Cybersecurity Consultant

4 weeks ago


Westminster, Colorado, United States Coalfire Full time
Role Summary

Coalfire is seeking a highly skilled Cybersecurity Consultant to join our team. As a key member of our Application Security team, you will be responsible for assessing the security and compliance of various types of client applications and supporting infrastructure against regulatory and industry requirements and standards, as well as security best practice frameworks.

Key Responsibilities

Work independently and collaboratively with a team to both lead and support engagements
Application Penetration Testing (Browser-based, API, Mobile, IoT, Cloud)
Threat Modeling
Source Code Reviews
Advise clients on technical security or compliance activities.
Manage priorities and tasks to achieve utilization targets.
Operate with professionalism both internally and with clients.
Ensure quality reports and services are delivered efficiently and on time.
Collaborate with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables
Communicate with client stakeholders to include leadership, systems and network administrators, security engineers, development, and support teams.
Enhance and maintain cloud service provider technical testing methodologies and standards.
Lead and support penetration testing projects through their entirety.
Contribute to thought leadership initiatives through blogs, conference speaking, and/or R&D functions.

Requirements

Proven track record of success managing client engagements.
A thorough understanding of the Secure Development Life Cycle
A working knowledge of popular web technologies and languages such as .NET, Java EE, , Rails or JavaScript
Working knowledge of web service protocols and hosting technologies
Familiarity with code scanning and dynamic analysis tools
Application penetration testing and assessment tradecraft and methodologies (including browser-based, API, thick client, and mobile testing)
Strong working knowledge of at least two programming or scripting languages, and the ability to read code regardless of the language in which it is written
Excellent verbal and written communication skills, including technical writing of assessment reports, presentations, and operating procedures
Client-centric consulting with high level of collaboration
Strong understanding of security principles, policies, and industry best practices
Ability to travel up to 10% (potentially & during normal circumstances)

Bonus Points

Experience in a consulting/professional services role.
Experience in Application Security and/or Software Development
Cloud Service penetration testing tradecraft and methodologies across one or more service providers (e.g. AWS, GCP, etc.).
Familiarity with DevOps engineering concepts, infrastructure automation, pipelines, version control, and deployment strategies are also a plus.

Deep, progressive experience with AWS security concepts, including IAM, STS, and AWS specific security controls and security architecture design patterns.

Professional-level AWS certifications (SAP/DEP), or AWS Specialty certifications with supporting professional experience. Experience with server-less design concepts and supporting services including S3, SQS, SNS, CloudFront, DynamoDB, Lambda and, A
PIGateway.
Knowledge of advanced/niche AWS services, including Cognito, IoT Core, or SageMaker are a major plus.
Mobile platform penetration testing tradecraft and methodologies across widely-used platforms (iOS and/or Android).
Microservices testing
Experience with DevOps and/or Security Maturity Modelling (e.g. OWASP SAMM)
Testing IoT devices and software
Network/host-based penetration testing tradecraft and methodologies.

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages.

The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors.

You may also be eligible to participate in annual incentive, commission, and/or recognition programs.
#LI-Remote #LI-HJ1

Why Coalfire

At Coalfire, you'll find the support you need to thrive personally and professionally.

In many cases, we provide a flexible work model that empores you to choose when and where you'll work most effectively - whether you're at home or an office.

Regardless of location, you'll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities.

You'll have opportunities to join employee resource groups, participate in in-person and virtual events, and more.

And you'll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

At Coalfire, equal opportunity and pay equity is integral to the way we do business.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities.

To request reasonable accommodation to participate in the job application or interview process, our Human Resources team at

  • Westminster, Colorado, United States Coalfire Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Consultant to join our team at Coalfire. As a Cybersecurity Consultant, you will work closely with our clients to assess and improve their security posture, identifying vulnerabilities and providing recommendations for remediation.Key ResponsibilitiesConduct application penetration testing and...


  • Westminster, Colorado, United States Coalfire Full time

    Job Title: Cybersecurity ConsultantAbout Coalfire:Coalfire is a leading cybersecurity firm that helps organizations protect themselves against cyber threats. We are committed to providing our clients with the highest level of service and expertise.Job Summary:We are seeking a highly skilled Cybersecurity Consultant to join our team. The ideal candidate will...


  • Westminster, Colorado, United States Coalfire Full time

    About CoalfireCoalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees. Our mission is to make the world a safer place by solving our clients' hardest cybersecurity challenges. We work at the cutting edge of technology to advise,...


  • Westminster, Colorado, United States Coalfire Full time

    We're committed to creating a safe and inclusive environment for all employees, where everyone can thrive and grow.At Coalfire, we're passionate about solving our clients' hardest cybersecurity challenges and making the world a safer place.We work at the cutting edge of technology to advise, assess, automate, and help companies navigate the ever-changing...


  • Westminster, Colorado, United States Coalfire Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Consultant to join our team at Coalfire. As a key member of our Red Team, you will be responsible for assessing the security posture and detection capabilities of client firms against known and unknown attack methods.Key ResponsibilitiesConduct network, web, social engineering, and cloud environment...


  • Westminster, Colorado, United States Coalfire Systems Full time

    About Coalfire SystemsWe are Coalfire Systems, a leading cybersecurity consulting firm dedicated to helping our clients navigate the ever-changing landscape of cloud security. Our team of experts is passionate about solving the hardest cybersecurity challenges and making the world a safer place.Job DescriptionAs a Cloud Services Consultant, you will play a...


  • Westminster, Colorado, United States Coalfire Full time

    Enterprise Architecture LeadCoalfire is a leading cybersecurity consulting firm that helps organizations protect their digital assets. We are seeking an experienced Enterprise Architecture Lead to join our team.The Enterprise Architecture Lead will be responsible for leading the architecture strategy and delivery of large-scale, complex technology...


  • Westminster, Colorado, United States Coalfire Full time

    Coalfire SystemsWe celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients' hardest cybersecurity challenges. We work at the cutting edge of technology to advise,...


  • Westminster, Colorado, United States Coalfire Full time

    Job SummaryWe are seeking a highly skilled Senior Manager, Cloud Infrastructure to lead our client projects and support thought leadership activities. The ideal candidate will have experience managing teams of 4-8 individuals, excellent communication and problem-solving skills, and a strong understanding of cloud IaaS providers such as AWS, Azure, and...