Senior Security Advisor

7 days ago


New York, United States Aon Full time

Aon is looking for a Cyber Security Advisory Consulting Sr. Consultant - Defense and Transformation

This Defense and Transformation service line Sr. Consultant role will be part of a cross-functional Proactive Security Services team that, complete, and delivers various Security Advisory engagements for our clients.

Aon‘s Cyber Security Advisory Consulting is client-facing management consulting function. Our Proactive Advisory teams, within this business unit, specialize in the development and implementation of customized cybersecurity solutions for clients‘, in fee-for-service projects to mitigate risks and prepare companies in advance of a cyber incident. Our Advisory services lines include Cybersecurity Organizational Design and Strategy; Risk and Compliance; Defense and Transformation; Resilience; Data Security and Privacy; and M&A/Private Equity.

As part of these service areas and within a shared resource model, your day-to-day contributions are focused on translating clients‘ cybersecurity requirements and customizing and implementing security solutions into specific guidance and insights to inform strategies, operations, and tactics.

Your delivery objective will be to identify and develop the security solutions for clients using your current knowledgebase and interpersonal skills along with our company products and technical tools to minimize security vulnerabilities and maximize the effectiveness of appropriate security controls.

These project-based initiatives can involve working at customer sites, working from an Aon office, or working remotely / from home. Performance is typically measured by utilization (i.e., billable hours), role-based metrics, and the successful delivery of agreed solutions within budgeted hours.

The location is flexible.

Your impact as a Cyber Security Advisory Consulting Sr. Consultant

Job Responsibilities:

This role will be part of a multi-functional Proactive Security Services team that leads, carries out, and delivers various Security Advisory engagements for our clients.

The responsibilities of this position include but are not limited to the following:

  • Support delivery teams that conduct enterprise-level technical security assessments for various clients.
  • Performing blue teaming / purple teaming and technical security assessments against on premise and public/hybrid/private cloud environments.
  • Conduct Breach and Attack Simulations against client environments to gauge effectiveness of security controls and provide improvement recommendations.
  • Enhance and scale traditional defensive security programs for clients against ransomware, APT, and insider threat scenarios.
  • Assess IT network and security architectures in line with industry standard processes and frameworks.
  • Perform document reviews, analyse artifacts and conduct interviews with client security and technology personnel as part of security assessments.
  • Perform hands-on analysis as needed such as control / configuration review of client technology and security stack using automated and manual methods.
  • Develop client security programs by reviewing existing capabilities; conducting comprehensive reviews of threats; evaluating and analyzing relevant data points.
  • Recommend strategies to defend against threats such as ransomware, nation-state attacks, and insider threat.
  • Support engagement lead and team members during client engagement execution, ensuring timely progress, achievement of objectives, and delivery quality.
  • Contribute to maturing team competence and capabilities by improving delivery processes; mentoring team members and finding opportunities for new service offerings

You Bring Knowledge and Expertise

Required Experience:

  • Strong technical fundamentals in either Security Operations, DevSecOps, Red Teaming or Blue Teaming
  • Professional experience in both offensive and defensive information security fields
  • 2+ years substantive experience in a technical cyber security role (offensive and/or defensive)
  • 2+ years Substantive experience with two or more of the following over the course of career:
  • Building and/or maintaining attack simulation and C2 infrastructure
  • Driving technical security assessments and attack surface analysis against on premise and public/hybrid/private cloud environments
  • Performing blue teaming/purple teaming, technical security assessments or penetration tests against on premise and public/hybrid/private cloud environments
  • Building and/or maintaining security operations program for large and complex environments
  • Hands-on experience red teaming/blue teaming for large complex environments
  • Providing security advisory services related to secure design and architecture, ransomware defenses, or post-breach remediation.
  • The ideal candidate would have 3+ years in progressively sophisticated roles in information security consulting, coupled with demonstrable experience in various Cybersecurity domains, including security engineering, security operations, security architecture, cloud security and/or blue teaming/red teaming.
  • Familiarity with cybersecurity frameworks and standards such as NIST CSF, MITRE ATT&CK and CIS Critical Security Controls.
  • Strong oral and written communications skills. A demonstrated ability to write clear, coherent and precise reports on a multiplicity of complex technical issues is essential.

Preferred Experience:

  • Recent consulting experience with a mid to large size consulting firm/practice preferred.
  • Security certifications (CISSP, GIAC, OSCP, AWS/Azure/GCP) a plus.
  • Experience working on cloud security teams, security operations teams, blue team /purple team engagements, ransomware defensive strategies would be a plus.

Education:

  • Bachelor‘s degree in computer science, information technology, or equivalent work experience.

How we support our colleagues

In addition to our comprehensive benefits package, we encourage a diverse workforce. Plus, our agile, inclusive environment allows you to manage your wellbeing and work/life balance, ensuring you can be your best self at Aon.

