Security Consultant
Trustwave
(Chicago, Illinois)Trustwave helps businesses fight cybercrime, protect data and reduce security risk. With cloud and managed security services, integrated technologies and a team of security experts, ethical hackers and researchers, Trustwave enables businesses to transform the way they manage their information security and compliance programs.
Trustwave helps businesses fight cybercrime, protect data and reduce security risk. With cloud and managed security services, integrated technologies and a team of security experts, ethical hackers and researchers, Trustwave enables businesses to transform the way they manage their information security and compliance programs. Trustwave delivers automated, efficient and cost-effective threat, vulnerability and compliance management. Trustwave is a privately held company, headquartered in Chicago, with customers in 96 countries.
- Customer engagement and project execution providing information security consultation and assessment services, helping our clients meet their compliance obligations by evaluating their business, technology and operations against security standards like the PCI DSS or HIPAA.
- Sharing your expertise with clients and colleagues to aid in making decisions on topics like strategy and scope as well as deep and highly technical projects like web application architecture and security.
- Providing clear, organized findings and recommendations to clients and tracking progress towards resolution and compliance.
- Producing detailed, high-quality reports for clients and industry third parties like payment card brands and the PCI Security Standards Council.
- Learning from our close-knit group as well as contributing your thoughts, tools, industry news or lessons learned.
- Working with clients to implement practices to produce secure applications and identify and eliminate security vulnerabilities
- Working independently, undertaking information security engagements including working co-ordination and project management (client interaction, deliverables, work plans, escalation's, etc.)
- Growing the business by identify up-sells with existing and potential clients
- Providing regular status reports on all projects assigned
- Being a team player and having the capability to expand/adapt your skills in fast-paced ever-changing industry.
Skills and Qualifications
- Must have previous professional experience providing consultative services as either an internal SME or as a third-party consultant.
- Strong professional expertise in information security, must have the ability to thoroughly understand complex principles and apply them practically.
- Comfortably present security concepts or findings to both highly technical and entirely non-technical audiences.
- Strongly prefer candidates with payment card (PCI DSS, PA-DSS, P2PE, PFI), federal (FedRAMP, FISMA, DISA CCRI), industry security frame works/standards/models (NIST, ISO), financial (GLBA, SOX, SSAE 16), health care (HIPAA/HITECH) experience.
- Interested in learning more about forensic analysis or incident response, we have great teachers in our world-class SpiderLabs colleagues.
- Must be willing to participate in relevant professional organizations like OWASP, InfraGard, and ISACA.
- Willingness and desire to travel – moderate to heavy regional travel is required, opportunities for international travel are available.
- Trustwave will provide time and training for you to take and maintain industry relevant certifications, we will also provide you success bonuses when you receive said certification.
- Must possess a relevent professional certification such as: CISSP, CISA, CISM or Lead Auditor
Education:
We prefer college-educated applicants, but at minimum, high school diploma or equivalent is required for employment.
Questions
There are no answered questions, sign up or login to ask a question
- Compliance
- Knowledge of Health Insurance Portability and Accountability Act
- Knowledge of Payment Card Industry Data Security Standard
- Health Information Technology for Economic and Clinical Health (HITECH) Act
- Gramm Leach Bliley Act (GLBA)
- Statement on Standards for Attestation Engagements 16
- International Organization for Standardization (ISO)
- Point to Point Encryption (P2PE)
- Federal Information Security Management Act (FISMA)
- Payment Application Data Security Standard (PA-DSS)
- Private Finance Initiative (PFI)
- Project Management
- Information Security
- SOX
- Customer Engagement
- Certified Information Security Manager (CISM)
- Incident Response
- Certified Information Systems Auditor (CISA)
- CISSP
- Cybercrime
- NIST
- FedRamp
- DISA

Want to see jobs that are matched to you?
DreamHire recommends you jobs that fit your
skills, experiences, career goals, and more.