1,011,843open jobs
60,160companies
168,355added this week
Browse all
Salary
≈ $76k – $165k per year (Estimated)
Location
Remote (likely United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 1, 2026. First seen by Alion on Aug 9, 2024. Bright Defense scores B on the Alion truth index.

Overview
Company
Impact
Profile match
We provide managed SOC 2, ISO 27001, HIPAA, and CMMC compliance services for small and mid-size businesses through CISSP certified experts.

Bright Defense · SecOps Team · Now Hiring

Security Consultant

SecOps - GRC, Risk & Compliance Advisory - Mid-Level

Full-TimeRemoteSecOps5+ Years Experience

We’re looking for a mid-level Security Consultant to join our SecOps Team - someone who can work with clients at every level of an organization and translate complex frameworks into actionable, business-relevant steps. You’ll sit at the center of our delivery model, coordinating with Internal Auditors, ISMs, and Offensive Security to drive real outcomes for clients. If you’re humble, hungry, and smart, this role was built for you.

About Bright Defense

Bright Defense is dedicated to delivering top-tier Security, Risk, and Compliance consulting services. Our commitment to excellence, participation, integrity, and collaboration sets us apart in the industry. We strive to create a dynamic and inclusive environment where innovation and teamwork drive success.

Who we look for

Humble

Self-aware, genuine, and always willing to learn from others

Hungry

Goes above and beyond for clients and colleagues; passionate about learning and technology

Smart

Connects people, data, trends, and experiences; navigates diverse audiences with ease

What we do

Our SecOps Security Consultants work with clients at all organizational levels - from the C-suite to the shop floor - helping them achieve their most strategic security initiatives. You’ll serve as the strategic lead on client engagements, guiding Internal Auditors, Information Security Managers, and other SecOps colleagues as you deliver realistic, data-driven decisions that break complex programs into actionable steps.

Key responsibilities

Program & compliance delivery

  • Lead Cybersecurity, Information Security, Risk, Compliance, and Data Privacy programs for a portfolio of SecOps clients
  • Compliance and regulatory framework mapping and implementation
  • Advisory-side risk and regulatory remediation management
  • Readiness planning for new laws and regulations
  • Audit or certification readiness - coordinating Internal Auditors and ISMs toward external audit success
  • Change management related to regulatory adoption or compliance changes

Controls & strategy

  • Create roadmaps to mature Risk, Compliance, and Information Security strategies, programs, and controls
  • Design and enable cyber controls functions and processes
  • Design or mature controls across Software Development, IAM, Business Continuity, and Cloud environments
  • Risk, Compliance, and Information Security risk reporting and monitoring

GRC & audit

  • Assist with GRC-related tasks, projects, and tooling across the SecOps client portfolio
  • Apply industry-specific regulations and standards - SOC 2, ISO 27001, CMMC/NIST 800-171, NIST 800-53, CCPA/CPRA, HIPAA, PCI DSS
  • Oversee internal audit activities and coordinate clients through external audits
  • Align audit activities with the overall security strategy for each engagement

SecOps team leadership

  • Serve as the strategic lead for your assigned client POD - guiding ISMs, Internal Auditors, and SecOps colleagues
  • Coordinate with Offensive Security on findings that affect client compliance posture
  • Contribute to SecOps team objectives through internal syncs, knowledge sharing, and process improvement
  • Continuously develop expertise and grow toward Senior Consultant responsibilities

Cross-functional collaboration

Internal Auditors

Info Security Managers

Offensive Security

Governance

Qualifications

Required

  • Demonstrated business and technology acumen
  • Strong written and verbal communication skills
  • Experience solving real business problems and delivering measurable results
  • Ability to work across industries, roles, functions, and technologies
  • Experience leading or supporting a team in a consulting or client-facing environment
  • Authorization for permanent employment in the United States (not eligible for immigration sponsorship)

Preferred

  • Bachelor’s degree
  • 5+ years of professional experience in cybersecurity, GRC, or compliance
  • Experience across Bright Defense service offerings - SOC 2, HIPAA, CMMC, ISO 27001, PCI DSS
  • Familiarity with GRC platforms such as Drata, Vanta, or Thoropass
  • Experience supporting clients in regulated sectors - defense, healthcare, fintech, or SaaS