Furthermore, all colleagues enjoy two ‘Global Wellbeing Days‘ each year, encouraging you to take time to focus on yourself. We offer a variety of working style solutions, but we also recognize that flexibility goes beyond just the place of work... and we are all for it. We call this Smart Working

Our continuous learning culture inspires and equips you to learn, share and grow, helping you achieve your fullest potential. As a result, at Aon, you are more connected, more relevant, and more valued.

Aon values an innovative, diverse workplace where all colleagues feel empowered to be their authentic selves. Aon is proud to be an equal opportunity workplace.

Aon provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, veteran, marital, domestic partner status, or other legally protected status.

We welcome applications from all and provide individuals with disabilities with reasonable adjustments to participate in the job application, interview process and to perform essential job functions once onboard. If you would like to learn more about the reasonable accommodations we provide, email

Nothing in this job description restricts management‘s right to assign or reassign duties and responsibilities to this job at any time.

The salary range for this position (intended for U.S. applicants) is $115000 to $140000 annually. The actual salary will vary based on applicant‘s education, experience, skills, and abilities, as well as internal equity and alignment with market data. The salary may also be adjusted based on applicant‘s geographic location.

This position is eligible to participate in one of Aon‘s annual incentive plans to receive an annual discretionary bonus in addition to base salary. The amount of any bonus varies and is subject to the terms and conditions of the applicable incentive plan.

Aon offers a comprehensive package of benefits for full-time and regular part-time colleagues, including, but not limited to: a 401(k) savings plan with employer contributions; an employee stock purchase plan; consideration for long-term incentive awards at Aon‘s discretion; medical, dental and vision insurance, various types of leaves of absence, paid time off, including 12 paid holidays throughout the calendar year, 15 days of paid vacation per year, paid sick leave as provided under state and local paid sick leave laws, short-term disability and optional long-term disability, health savings account, health care and dependent care reimbursement accounts, employee and dependent life insurance and supplemental life and AD&D insurance; optional personal insurance policies, adoption assistance, tuition assistance, commuter benefits, and an employee assistance program that includes free counseling sessions. Eligibility for benefits is governed by the applicable plan documents and policies.

#LI-NS1

Select Work-style (delete as appropriate):

#LI-HYBRID

#LI-REMOTE

2548017

  • New York, United States The Tax Law Center at NYU Law Full time

    The Tax Law Center at the NYU School of Law is seeking a full-time Attorney Advisor OR Senior Attorney Advisor, based on experience, with expertise in litigation or tax controversy. This role will report to the Director of Litigation work closely with the Director of Litigation and other senior staff members to contribute to rigorous, high-impact tax legal...

  • Senior Client Advisor

    1 month ago


    New York, United States KHAITE Full time

    ABOUT KHAITE KHAITE is a way of looking at the world. Shaped by formative encounters, cultural touchstones, and secret desires, this point of view comes to life through womenswear and accessories that find confidence in contrast. Each piece proposes a fresh balance of opposing elements- masculine and feminine, strength and softness, structure and fluidity-...

  • Senior Credit Advisor

    1 month ago


    New York, United States HSBC Full time

    Our purpose - Opening up a world of opportunity - explains why we exist. Here at HSBC we use our unique expertise, capabilities, breadth and perspectives to open up new kinds of opportunity for our more than 40 million customers. We're bringing together the people, ideas and capital that nurture progress and growth, helping to create a better world - for our...


  • New York, United States NPAworldwide Full time

    Note: This position requires employees to be hybrid (in office Wednesdays and one other day per week) at the Boston, NYC, Philadelphia, or Washington DC office. About Our Client Our client is a full-service national law firm with approximately 400 attorneys, offering proactive advice and top-notch client service. Their collaborative culture, innovative...


  • New York, United States Action Against Hunger Full time

    Job Summary Action Against Hunger USA is seeking a Senior Technical Advisor, Wasting to oversee wasting management and prevention efforts on the recently awarded USAID ELELVATE Nutrition Project. ELEVATE Nutrition (Enhancing Local Efforts for Vital, Transformative, and Evidence-Based Nutrition), funded by the U.S. Agency for International Development...


  • New York, New York, United States StateJobsNY Full time

    Job DescriptionWe are seeking a highly skilled Senior Legal Advisor to join our team at StateJobsNY.About the RoleThis is a challenging and rewarding opportunity for a senior lawyer to provide expert legal advice on corporate and real estate matters, financing, grants, and loans. As a key member of our team, you will work closely with various departments to...


  • New York, United States City of New York Full time

    Company DescriptionJob Description The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst. The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical background...

