals. You will partner with advisory services project teams to assess and improve our client’s IT environments, procedures, and controls related to their regulatory compliance and strategic objectives.

Job Description

If you’re interested, here is the challenge for your first year with CNM LLP.

  • Demonstrates a thorough understanding of:
    • IT security risk assessment frameworks, including implementation experience
    • IT Security industry and regulatory requirements including participating in audits, or remediation activities for requirements such as PCI-DSS, Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA) and Meaningful Use, SSAE-16 SOC 2 etc.
    • IT governance and security related frameworks, such as COBIT, NIST 800-53, ISO27000 and current cyber security trends
    • Conducting IT security technical and functional assessments, including drafting observations and recommendations, and assisting with remediation activities
    • Performing wireless, internal and external network, and web application vulnerability and penetration testing and the ability to document technical observations and recommendations
    • Vulnerability and Penetration Testing Standards such as OWASP top 10, DoD or NSA
    • Some scripting knowledge Windows, Unix, Bash, Python, Perl or Ruby
    • Security policies, tools and technology including Identity and Access Management, Data Loss Prevention (DLP), SIEM solutions, Firewall, Web Proxy, Anti-Virus, and Application Whitelisting solutions
  • Conduct technical security vulnerability and penetrations testing assessments on our client’s web applications, wireless, internal and external networks and providing actionable and risk prioritized observations and recommendations
  • Complete the assigned IT security and application controls on 1-3 project teams, within the given budget with minimal supervision by:
    • Creating system narratives, identifying key controls, and concluding on design and operating effectiveness of key controls.
    • Demonstrating clear and concise writing, and verbal skills to communicate complex issues in simple terms to clients and team members.
    • Producing quality deliverables evidenced through minimal review time and review notes.
    • Actively improving technical and project management skills through on the job feedback, performance evaluations, mentoring and firm-sponsored formal training programs including monthly CPE and Subject Matter Expert (SME) training.
    • Responding to client needs and balancing the competing priorities with minimal client disruptions, while maintaining project progress.

Upon successfully demonstrating the skill set listed above you will have the opportunity to earn a promotion to Manager. As a Manager you will be responsible for:

  • Building internal teams through participation in our mentoring program and interviewing.
  • Managing one to several individual project teams, project scheduling, reviewing of workpapers, and being the primary point of contact between the CNM team and the client.
Qualifications

Qualifications:

  • Bachelor’s degree is required in a related field; information systems or computer science preferred
  • Minimum 3+ years of relevant work experience in incident response, vulnerability assessments, penetration testing, ethical hacking, security architecture design, including supervisory experience, is required;
  • 2+ years of hands‑on application and web application security experience
  • Certification(s) Preferred: CPTC, CPTE, GPEN, CEH, CISSP, CISM or CISA
  • Must have a willingness to learn and support IT internal audit, SSAE16 – SOC 1 Type II and Sarbanes‑Oxley projects
  • Strong experience in performing application penetration testing, as well as using techniques and tools such as Cenzic, Wireshark, Kali Linuz, NMAP, Burp Suite, etc.
  • Must be able to articulate complex and technical information to a technical and non‑technical audience
  • Ability to understand IT risks and implications to the business, identify weaknesses and recommend solutions
  • Self‑directed, with the ability to thrive in a fast‑paced and collaborative environment
  • Flexible, team player and deadline oriented
  • Flexibility to travel to clients within the greater Los Angeles Area

Are you ready for the challenge? If so please apply here.

You may also visit our company website www.cnmllp.com/careers.

Location: Our office is located in Woodland Hills, but the location of our work is based on client locations primarily throughout the greater Los Angeles area.

CNM LLP is an Equal Opportunity Employer

Additional Information

All your information will be kept confidential according to EEO guidelines.

By clicking the link above or any third‑party link within this posting, you are leaving this site and going to a third‑party website where the third‑party website's terms and privacy policy apply

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Associate - IT Advisory
Senior Associate - IT Advisory

CNM LLP • Los Angeles (CA)

On-site
USD 80,000 - 110,000
Director- Information Technology Security Consulting Services
Director- Information Technology Security Consulting Services

CNM LLP • Los Angeles (CA)

On-site
USD 120,000 - 160,000
Senior Associate - Risk and Compliance Advisory
Senior Associate - Risk and Compliance Advisory

CNM LLP • Los Angeles (CA)

Hybrid
USD 80,000 - 110,000
Support for CPA/CIA examination
Professional development programs
Mentorship opportunities
Senior Cybersecurity Consultant - Risk & Compliance Expert
Senior Cybersecurity Consultant - Risk & Compliance Expert

CNM LLP • Los Angeles (CA)

Hybrid
USD 120,000 - 150,000
Director- IT Internal Audit Advisory
Director- IT Internal Audit Advisory

CNM LLP • Los Angeles (CA)

On-site
USD 150,000 - 180,000
401(k) match
PTO: 15 days accrued per year
Company paid holidays
+3
Manager-Cyber Security
Manager-Cyber Security

Cross Country Consulting • Los Angeles (CA)

Hybrid
USD 136,000 - 195,000
Medical, dental, and vision coverage
401(k) with company match
Parental and maternity leave
+2
Manager-Cyber Security
Manager-Cyber Security

Cross Country Consulting • California (MO)

Hybrid
USD 136,000 - 195,000
Health insurance
401(k) with company match
Wellness programs
Senior Infrastructure Security Engineer
Senior Infrastructure Security Engineer

United States Digital Space LLC • United States

Hybrid
USD 87,000 - 161,000
Health insurance
401K & stock purchase
Tuition reimbursement
+2
Senior Information Security Analyst, CX
Senior Information Security Analyst, CX

NICE • Sandy (UT)

On-site
USD 110,000 - 150,000
Consultants - Compliance & Risk, Accounting & Transaction and Information Technology
Consultants - Compliance & Risk, Accounting & Transaction and Information Technology

CNM LLP • Los Angeles (CA)

On-site
USD 70,000 - 100,000