D

Sr. Cybersecurity & Compliance Engineer/Ciso

Do you speak IT? Let's talk.
On-site
Woburn, Massachusetts, United States

Sr. Cybersecurity & Compliance Engineer/CISO

(Advisory Services Client Facing)
Location: Hybrid � Based on Client Needs

About iCorps Technologies

iCorps Technologies is a premier IT consulting, managed services, and cloud computing firm that delivers strategic leadership, innovative services, and hands-on expertise to mid-sized and enterprise clients across industries. We�re committed to transforming our clients� businesses with tailored technology solutions, and we�re proud of the trusted partnerships we�ve built. We don�t just hire the best, we empower them to do their best work.

Job Summary

This hybrid role involves executive advising, risk and security assessments, policy development, vendor risk management, and implementation of cybersecurity best practices. The CISO is a trusted advisor across industries, guiding clients through proactive security strategies, evolving regulatory landscapes, and emerging technologies such as AI.

The ideal candidate has served as an advisor, CISO, or vCISO for at least five years, holds relevant security and privacy certifications (e.g., CISSP, IAPP), and has a functional understanding of AI-related risk and compliance obligations in today�s evolving threat landscape.

Key Responsibilities

  • As a Cybersecurity Advisor, helps support and inform
  • As CISO, leads, owns, and executes the cybersecurity function
  • Lead and execute risk assessments, framework alignment, and security maturity evaluations.
  • Guide clients in defining and maturing GRC programs in accordance with applicable regulatory and/or adopted frameworks.
  • Develop and maintain security programs, policies, and procedures aligned to client business models, compliance needs, standards and best practice.
  • Promote cybersecurity hygiene across identity management, patching, configuration management, and user awareness.
  • Conduct vendor and third-party due diligence, including but not limited to assessments of cloud service providers and supply chain risk.
  • Understand and advise on the implications of emergiing technologies such as AI adoption across security, compliance, and operational risk.
  • Guide clients through framework alignment, including:
  • NIST CSF
  • ISO 27001
  • CIS Controls
  • HIPAA, CMMC, PCI-DSS, SOC 2
  • Provide functional technical support for vulnerability scanning, threat assessments, and risk mitigation using tools such as:
  • Nessus, OWASP ZAP, Burp Suite, Qualys, Rapid7
  • Collaborate with client and internal teams on:
  • Incident response planning
  • Cloud security architecture (Azure, AWS, Google)
  • Security tooling (Microsoft Defender, Sentinel, CASB, EDR/MDR)
  • Lead Incident Response on behalf of our clients
  • Assist with security pre-sales activities, solution design, and proposal development.

Required Qualifications

  • Minimum of 5 years in a CISO or vCISO role, advising mid-market to enterprise clients.
  • Strong technical foundation in:
  • Vulnerability management
  • Identity & access control (IAM)
  • Cloud security (Azure, AWS, GCP)
  • Endpoint protection, SIEM, and data loss prevention
  • Proven experience aligning organizations with cybersecurity and compliance frameworks.
  • Deep knowledge of cybersecurity hygiene best practices and their implementation across a hybrid IT landscape.
  • Understanding of AI-related risks, including compliance and governance implications of emerging technologies.
  • Strong communication and executive presentation skills, including writing board-level reports and delivering briefings to C-suites.

Required Certifications (at least one from each area):

Security Certifications:

  • CISSP, CCSP, CISM, CISA

Cloud Security (one or more):

  • Microsoft Security Architect
  • AWS Security Specialty
  • Google Professional Cloud Security Engineer

Privacy Certifications (one or more):

  • IAPP CIPP/US, CIPP/E, CIPM, or CIPT

Preferred Qualifications

  • Experience with regulated industries (e.g., healthcare, financial services, defense).
  • Familiarity with data privacy regulations (e.g., GDPR, CCPA, HIPAA).
  • Background in MSP/MSSP or cybersecurity consulting environments.
  • Familiarity with AI governance standards, model validation frameworks, or AI risk registers is a plus.

Why Join iCorps?

At iCorps, you�ll do more than advise � you�ll shape the future of cybersecurity for businesses navigating an increasingly complex digital world. You�ll have the opportunity to lead with vision, execute with precision, and make an impact that matters.

To Apply:
Visit www.icorps.com to learn more.

iCorps Technologies is an Equal Opportunity Employer
We are committed to creating a workplace that values diversity, equity, and inclusion in everything we do.