  • Executive Assistant

    4 weeks ago


    New York, United States Lead Advisor Full time

    Our client, a wealth management firm in New York, NY is hiring an Executive Assistant to work with the head of the firm. Lead Advisor is a wealth management search firm and this role is to work for a client. For other roles go to jobs.lead-advisor.comJob Description:The Executive Assistant supports the day-to-day operations of the Managing Partner. The...


  • new york city (bloomfield), United States Pyramid Consulting, Inc Full time

    Immediate need for a talented Information Protection Senior Advisor. This is a 12+months contract opportunity with long-term potential and is located in Bloomfield, CT (Onsite). Please review the job description below and contact me ASAP if you are interested.Job ID: 24-46259Pay Range: $60 - $70/hour. Employee benefits include, but are not limited to, health...


  • new york city (bloomfield), United States Pyramid Consulting, Inc Full time

    Immediate need for a talented Information Protection Senior Advisor. This is a 12+months contract opportunity with long-term potential and is located in Bloomfield, CT (Onsite). Please review the job description below and contact me ASAP if you are interested.Job ID: 24-46259Pay Range: $60 - $70/hour. Employee benefits include, but are not limited to, health...


  • New York, New York, United States Arrow Security Full time

    At Arrow Security, we are seeking a highly skilled Senior Vice President of Operations to join our team in the Manhattan office. This pivotal role requires a visionary leader who can design and implement innovative operational strategies to enhance security solutions and ensure our clients' peace of mind.Leadership & Strategic Planning:As a key leader within...


  • New York, United States Henderson Scott US Full time

    Job Description Leading law firm seeks senior corporate securities associate with 5+ years of experience with the following: Advising public companies on Securities Act of 1933 and Securities Exchange Act of 1934 complianceHandling public and private securities offeringsNavigating national securities exchange listing rulesReporting on Forms 10-K, 10-Q, 8-K,...

  • Senior Client Advisor

    4 weeks ago


    New York, New York, United States KHAITE Full time

    About KHAITEKHAITE is a luxury fashion brand that embodies a unique perspective on the world. Our womenswear and accessories are designed to find confidence in contrast, proposing a fresh balance of opposing elements. Each piece embodies a signature sensuality and ease, while showcasing exceptional materials, exquisite craftsmanship, and subtle yet striking...


  • New York, New York, United States Bitcoin Devs Company Full time

    Job Title: Senior Security EngineerJob Description:The Senior Security Engineer plays a vital role in ensuring the security and integrity of Bitcoin Devs Company’s platform, systems, and applications. This position is crucial in protecting the organization from potential security threats and vulnerabilities, as well as implementing and maintaining best...


  • New York, New York, United States Affinity Executive Search Full time

    Job Opportunity: Affinity Executive Search is seeking a talented Senior Associate Attorney to join their expanding securities group. This is an exciting opportunity to work in a sophisticated, entrepreneurial practice.About the Role: As a Senior Associate Attorney, you will advise public companies on Securities Act of 1933 and Securities Exchange Act of 1934...


  • New York, New York, United States GuidePoint Security Full time

    Job DescriptionGuidePoint Security is a leading provider of trusted cybersecurity expertise, solutions, and services. As a Senior Account Executive, you will play a critical role in helping our clients navigate the complex world of information security.Key ResponsibilitiesDevelop and maintain strong relationships with key clients and stakeholdersIdentify and...


  • New York, United States Emergent365 Full time

    Senior Application Security Engineer*This position is highly technical. As a Senior Application Security Engineer, your role involves close collaboration with software development teams to ensure the safety of our customers during the development of innovative services. On any given day, your tasks may include code inspections to identify security issues,...


  • New York, United States MDS (Micro-Data Systems) Full time

    Senior Security EngineerLocation: Hybrid - 2-3 Days per week Onsite in Manhattan, NY, Brooklyn, NY, or Trenton, NJTop skills/tools, etc. that are MUST haves:Core security with experience deploying / upgrading and migrating Palo Alto firewallsConsultative and team playerHigh level of experience with Panorama and log collectorsPalo Alto Next Generation...


  • New York, United States MDS (Micro-Data Systems) Full time

    *****NO C2C OR THIRD PARTY INQUIRIES*****Senior Security EngineerLocation: Hybrid - 2-3 Days per week Onsite in Brooklyn, NYTop skills/tools, etc. that are MUST haves:Core security with experience deploying / upgrading and migrating Palo Alto firewallsConsultative and team playerHigh level of experience with Panorama and log collectorsPalo Alto Next...


  • New York, United States HRUCKUS Full time

    Veteran Firm Seeking Senior Security Engineer for an Onsite Role in New York, NYMy name is Stephen Hrutka. I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain management, and IT Staffing.We seek to fill a Senior Security Engineer role for the New York City Office of Technology and Innovation (NYC OTI). The...