For Employers
Apply Now

Please mention DailyRemote when applying

?
Resume Match Score

See how much of this job your resume covers, and what’s missing.

Want a recruiter to go through it line by line?

Get professional review

Create a cover letter for this job

Upload your resume and we draft a letter for this exact role, tailored to what it asks for.

  • Tailored to this role
  • Based on your resume
  • Fully editable
AI Summary

The consultant will support security engineering and assessment activities across cloud and on-premises platforms to embed security by design. Responsibilities include managing application security, vulnerability triage, DevSecOps integration, and third-party risk management.

Background

Within a large-scale enterprise cybersecurity landscape, this consultant role supports a wide range of security engineering and assessment activities across multiple digital products and platforms, hosted both in the cloud and on-premises. The focus is on making security a built-in quality aspect by working closely with product, platform and architecture teams to embed security by design, rather than adding it as an afterthought.

The scope of the consultant services is to assist

1) Enterprise application security

  • Identifying and onboarding applications into the security governance model.
  • Supporting threat modelling, and security gate checks for key products.
  • Helping create simple dashboards and metrics that show security and privacy posture.

2) Vulnerability management

  • Onboarding cloud and on-prem assets into vulnerability management tools.
  • Supporting risk-based triage and prioritisation of vulnerabilities with clear SLAs.
  • Contributing to patching and hardening initiatives and reporting on key metrics (aging, trends, severity).

3) DevSecOps & Runtime Security

  • Help teams embed security controls and checks into CI/CD pipelines and define practical security quality gates.
  • Support and lead security assessments for key applications and platforms.
  • Improve endpoint, network and identity security in collaboration with engineering and operations teams.
  • Contribute to resilience and recovery planning so critical services can withstand and recover from cyber incidents.

4) Third-party Risk managment

  • Supporting a lightweight intake process for third-party and vendor solutions.
  • Reviewing vendor security documentation against security expectations.
  • Helping run recurring gate checks so that security, privacy and compliance requirements are met before and after go-live.

Desired knowledge, experience, competence, skills etc

  • 7+ years of experience in cybersecurity / security engineering roles in medium to large organisations.
  • Hands-on experience with security engineering across cloud and on-prem infrastructure (e.g. Azure, AWS or GCP).
  • Good understanding of application security and common vulnerabilities (OWASP Top 10) and experience with basic security testing or pen testing.
  • Practical experience integrating security into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins or similar).
  • Experience with vulnerability management tools and risk-based triage (using CVSS , CISA KeV or similar scoring).
  • Familiarity with key frameworks and regulations (for example NIST CSF, ISO 27001, NIS2, GDPR, PCI-DSS).
  • Ability to translate technical security findings into clear, actionable guidance for engineers and product teams.
  • Collaborative mindset and experience working with cross-functional teams (product, engineering, operations, risk).
  • CISSP

What 3 things are most important?

  1. Strong practical experience with vulnerability management and infrastructure security (cloud and on-prem).
  2. Proven ability to design and operationalize security gate-check processes and intake frameworks to support risk assessments for both internal and third‑party products.
  3. Capability to translate security risks and findings into clear, prioritised actions for product and platform teams

#Li-Remote

 
 

What you will love about working here?

We care about all our employees and want them to feel as comfortable as possible. That's why we offer them health insurance from the first days, regardless of the probationary period.
The gift from the company - Christmas holidays from 25 December to 31 December.
Сooperation with Superhumans center and Veteran HUB. Capgemini Engineering has supported the launch of psychological rehabilitation department of Superhumans. Our team also donnated over UAH 500 000 prosthetics for three Ukrainian defenders. Currently, we support psychological counseling provided by the Veteran Hub, and we have implemented a internal policy making the company friendly to military and veterans with the assistance of the Hub.

#Li-SS4

Automatically Apply to the Best Remote Jobs

Stop the endless job search. Our AI finds and applies to the best jobs for you.

Try it Now
Keep looking

Similar Jobs

See all Remote Software Development jobs →

Data Engineer (Python, PySpark & Databricks)

Full Time Colombia Software Development

Full Stack Engineer - Austin, TX (WFH)

Full Time United States Software Development

Field Service Engineer, AMS

Full Time United States Software Development

Senior AI Inference Engineer

Full Time United States Software Development

Technical Co-Founder

Full Time Germany Software Development

RPA Developer

Full Time United States Software Development
Apply Now

Personalize your Remote Job Search in 3 Easy Steps!

Featuring 219,313+ Jobs in Software Development

Answer easy questions

Answer easy questions

219,313+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified