Job Closed
This listing is no longer active.
Intelligence-led, precision-fit cybersecurity.
Cybersecurity Advisor II
Location
United States
Posted
3 days ago
Salary
$120K - $160K / year
Seniority
Senior
Job Description
Cybersecurity Advisor II
Apollo Information Systems
• Serve as a trusted advisor to client stakeholders, helping define and advance cybersecurity strategy across multi-month and multi-year engagements. • Develop prioritized, business-aware security roadmaps that mature client posture over time. • Advise on governance, risk, and compliance — aligning programs to frameworks such as NIST CSF 2.0, CIS Controls, ISO 27001, CMMC, HIPAA, or PCI DSS. • Translate technical risk into clear business language for executives and boards. • Own the advisory relationship for assigned clients, driving cadence, measurable progress, and demonstrable risk reduction. • Partner with assessors and engineers to ground recommendations in technical reality and validate remediation. • Guide clients through security program development — policy, process, architecture direction, and tooling strategy. • Support incident readiness, tabletop exercises, and post-incident program improvement as needed. • Contribute to the maturation of Apollo’s advisory methodology, frameworks, and deliverable templates. • Mentor junior team members and share knowledge across the practice. • Stay current with emerging threats, regulatory change, and the evolving security technology landscape.
Job Requirements
- Cybersecurity experience, including client-facing advisory, consulting, or security leadership
- Demonstrated ability to develop and communicate cybersecurity strategy and roadmaps to executive audiences.
- Deep working knowledge of one or more major frameworks (NIST CSF, CIS Controls, ISO 27001, CMMC) and how to operationalize them.
- Strong understanding of security architecture, controls, and risk across on-premises and cloud environments.
- Exceptional written and verbal communication; able to lead executive and board-level conversations.
- Experience managing long-term client relationships and multiple concurrent engagements.
- Preferred: Senior certifications such as CISSP, CISM, CCSP, or CISA.
- Prior vCISO, security manager, or security architect experience.
- Experience in regulated industries or the public sector.
- Familiarity with cloud security across Azure, AWS, GCP, and M365.
Benefits
- Comprehensive medical, dental, and vision coverage, the company covers 100% of employee premiums and 90% of dependent premiums on base plans
- Unlimited PTO, 7 paid sick days, and 11 paid holidays
- 401(k) with 4% company match after 90 days, immediately vested
- Company‑paid life insurance at 1x annual salary
- Company‑paid Short‑Term Disability (STD) and Long‑Term Disability (LTD) coverage
- $125 monthly home‑office tech stipend for internet, equipment, and other technology needs
- Amazing colleagues, a collaborative environment, and a supportive, growth‑focused culture
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Be the link between Information Security (IS) and the business. • Serve as the dedicated and ongoing Information Security point of contact for Product and Engineering squads. • Actively participate in team ceremonies, planning sessions and product reviews — not as an occasional guest, but as a relevant member of the conversation. • Translate security requirements into language and context that make sense for development teams, product managers (PMs) and product leaders. • Identify, assess, and communicate security risks clearly to non-technical stakeholders. • Build and track risk treatment plans with the areas, prioritizing based on real business impact. • Ensure Product and Engineering teams understand the risks they are assuming with each decision — and that those choices are made consciously. • Act as a facilitator between squads and the IAM team for access provisioning and reviews — removing friction while maintaining necessary controls. • Support teams in incorporating security practices throughout the development lifecycle (security by design, threat modeling, architecture reviews). • Act as a guide on compliance and Information Security policies, with a pragmatic view of the real needs of those building the products. • Foster a security culture that is perceived as an enabler, not an obstacle. • Promote continuous, contextualized security awareness for Product and Engineering teams. • Identify recurring risk patterns and propose systemic improvements, not just ad-hoc fixes.
Security & Compliance Engineer
Grant Street GroupGrant Street Group specializes in cloud-based government solutions for tax collection, e-payments, and auctions.
• Support the day-to-day security posture of systems and services across cloud and on-prem environments. • Review vulnerability findings from scanners, penetration tests, and other assessments, and help drive remediation to closure. • Partner with infrastructure, platform, and engineering teams on secure configuration, access control, logging, monitoring, and incident readiness. • Support compliance and assessment activities related to GovRAMP/FedRAMP, PCI DSS, internal reviews, and third-party examinations. • Use AWS security tooling effectively, support day-to-day security processes, and help translate security and compliance requirements into practical, durable operational outcomes. • Maintain documentation, procedures, and other operational artifacts so they stay aligned with the environment and current control expectations.
Security and Compliance Consultant
Planet TechnologiesFor 24 years, we have built our reputation on establishing trust. Trust with our clients and among our team.
• Serve as a primary technical lead on client engagements involving Microsoft security, compliance, and data protection solutions • Design and implement data security, governance, and compliance strategies aligned with Microsoft 365 and Azure capabilities • Advise clients on secure adoption of Microsoft Copilot, including data exposure risks, governance controls, and compliance considerations • Architect and deploy solutions leveraging tools such as: Microsoft Purview, Microsoft Defender suite and Microsoft Sentinel • Translate regulatory and compliance requirements into actionable technical solutions (e.g., ISO frameworks, government regulations, internal controls) • Conduct data discovery, classification, and protection strategy design • Collaborate with project managers and stakeholders to deliver high-quality outcomes • Contribute to pre-sales efforts, including solution design, scoping, and level-of-effort estimates • Create technical documentation, implementation guides, and client training materials • Act as a subject matter expert (SME) and mentor to other engineers • Develop and refine repeatable offerings around data security, compliance, and Copilot readiness • Stay current on evolving Microsoft security, compliance, and AI governance capabilities
• Define, analyze, and review secure software architectures for centralized automotive computing platforms • Perform threat modeling and security architecture analysis for mixed-criticality, multi-tenant automotive software systems • Partner with safety architects to reason about the interaction between security controls, safety mechanisms, failure modes, and recovery behavior • Define OS security policy, access control, isolation, and privilege models across Android, Linux, QNX, and virtualized environments • Build security systems that maintain integrity and availability for safety-critical vehicle software • Analyze security trade-offs involving performance, latency, memory footprint, boot time, diagnosability, and functional safety requirements • Guide engineering teams on secure build, secure coding, threat mitigation, and security review practices • Collaborate across software, hardware, safety, security, and systems teams to meet NVIDIA and automotive industry standards




