Senior Cybersecurity Consultant
KDDI America, Inc. · New York, NY · 1 wk ago
On-siteInformation Technology$90k–$140k/yrFull-time
Key Responsibilities
- Lead multi-quarter advisory engagements for assigned strategic accounts.
- Develop cybersecurity strategy, governance frameworks, and 3-year program roadmaps tailored to customer business priorities and risk appetite.
- Conduct readiness assessments and gap analyses against major frameworks including NIST CSF 2.0, CRI Profile v2.1, NYDFS Part 500, HIPAA, CMMC, ISO 27001, and SOC 2.
- Translate regulatory obligations into actionable remediation plans.
- Serve as fractional CISO for customers without a dedicated security executive — represent the security function in board meetings, partner with executives on risk decisions, and lead annual program reviews.
- Define target-state security architectures spanning identity, network, endpoint, cloud, and data layers.
- Align architecture decisions with customer's IT modernization roadmap and KDDI America's MXDR / SASE / managed services portfolio.
- Provide post-incident advisory — root-cause analysis facilitation, executive communications, regulatory notification guidance, and program improvement recommendations.
- Partner with technical responders without owning operational response.
- Build trusted, multi-year relationships with senior customer stakeholders.
- Serve as the senior point of contact for strategic accounts, coordinating with KAM Pre-sales, Delivery, and Customer Success teams to ensure aligned execution.
- Contribute to the development of KAM's advisory methodology, intellectual property, and service offerings.
- Mentor junior consultants and pre-sales engineers on consulting practices and customer engagement skills.
- Bridge KDDI America and KDDI Japan (KJP / LAC) operations, leveraging the global KDDI Group's resources, threat intelligence, and customer relationships to deliver differentiated value to US-based clients.
Required Qualifications
- Minimum 10 years of professional experience in cybersecurity, information risk management, or related advisory roles.
- At least 5 years in a senior consulting, advisory, or vCISO capacity — preferably with a Big 4 firm, a boutique cybersecurity consultancy, or an enterprise security leadership role.
- Demonstrated experience leading multi-quarter advisory engagements with executive-level stakeholders (CIO, CISO, Board, Audit Committee).
- Working knowledge of major cybersecurity frameworks — NIST CSF, ISO 27001/27002, CRI Profile, NYDFS Part 500, HIPAA Security Rule, CMMC, and CIS Controls.
- Strong technical fluency across modern security architecture — identity (IAM, SSO, MFA), network (SASE, ZTNA, firewall), endpoint (EDR, MDM), cloud (AWS, Azure, M365), and data security (DLP, DSPM, SSPM).
- Business-level proficiency in Japanese (reading, writing, speaking) — required for direct engagement with Japanese parent-company executives and KDDI Group teams in Japan.
- Strong written and verbal communication skills at the executive level — including the ability to translate technical findings into business-language recommendations.
- Bachelor's degree in Computer Science, Information Systems, Engineering, Business, or a related field. Master's degree or MBA preferred.
- At least one senior-level professional certification — CISSP, CISM, CISA, CRISC, or equivalent.
Pay
Compensation Range: $90,000 - $140,000 (depending on experience)