Cybersecurity Consultant

3 months ago


Boston, United States Fidelity TalentSource LLC Full time



Cybersecurity Consultant (Internal Audit Facilitator)

Fidelity TalentSource is your destination for discovering your next temporary role at Fidelity Investments We are currently sourcing for a Sr. Cybersecurity Consultant (Regulatory & Audit) to work in Fidelity’s Enterprise Cybersecurity division in Boston, MA



The Team

The Enterprise Cybersecurity (ECS) Regulatory & Audit team helps ECS and corporate partners manage firm-wide cybersecurity risk by providing key support services. As part of Cyber Regulatory & Audit, the ECS Internal Audit Engagement (IAE) team supports 25-30 internal audits annually. IAE seeks to reduce cyber risk through improved engagement and partnership with ECS Product Areas and Audit to ensure alignment, transparency, and efficiency throughout pre-audit, active audit, and post-audit efforts.



The Role

The ECS Internal Audit Engagement (IAE) team is seeking a hard-working and expert cybersecurity risk professional to support and partner with ECS Product Areas and Fidelity Corporate Audit. The role requires steadfast collaboration throughout the three phases of audit engagement: pre-audit (roadmap alignment, pre-audit control risk gap assessments, trend/theme analysis), active audit (risk quantification, drafting action plans, facilitating risk acceptances), and post-audit (action plan closure, reporting and metrics).



The Expertise and Skills You Bring

  • Proven Risk Management and Mitigation experience
  • Strong Risk, Process, Cyber Threat Analysis, and Control Gap Assessment skill
  • Broad knowledge of cybersecurity threats and tactics
  • Understanding of NIST Cybersecurity Framework standards and practices, COBIT 5
  • Knowledge of Operations & Technology (identity & access management; physical/personnel security; security ops assessments), Information Risk Management (vendor risk management; cloud computer security; data management), Software Development Process and application security.
  • Understanding of FAIR (Factor Analysis of Information Risk) cyber risk framework
  • Familiarity with Archer GRC, Jira, and ServiceNow


General Business Skills

  • Experience working as corporate/internal auditor or working with corporate audit function
  • Analyst mentality to deep dive into audit findings to understand and communicate risks and appropriate responses
  • Highly motivated, self-directed, independent problem solver with attention to detail.


Responsibilities

  • Partner with internal teams to identify ECS control gaps
  • Partner with Audit and ECS teams to confirm reported audit issues and perform FAIR quantitative risk assessments
  • Drafting responses (Action Plans) to address valid audit observations
  • Manage ECS Product Areas progress toward timely completion of action plans
  • Find opportunities to improve team processes to better support ECS Product Areas
  • Manage ECS Risk Acceptances
  • Maintain and make use of metrics that support various reports and critical meetings
  • Partner w/ ECS Product Areas to gain in-depth understanding of roadmaps, backlogs, etc.


Education and Experience

  • Bachelor’s degree (or equivalent experience) in technology, computer science, or engineering strongly preferred
  • 5+ years’ experience in cybersecurity risk management, technology operations, system analysis, and/or project management
  • Certification a plus: CISSP (Information Systems Security Professional), CEH (Certified Ethical Hacker), CISA (Certified Information Systems Auditor)


Dynamic Working

At Fidelity TalentSource, our goal is for most people to work flexibly in a way that balances both personal and business needs with time onsite and offsite through what we call “Dynamic Working.” Most associates will have a hybrid schedule with a requirement to work onsite at a Fidelity location for at least one week, 5 consecutive days, every four weeks. These requirements are subject to change.



Company Overview

Fidelity TalentSource is the in-house temporary staffing provider for Fidelity Investments, one of the largest and most diversified global financial services firms in the industry. We welcome individuals from all backgrounds, including technology and customer service, to fill assignments across Fidelity’s U.S.-based regional and investor center locations. If you would like to experience Fidelity’s supportive and collaborative culture while expanding your skill set and developing your professional network, consider a role with Fidelity TalentSource. Apply today at FTSJobs.com.

