Information Security Consultant
Listed on 2026-01-29
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, Cloud Computing
Posted Monday, January 26, 2026 at 6:00 AM
WHO WE ARE:
Since 1923, NCCI has been committed to fostering a healthy workers compensation system. We are the nation’s trusted source for accurate, objective workers compensation information. At NCCI, we recognize that our employees are the reason our legacy endures today. We’re motivated by the opportunity to do challenging and interesting work, and our Total Rewards package attracts top talent. Our employees care about each other, and the communities in which they live and work.
Our values of integrity, respect, quality and excellence, responsibility, and commitment guide our success.
WHAT WE BELIEVE:
We come from diverse backgrounds, so our commitment to inclusion is what brings us together to work as one.
- We respect each other and value our differences.
- We can be authentic and feel like we belong.
- We promote equity in our organization and our community.
TEAM: INFORMATION TECHNOLOGY
PAY TYPE:
SALARY
JOB OVERVIEW:
At NCCI, we’re looking for an Information Security Consultant to join our team in leading the design, implementation, and integration of advanced security operations solutions, including but not limited to Identity and Access Management, Threat Management (Vulnerability Management, SIEM, and Incident Response), Cloud Security across major platforms (OCI, Azure, and AWS), and Network Security. In this role, you’ll also provide technical security guidance to the Software Engineering and Infrastructure and support the Information Security Engineer and Architects in strategic planning, new tool selection, and process improvements.
WORK LOCATION:
This position will work in a flexible-hybrid environment. The selected candidate must live locally within a commutable distance to our Boca Raton, FL headquarters.
NOTE: NCCI will not sponsor applicants for work visas.
WHAT YOU’LL DO:
- Partner with various IT teams to create and maintain applicable security standards primarily for cloud environments such as Azure, AWS, and OCI; and participate in other security disciplines such as IAM, vulnerability management, and IT systems (Networks, Windows, Linux, Database, Endpoint) Security
- Maintain and implement incident handling plans as they relate to cloud incident response; participate in incident response activities and plan, coordinate, and perform security testing exercises such as pen testing and tabletop exercises, including cloud-based scenarios
- Develop strategies to improve efficiencies using automation and orchestration solutions (ie: infrastructure-as-code and cloud security automation) to reduce manual work that can be done programmatically
- Lead the creation and maintenance of documentation related to NCCI’s security framework, program, and standards where applicable to role, including cloud security architecture and control mappings
WHAT IT TAKES:
- Bachelor’s Degree
- 6+ years experience in an intermediate-level Information Security role with proven expertise in multiple aspects of security and IT operations, including securing cloud or hybrid environments
- In lieu of the degree, additional work experience and/or trade school or applicable certifications would be acceptable
- Certification in at least one of the following: CISSP, SANS GIAC, CEH, or vendor specific certifications related to security disciplines such as cloud (ie: AWS, Azure, or OCI security certifications)
- Advanced knowledge of:
- Information Security concepts, principles, and practices
- Cloud security across multiple disciplines including IAM, Workload Security, and Cloud Security Posture overall
- Security aspects for multiple operating systems, networking technologies, encryption technologies, and applications
- Network security technologies, such as Firewalls, VPN, IDS/IPS, etc.
- Identity and Access Management, including Role Design, Campaign Design, Source System Integration, and cloud IAM services
- Continuous monitoring principles, including threat management, SIEM, File and Database Activity Monitoring, and Incident Response in both on-prem and cloud environments
- Multiple security domains inclusive of security management, access control systems and methodology, network security, cryptography,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).