Relevant certifications

CC (Certified in Cybersecurity)CISACISMCISSPCEHCCNACompTIA Security+GISFGSECSSCPISACA Cybersecurity Fundamentals

Compensation & perks

  • Competitive base salary - range shared during screening
  • Remote-first with flexible working hours
  • Certification reimbursement across all relevant certs
  • Direct access to Bright Defense co-founders and leadership
  • Exposure to diverse client engagements across defense, healthcare, and fintech
  • Clear growth path toward Senior Consultant and beyond

Bright Defense is an equal opportunity employer. We build diverse, high-trust teams. | brightdefense.com

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,011,843 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
≈ $105k – $215k per year (Estimated) • Remote (Canada) • Full-Time • 5+ years exp
JavaScript
Node JS
Node JS
Commander.js
Cybersecurity
Sophos
Apply
$150k – $200k per year • Remote (United States) • 6+ years exp • Bachelor's Degree
AI/ML
AI Agents
LLM
Tokenization
LLM Guardrails
ISO 42001
Machine Learning
DevOps
Azure
CI/CD
AWS
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
HIPAA
Zero Trust
Least Privilege
Threat Modeling
SIEM
Apply
≈ $104k – $210k per year (Estimated) • Remote (Ukraine) • 5+ years exp • Bachelor's Degree
Python
JavaScript
Java
C#
Node JS
C#
.NET
DevOps
CI/CD
GitOps
Kubernetes
Service Mesh
API Gateway
Cybersecurity
Threat Modeling
Apply
≈ $102k – $206k per year (Estimated) • Remote (Ukraine) • 5+ years exp • Bachelor's Degree
Python
JavaScript
Java
SQL
PowerShell
C#
Node JS
YARA
C#
.NET
DevOps
CI/CD
GitOps
Kubernetes
Cybersecurity
YARA
SIEM
Apply
≈ $102k – $207k per year (Estimated) • Remote (Europe, CEST hours) • 5+ years exp • Bachelor's Degree
Python
JavaScript
Java
C#
Node JS
C#
.NET
DevOps
Azure
CI/CD
GitOps
AWS
Kubernetes
Service Mesh
API Gateway
Cybersecurity
Threat Modeling
Apply
$50k – $59k per year • In office • Full-Time • Bachelor's Degree • Lisbon
Cybersecurity
ISO 27001
NIST CSF
Apply
≈ $35k – $84k per year (Estimated) • In office • Part-Time • High School Diploma • Dubuque
Cybersecurity
HIPAA
Apply
Nurse 1 day ago
≈ $67k – $180k per year (Estimated) • In office • Part-Time • Iowa City
Cybersecurity
HIPAA
Apply
≈ $44k – $90k per year (Estimated) • In office • Part-Time • 1+ year exp • Bachelor's Degree • Peoria
Cybersecurity
HIPAA
Apply
≈ $49k – $100k per year (Estimated) • In office • Part-Time • 1+ year exp • Bachelor's Degree • Bloomington
Cybersecurity
HIPAA
Apply
≈ $75k – $161k per year (Estimated) • Remote (United States) • Full-Time • 3+ years exp
DevOps
GCP
Azure
AWS
SLI/SLO/SLA
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
SOC 2
HIPAA
Management
Asana
Slack
Google Workspace
Apply
Remote (location not specified, PT hours) • Full-Time
Cybersecurity
ISO 27001
NIST CSF
SOC 2
Management
Asana
Google Workspace
Apply
GRC Analyst – SecOps 6 months ago
≈ $58k – $135k per year (Estimated) • Remote (location not specified, PT hours) • Full-Time • 2+ years exp
Cybersecurity
ISO 27001
NIST CSF
SOC 2
Management
Asana
Google Workspace
Apply
≈ $74k – $164k per year (Estimated) • Remote (location not specified) • Full-Time • 5+ years exp
Python
PowerShell
AI/ML
LLM
Red Teaming
LLM Guardrails
Frontend
GraphQL
DevOps
Rest API
GCP
Azure
CI/CD
AWS
Cybersecurity
Burp Suite
Metasploit
Nmap
ISO 27001
OWASP Top 10
PCI DSS
SOC 2
HIPAA
Threat Modeling
MobSF
Frida
Objection
OWASP
Apply
See all jobs
This is one of many
1,011,843 more open roles from verified company boards, updated every day.