We believe that the most effective way to attract, develop and retain a diverse workforce is to build an enduring culture of inclusion and belonging.
Fidelity TalentSource will reasonably accommodate applicants with disabilities who need adjustments to participate in the application or interview process. To initiate a request for an accommodation, please contact our HR team at HR@ ftsjobs.com.



Information about Fidelity investments

At Fidelity Investments, our customers are at the heart of everything we do. As a privately held company with a rich 75-year history, our mission has remained the same since our founding: to strengthen the financial well-being of our clients. We help people invest and plan for their future. We assist companies and non-profit organizations in delivering benefits to their employees. And we provide institutions and independent advisors with investment and technology solutions to help invest their own clients’ money. For information about working at Fidelity, visit FidelityCareers.com.

Fidelity TalentSource's working model blends the best of working offsite with maximizing time together in person to meet associate and business needs. Currently, most hybrid roles require associates to work onsite all business days of one assigned week per four-week period (beginning in September 2024, the requirement will be two full assigned weeks).

Fidelity Investments and Fidelity TalentSource are equal opportunity employers.



  • Boston, Massachusetts, United States Eliassen Group Full time

    Cybersecurity Business AnalystWe are seeking a highly skilled Cybersecurity Business Analyst to join our team at Eliassen Group. As a Cybersecurity Business Analyst, you will play a critical role in helping our clients achieve their business objectives by analyzing and improving their existing business processes.Key Responsibilities:Engage with stakeholders...


  • Boston, Massachusetts, United States ITmPowered, LLC Full time

    Job Summary: We are seeking a highly skilled IT Auditor Consultant to join our team at ITmPowered, LLC. As a key member of our Technology Risk Management organization, you will be responsible for conducting IT Controls Assessments for a set of 20 custom IT controls in our Hospital Medical Device Cybersecurity Program.About the Role: The Sr. IT Auditor...


  • boston, United States Fidelity TalentSource LLC Full time

    Cybersecurity Consultant (Internal Audit Facilitator) Fidelity TalentSource is your destination for discovering your next temporary role at Fidelity Investments! We are currently sourcing for a Sr. Cybersecurity Consultant (Regulatory & Audit) to work in Fidelity’s Enterprise Cybersecurity division in Boston, MA! The Team The Enterprise Cybersecurity...


  • Boston, Massachusetts, United States Falconwood Full time

    Falconwood is a woman-owned and veteran-owned company providing consultation and programmatic support to Department of Defense (DoD) Information Technology (IT) initiatives and programs.We provide expert advice and consultation on a diverse range of IT subjects, focusing on acquisition, cybersecurity, engineering, logistics, and process development.Job...


  • Boston, Massachusetts, United States ITmPowered, LLC Full time

    About the Role:The Sr. IT Auditor Consultant will serve on behalf of the Technology Risk Management organization performing IT Controls Assessments for a set of 20 custom IT controls in this Hospital Medical Device Cybersecurity Program.Plan and perform full lifecycle audits (scope, plan, fieldwork, reporting) assessing Audit IT Controls Design prior to...


  • Boston, Massachusetts, United States Charles River Associates Full time

    About Charles River AssociatesCRA is a leading global consulting firm that provides independent economic and financial analysis behind litigation matters, guides businesses through critical strategy and operational issues to become more profitable, and advises governments on the economic impact of policies and regulations.Our two main services - economic and...


  • Boston, United States Servier Group Full time

    Servier in the U.S. is a Boston-based, commercial-stage biopharmaceutical company launched by Servier Group in 2018. As a privately held organization, Servier is uniquely positioned to advance cutting-edge science, tackle underserved therapeutic areas, and make patients the focus of every strategic decision.Role SummaryAt Servier Pharmaceuticals, we believe...


  • Boston, United States Liberty Mutual Insurance Full time

    Pay Philosophy The typical starting salary range for this role is determined by a number of factors including skills, experience, education, certifications and location. The full salary range for this role reflects the competitive labor market value for all employees in these positions across the national market and provides an opportunity to...


  • boston, United States Fidelity TalentSource LLC Full time

    Cybersecurity Consultant (Internal Audit Facilitator) Fidelity TalentSource is your destination for discovering your next temporary role at Fidelity Investments! We are currently sourcing for a Sr. Cybersecurity Consultant (Regulatory & Audit) to work in Fidelity’s Enterprise Cybersecurity division in Boston, MA! The Team The Enterprise Cybersecurity...

