Manager-Cyber Security
Quick Summary
From the beginning,
From the beginning, our goal was to establish an advisory firm that stands apart from the rest – one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our success. With advisory solutions spanning accounting and risk, technology-enabled transformation, and transactions, we partner with our clients to solve today’s challenges and deliver present and future value.
Our commitment to our people has earned us numerous awards including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work. Explore what our employees have to say about our unique culture by clicking here.
We are seeking a technically strong Cybersecurity Manager to join our high-performing Cybersecurity & Privacy practice. This is a hands-on role requiring deep expertise across cloud security architecture, security engineering, risk and compliance frameworks, and threat modeling. The ideal candidate brings a strong technical foundation and the ability to design, implement, and assess security solutions across complex client environments. The position is hybrid (60% on-site/client, 40% remote) with local travel throughout Los Angeles and Orange County.
- Cybersecurity risk and maturity assessments using ISO 27001, NIST CSF 2.0, CIS 18, PCI-DSS, NIST 800-53, Cloud Security Alliance, and MITRE ATT&CK
- Security tool gap analysis, consolidation, and implementation across vulnerability management, endpoint security, SIEM, IDS/IPS, and firewall platforms
- Security transformation programs — architecture design, solution implementation, and technical remediation
- Threat modeling, penetration testing advisory, and proactive defense strategy
- Capability uplift across Vulnerability Management, Incident Response, IT Disaster Recovery, Business Continuity, Threat Intelligence, and Security Monitoring
- Privacy program audits supporting CCPA/CPRA and GDPR compliance
- PCI-DSS compliance implementation and advisory
- Apply MITRE ATT&CK and other threat modeling methodologies to map adversary techniques and inform defensive controls
- Review and harden application and system disaster recovery plans; identify technical gaps and develop remediation playbooks
- Assess Incident Response preparedness; design IR playbooks, runbooks, and facilitate technical tabletop exercises
- Design logical and technical cloud security architectures and define functional requirements for secure cloud environments
- Architect and implement security controls for cloud-native technologies including containers (Docker/Kubernetes), infrastructure-as-code (Terraform, CloudFormation), and serverless functions
- Design and enforce API security standards and secure integration patterns across cloud platforms (AWS, Azure, GCP)
- Conduct solution-based gap analysis and engineer controls for asset testing, code scanning (SAST/DAST), and application and infrastructure monitoring
- Serve as a proactive project leader and self-starter, driving engagement timelines, deliverables, and client confidence forward without needing direction
- Manage multiple concurrent workstreams across assessment, implementation, and compliance activities — keeping teams organized, prioritized, and on schedule across all threads
- Anticipate risks, dependencies, and roadblocks before they escalate, bringing well-reasoned solutions to clients and internal stakeholders proactively
- Lead and coordinate cross-functional project teams across Senior Associates and other practice members, delegating effectively to maintain quality, accountability, and momentum throughout the engagement lifecycle
- Own the full arc of engagement success — from initial scoping and project planning through final delivery — taking personal accountability for client satisfaction, output quality, and measurable outcomes
Leadership Skills
- Bachelor's degree required in Information Systems, Computer Science, Mathematics, or a related technical field
- Minimum of 5 years of Big 4 or related consulting/professional services experience with hands-on Cybersecurity engineering and advisory expertise
Nice to Have
~1 min read- CISSP — Certified Information Systems Security Professional
- CCSP — Certified Cloud Security Professional
- AWS Certified Security Specialty, Microsoft SC-100/AZ-500, or equivalent cloud security certification
- CISM, CEH, OSCP, or other relevant security certifications a plus
- Cloud platforms: hands-on experience with AWS, Azure, and/or GCP security services and native security tooling
- Cloud-native security: containers (Docker, Kubernetes), IaC (Terraform, CloudFormation, Bicep), serverless security, and CI/CD pipeline security
- Network security: Firewalls (Palo Alto, Fortinet, Cisco), VPN, IDS/IPS, micro segmentation, and zero-trust architecture
- Endpoint & identity security: EDR/XDR platforms, PAM, IAM, MFA, and SSO solutions
- Vulnerability management: Tenable, Qualys, Rapid7, or equivalent; familiarity with CVSS scoring and patch prioritization
- Application security: SAST/DAST tooling, API security testing, secure SDLC practices, and code scanning platforms
Location & Eligibility
Listing Details
- Posted
- September 9, 2026
- First seen
- September 10, 2026
- Last seen
- September 10, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 70%
- Scored at
- September 10, 2026
Signal breakdown
CrossCountry Consulting is a leading business advisory firm that partners with clients to deliver specialized finance, operations, and technology services.
View company profilePlease let Crosscountry Consulting know you found this job on Jobera.
3 other jobs at Crosscountry Consulting
View all →Explore open roles at Crosscountry Consulting.
Similar Security jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.
