This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
This client-facing role requires the Principal Consultant to lead and produce deliverables for cyber risk management (CRM) engagements. You will work directly with multiple customers and key stakeholders, from administrators to the C-suite, to define and drive security priorities for their security operations center (SOC) and broader information security teams, acting as a trusted advisor to help them achieve and maintain a strong cybersecurity posture.
Job Responsibility:
Lead comprehensive security audits of client security operations programs, including organization, processes, and technology
Analyze security monitoring and alerting to perform a gap analysis on asset visibility, log coverage, and detection effectiveness
Conduct cyber risk assessments using industry frameworks such as MITRE ATT&CK, NIST CSF, and ISO 27001/2
Utilize command-line and graphical interfaces of security tools to perform technical validation of security controls
Assess client security architecture and the implementation and integration of security monitoring and protection tools
Advise on and develop strategic roadmaps with actionable recommendations for clients to mature their SOC capabilities
Collaborate with prospective clients to scope new opportunities, including the creation of proposals and statements of work
Requirements:
Bachelor's degree in a relevant field, or equivalent military experience, or a Master's degree with 6 years of experience, or a PhD with 3 years of experience
8+ years of experience in information security, with at least 3 years in a consulting capacity focused on SOC, security engineering, or incident management for large organizations
Deep technical knowledge of SIEM platforms, EDR/XDR tools, Next-Gen Firewalls, and Vulnerability Management solutions
Experience serving as a security advisor and managing relationships with client stakeholders
Ability to travel as needed to meet business demands, averaging approximately 30%
Nice to have:
Hands-on experience with SIEM engineering, management, or advanced security analytics
Knowledge of or certification in the MITRE ATT&CK framework
Experience with command-line interfaces or scripting tools (e.g., Python, PowerShell) for security tasks
Proven track record of strengthening client relationships and developing new business opportunities