Information Security Consultant

1 week ago


Fairfax, United States Tevora Full time
Information Security Consultant - System and Organization Controls (SOC 1 / SOC 2) Compliance

at Tevora

Fairfax, VA or Irvine, CA

If you haven't heard of Tevora, it's because we've done our job

Tevora is a tight-knit community of professionals with a shared passion for our craft. Every day, we combine in-depth knowledge of cybersecurity, technology, and compliance to help create more secure digital environments. To Tevorans, every problem is a puzzle in need of solving. We strongly believe that if we put smart, driven people in a room together, they will accomplish great things. We maintain a supportive culture that celebrates continuous learning, diverse perspectives, and sharing the wins. That's why we have our eyes on you.

What's the role?

Tevora is seeking an Information Security Consultant to join the SOC Compliance team.

This role on the SOC Compliance team is looking for a passionate individual who has a solid balance between business acumen and technical expertise. Comfortable across various disciplines of information security, this consultant will be responsible for assessing System and Organization Controls (SOC) compliance, for SOC 1 and SOC 2, on a wide variety of client projects for some of the world's largest organizations. Other compliance frameworks this role will work on may include ISO 27001 and PCI. This role will also contribute to thought leadership, provide mentorship to junior team members, and participate in ongoing training opportunities.

The successful candidate for this role will be detail orientated, have a solution focused attitude, and possess strong written and verbal communication skills.

A day in the life could include:
  • Participating in IT and Compliance assessments, audits, gap analyses, and remediation.
  • Leading and actively contributing to projects in the areas of System and Organization Controls (SOC 1 & SOC 2) Compliance assessments.
  • Communicating with project stakeholders to effectively convey requirements of technical and process improvements.
  • Participating in various information security compliance projects, such as PCI or ISO gap assessments.
  • Assisting in the development of customized policies, procedures, controls, disaster recovery plans and other documentation for applications, systems, and infrastructure.
  • Managing policy exceptions, including working directly with the teams to document exceptions, identify compensating controls and remediation action plans.
  • Additional duties as assigned.
Necessary skills and qualifications:
  • Completed minimum 3 years of experience in the information security, information technology, business consulting, enterprise risk, or compliance field.
  • Demonstrated experience in at least 2 years of SOC 2 Compliance assessments.
  • Hold at least one Auditing, Risk, or IT certification from the following list: CISSP, CISA, CISM, CRISC, ISO Lead Auditor.
  • Possess knowledge of common IT and security concepts such as firewall management, server management, access control, and authentication.
  • Ability to connect easily with clients and colleagues to communicate effectively across business and technical boundaries- to offer recommendations as an expert with best practices.
  • Ability to work independently without detailed guidance.
  • Proficient in writing executive-level reports and technical documentation.
  • Proficient in MS Office tools and basic professional acumen.
Bonus Points:
  • Hold a bachelor's degree from an accredited 4-year university.
  • Demonstrated experience in at least one other information security compliance assessment (ISO 27001, PCI Level 1, HITRUST)
  • Prior or current CPA license
  • Commitment to continued learning.
We've got you covered
  • Comprehensive benefits offering
  • Paid time off and holidays
  • 401k with Company match
  • Vibrant work culture
Additional requirements:
  • A valid driver's license is required.
  • Eligibility to work in the United States.

EEOC Statement

Tevora is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, disability status, or other applicable legally protected characteristics.

  • Fairfax, United States General Dynamics Information Technology Full time

    National Security Information SpecialistGDIT offers a rewarding career as a National Security Information Specialist. As part of our team, you will contribute to the safety and security of our nation by applying the latest technology and providing operational support to deliver actionable intelligence for the Intelligence Community.In this role, you will...


  • Fairfax, United States Inova Health System Full time

    Inova Health is looking for a dedicated Information Security Architect to join the Team. This role will be full-time day shift from Monday - Friday, hybrid position. The IT Security Architect serves as an expert in information security. Leads the implementation of security capabilities and controls. Makes decisions on complex or ambiguous IT architecture...


  • Fairfax, United States ZTI Solutions, LLC Full time $150,000 - $220,000

    Job Description:Senior Information Systems Security Manager (ISSM), Fairfax, VA.Summary:Provide senior-level security certification and accreditation consulting related to the maintenance, upgrade, and technology insertion for a DoD-approved classified network with multiple sites. Specifically, maintain, update, and create new policies/procedures/SOPs and...


  • Fairfax, United States LMI Government Consulting (Logistics Management Institute) Full time

    Overview: LMI is a consultancy dedicated to powering a future–ready, high–performing government, drawing from expertise in digital and analytic solutions, logistics, and management advisory services. We deliver integrated capabilities that incorporate emerging technologies and are tailored to customers' unique mission needs, backed by objective research...


  • Fairfax, United States DSA Full time

    DSA is hiring a Senior Information Security Analyst. This is a full-time position in the DC Area. This position supports the Environmental Protection Agency (EPA). DSA is the Prime and has been working with this customer on this contract for more than 13 years. It is a dynamic team with a passion for supporting Federal programs that serve US Citizens....