  • Senior Consultant

    4 days ago


    Boston, United States Secure Code Warrior Full time

    Employer Industry: CybersecurityWhy consider this job opportunity:Opportunity for career advancement and growth within the organizationEngage with a rapidly scaling team focused on secure coding programsCollaborate with domain experts to enhance your technical knowledgeContribute to the development of internal assets and playbooksChance to make a significant...


  • Boston, Massachusetts, United States SeaHill Consulting Group Full time

    Job Summary:SeaHill Consulting Group is seeking a highly skilled Cybersecurity Engineer - Firewall Specialist to join our team. The ideal candidate will have experience in supporting CISCO ASA/Firewall and Fortinet Firewalls as an engineer, with a strong focus on determining tactics, techniques, and procedures (TTPs) for firewalls. The successful candidate...

  • Client Manager

    1 month ago


    Boston, United States Optiv Full time

    As a Client Manager (CM) you'll be responsible for selling Optiv security services and security technology solutions to a select few strategic accounts (typically less than 20) in-person within the greater Boston to Buffalo geographic territory. You'll also be responsible for owning and coordinating all aspects of the sales cycle within your assigned...


  • Boston, United States StoneTurn Full time

    If you seek a fast-paced, people-first firm with a collaborative culture, StoneTurn may be the right place for you. StoneTurn, a global professional services firm, works with law firms, corporations, and government agencies in solving the most complex and consequential business issues. StoneTurnhas earned the trust of clients and regulators worldwide by...


  • Boston, United States Saviance Full time

    Job Title: FedRamp Consultant- AWS Cloud Location: fully remote- Boston, MA Duration: 6 with possibility for extension Position Overview: We are seeking a dedicated and knowledgeable FedRAMP Consultant to join our team. In this critical role, you will be responsible for guiding and overseeing the process of achieving and maintaining compliance with the...

  • Senior Director, PR

    2 weeks ago


    Boston, United States LEWIS Full time

    TEAM LEWIS is looking for a dynamic B2B communications expert to help lead and grow a roster of established clients in the tech space. As a senior client lead, the Senior Director (Managing Director) will provide added-value strategic and creative consultancy with a specific focus on fostering client relationships and growing business, particularly in the...

  • Client Manager

    4 weeks ago


    Boston, United States Optiv Full time

    As a Client Manager (CM) you'll be responsible for selling Optiv security services and security technology solutions to a select few strategic accounts (typically less than 20) in-person within the greater Boston to Buffalo geographic territory. You'll also be responsible for owning and coordinating all aspects of the sales cycle within your assigned...


  • Boston, Massachusetts, United States CrossCountry Consulting Full time

    Job SummaryCrossCountry Consulting is a trusted business advisory firm, specializing in Accounting Advisory, Business Transformation, Risk & Compliance, Cybersecurity, and Technology Solutions.We are seeking a highly experienced Senior Risk Management Consultant to join our team. As a key member of our Risk Advisory practice, you will play a pivotal role in...


  • Boston, United States NASCO Full time

    Overview As Cybersecurity Engineer II you will provide engineering support and will consult/troubleshoot security related matters for enterprise products, information systems and network architectures. This role promotes compliance with security policies and procedures, recommends secure best practices during architecture, designs and implements phases of...


  • Boston, Massachusetts, United States Trellix Full time

    About the RoleThe Senior Customer Success Manager is a key position at Trellix, responsible for driving customer loyalty, adoption, and implementation of our cybersecurity solutions. This role requires a dynamic and customer-centric individual who can consult with large customer accounts, articulate the value of our solutions and services, and promote...


  • Boston, Massachusetts, United States MAXIMUS Full time

    Job SummaryThe Compliance Management Analyst will support OS in various aspects, including OS Security Compliance, collaboration with OS Staff Divisions, coalition building, and awareness programs promoting OS Cybersecurity initiatives.This support aims to enhance security posture and ensure overall compliance.Key ResponsibilitiesAssist in the development,...