# Consultant, Cybersecurity consultant

**Company:** [RSA](https://hotfix.jobs/companies/rsa)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $140k – $160k/yr
**Experience:** 6+ years
**Skills:** Incident Response, SIEM, soar, xdr, edr, waf, ngfw, Zero Trust, MFA, SAML, OAuth, OIDC, AWS, Azure, Kubernetes
**Posted:** 2026-07-22

> Senior Advisor on the Security & Risk team responsible for incident response, operating and tuning detection tooling, applying Zero Trust and identity controls, and enabling secure product development in cloud and on-prem environments. Requires 6+ years cybersecurity operations experience, strong IAM/Zero Trust knowledge, and cloud security hands-on expertise.

## Job Description

## Principal Responsibilities
- Serve as second level Incident Response interacting with our third party SOC and be a security SME on a shared on-call rotation.
- Operate and tune core detection and response tooling — such as SIEM, SOAR, XDR/EDR, WAF, and NGFW — to sharpen signal and cut noise.
- Apply identity-centric and Zero Trust controls — access, MFA, and least privilege — alongside the IT platform and product teams.
- Support security as an enabler in the product and R&D lifecycle, advising engineering on secure-by-design patterns.
- Be an advocate and enabler for maturing the security controls around data, AI services and our products.
- Maintain clear documentation, runbooks, develop metrics, and present findings to both technical and non-technical audiences.
- Deep-dive into security systems as needed to investigate issues, and automate recurring tasks through scripting or AI Agents as appropriate.
- Act as the bridge between technical and non-technical contributors.
- Act as a senior member of the team, mentoring team members, able to act independently with some management guidance – regularly interacting with other technical and non-technical teams across the business.

## Essential Requirements
- 6-10 years of related cybersecurity operations experience with a Bachelor’s degree; or 4 or more years with a Master’s degree.
- Hands-on production operation of security technologies in public cloud (Azure and/or AWS) and on-premises environments — including vulnerability scanning and management, SIEM/logging, WAF, network segmentation and security groups, system hardening/STIG, malware prevention, and incident response.
- Firm grasp of identity and access management and Zero Trust principles — authentication and authorization standards (MFA, SAML, OAuth, OIDC), directory services, and least-privilege access — reflecting identity’s role as the modern control point.
- Strong knowledge of networking concepts and of both Linux and Windows host operating systems.
- Critical-thinking drive — asking what could be, how it could be done better, and pursuing continuous improvement and efficiency through automation — paired with a collaborative work style.
- Strong written, spoken, and presentation skills, with the ability to communicate security decisions clearly and to translate between technical and non-technical audiences.
- US Citizen / US Soil.

## Desirable Outcomes
- Experience securing customer-facing SaaS environments and familiarity with FedRAMP, SOC 2, NIST, or CSA compliance frameworks; prior work with a federal, FedRAMP, or otherwise regulated environment is highly desirable.
- Experience securing product and R&D or DevSecOps environments — container and Kubernetes security, infrastructure-as-code scanning, and secrets management.
- Familiarity with securing AI/ML workloads and AI-enabled tooling, and an awareness of emerging AI-driven threats and defensive use cases.
- Demonstrated group, team, or thought leadership within cloud or security operations initiatives.
- Experience threat hunting or red-teaming within a complex enterprise environment.
- Industry-standard cybersecurity certifications; a cloud or identity-specific credential is a plus.

## Compensation
Pay Range $140,000 - $160,000. Full-time, non-Sales US employees are also eligible for annual discretionary bonuses that are funded based on prior year company performance. RSA offers its eligible US employees a comprehensive array of benefit programs including flexible paid-time-off, health, disability, and life insurance, and a 401(k) retirement plan with company matching contributions.

## Similar roles

- [Senior Security Engineer](https://hotfix.jobs/jobs/bf99bce1-bf10-4938-81d3-d24f8455171f) - Pindrop - Remote - $140k – $165k/yr
- [Distributed Systems Cluster Security Software – Engineering Lead](https://hotfix.jobs/jobs/25221b6a-cb4e-4e69-86e3-a5d05f1d674c) - Cerebras Systems - Sunnyvale, CA - $140k – $240k/yr
- [Senior Software Security Engineer](https://hotfix.jobs/jobs/bd83bbb8-d7c1-42bd-811f-3cdd8a53d7ca) - GitLab - Remote - $139k – $196k/yr
- [Senior Security Engineer, Incident Response](https://hotfix.jobs/jobs/c68462e8-6fd9-48ef-99a9-0516fb5468d8) - Twilio - Remote - $142k – $208k/yr
- [Senior Software Engineer, Security](https://hotfix.jobs/jobs/2808ff1a-3f60-4180-8968-06a0d53adbd4) - Teleport - Remote - $138k – $342k/yr

**Apply:** https://hotfix.jobs/jobs/448d88ab-d5fd-4f33-9f89-0c6c8804e0e7
**Canonical:** https://hotfix.jobs/jobs/448d88ab-d5fd-4f33-9f89-0c6c8804e0e7