Consultant - SOC, PCI Assessment
Chicago, Cook County, Illinois, 60290, USA
Listed on 2026-05-10
-
IT/Tech
Cybersecurity, IT Consultant, Information Security
Coalfire Systems
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
Consultant - SOC2, PCI Assessment About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position SummaryAt Coalfire as a Consultant you will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. You will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. You will also get to work closely with Project Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
This is a great opportunity as a Security Consultant to make an impact and enhance clients security posture and business processes affecting information security and data privacy through technical evaluation of governance programs. You will regularly interact with peers and clients as both an auditor and assessor, depending on the engagement. As a Consultant you will evaluate the design and operating effectiveness of controls supporting management systems and will help to identify improvement opportunities.
You will test technical controls, policies and procedures, laws, regulations, and industry best practices.
In this role, as a Consultant you facilitate Security Control Assessments and other advanced-level monitoring activities, often within cloud-based environments. To succeed, you will need a strong understanding of technical and non-technical security related system controls and an understanding of the various testing methods utilized to ascertain the effectiveness of those controls. Our consultants works in a team atmosphere with an experienced Technical Project Lead, and is assigned technical sections and expected to create client-ready deliverables.
A Security Consultant on the SOC/PCI team helps to enhance clients’ security posture and ensure that business and customer data is properly protected. This role will evaluate the design and effectiveness of technology controls throughout the business cycle and will help identify performance improvement opportunities.
This position is a remote position that must be located in the United Kingdom (England, Scotland, Wales, and/or Northern Ireland). Coalfire has an office in Manchester, UK so there is opportunity to work in the office in a hybrid capacity if preferred.
What You’ll Do- Work collaboratively with a team of assessors as a compliance specialist in at least one area of expertise and assist with the planning of assessment for clients
- Draft audit programs that sufficiently address both the required objectives of the regulatory body and the complexity of the client environment
- Autonomously lead interview and inquiry walkthroughs with clients to determine the conformity of environments against stated requirements
- Assess security vulnerabilities against the appropriate security frameworks
- First-level reviewer of drafted audit planning and reporting materials
- Pursue and corroborate conclusions derived from inquiry procedures with client while ensuring diligent interview notes are captured
- Offline and remote evidence inspection of client provided documentation; appropriately mark artifacts requiring follow-up or additional clarification
- Assess client provided documentation for compliance with a variety of standards
- Partner with senior members to prepare and review assessment reports.
- Educ…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).