  • Fairfax, United States DSA Full time

    DSA is hiring a Senior Information Security Analyst. This is a full-time position in the DC Area. This position supports the Environmental Protection Agency (EPA). DSA is the Prime and has been working with this customer on this contract for more than 13 years. It is a dynamic team with a passion for supporting Federal programs that serve US Citizens....


  • Fairfax, United States DSA Full time

    DSA is hiring a Senior Information Security Analyst. This is a full-time position in the DC Area. This position supports the Environmental Protection Agency (EPA). DSA is the Prime and has been working with this customer on this contract for more than 13 years. It is a dynamic team with a passion for supporting Federal programs that serve US Citizens....


  • Fairfax, United States Lorven Technologies Full time

    Role: Security Information and Event Management (SIEM) Analyst II (5+ years exp.) Location: Fairfax County, VA- Onsite Rate: xxx0/hr to xxx/hr on C2C All Inclusive Client : State of Virginia Job Description: Minimum/General Experience: Strong understanding of the SIEM systems, and have a minimum of five (5) years of experience working with a major SIEM...


  • Fairfax, United States JENSEN HUGHES Full time

    Consulting Engineer- Nuclear Facilities Fairfax, Virginia, United States Company Overview Jensen Hughes, a leading consulting firm specializing in risk analysis and engineering solutions, is actively seeking talented mid and senior-level engineers with a strong background in Probabilistic Risk Analysis (PRA) or other risk-based projects. This position...


  • Fairfax, United States JENSEN HUGHES Full time

    Consulting Engineer- Nuclear Facilities Fairfax, Virginia, United States Company Overview Jensen Hughes, a leading consulting firm specializing in risk analysis and engineering solutions, is actively seeking talented mid and senior-level engineers with a strong background in Probabilistic Risk Analysis (PRA) or other risk-based projects. This position...


  • Fairfax, United States SITEC Consulting LLC Full time

    ABOUT SITEC SITEC is an employee and customer focused Information Technology and Professional Services Firm specializing in design, development, and delivery of state-of-the-art technology solutions, as well as cybersecurity, software and systems engineering services. Join the and be part of a long-term contract supporting the. We are seeking a Network...


  • Fairfax, United States JENSEN HUGHES Full time

    Consulting Engineer- Nuclear Facilities Fairfax, Virginia, United States Company Overview Jensen Hughes, a leading consulting firm specializing in risk analysis and engineering solutions, is actively seeking talented mid and senior-level engineers with a strong background in Probabilistic Risk Analysis (PRA) or other risk-based projects. This position will...


  • Fairfax, United States JENSEN HUGHES Full time

    Consulting Engineer- Nuclear Facilities Fairfax, Virginia, United States Company Overview Jensen Hughes, a leading consulting firm specializing in risk analysis and engineering solutions, is actively seeking talented mid and senior-level engineers with a strong background in Probabilistic Risk Analysis (PRA) or other risk-based projects. This position will...


  • Fairfax, United States ECS Full time

    ECS is seeking a Cyber Security Analyst to work in our Ft Gordon, GA office. As a leading provider of managed cybersecurity services, ECS provides a highly tailored and customized offering to each customer. Our team is responsible for protecting both our customers and corporate environment at ECS. Our mission is very broad, and our team is agile. We will...


  • Fairfax, United States ZipRecruiter Full time

    Job DescriptionJob DescriptionDescription: At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by...

  • Security Specialist

    2 weeks ago


    Fairfax, United States NTT DATA Full time

    We are currently seeking a Security Specialist to join our team in Merrifield, Virginia (US-VA), United States (US). The Security Specialist (Senior) shall provide support in the area of information, personnel and physical security in support of DOJ Security Specialist, Security, Specialist, Management


  • Fairfax, United States SunPlus Data Group, Inc Full time

    Job DescriptionJob DescriptionSunPlus is looking for a Splunk Cyber Security Engineer for the State of VA in Fairfax, VA.PAY RATE: $100 hourly 1099, $91 W2 hourlyDURATION: 8 months with extension possible if good fitHOURS: Monday – Friday, 40 hrs. per week, Day ShiftJob# 750963100% ON SITE*It usually takes the State Government 2-3 weeks to start...


  • Fairfax, VA, United States EmergencyMD Full time

    Consultant Development Program at Tevora Irvine, CA and Fairfax, VA - DC Local Oct 1st, 2024, to November 29th, 2024. If you haven't heard of Tevora, it's because we've done our job! Tevora is a tight-knit community of professionals with a shared passion for our craft. Every day, we combine in-depth knowledge of cybersecurity, technology, and compliance to...

  • Subject Matter Expert

    2 weeks ago


    Fairfax, United States Sgi Global Llc Full time

    SGI Global LLC is seeking a Subject Matter Expert in Export Border Control, with experience with the DoS Export Control and Related Border Security (EXBS) program. Qualifications: Prior experience with the DoS Export Control and Related Border Security (EXBS) program Knowledge of international strategic trade control norms, best practices, and proliferation...


  • Fairfax, Virginia, United States Civic Renewables Full time

    Solar Sales Consultant RoleAre you passionate about renewable energy and eager to help homeowners take control of their energy future? We're seeking a talented Solar Sales Consultant to join our team at Civic Renewables.About the Job:This is an exciting opportunity to be part of a growing company in the clean energy movement. As a Sales Consultant, your...