Manager-Cyber Security

CrossCountry ConsultingLos Angeles, CA, Orange County, CAJob.bopublicat 09.09.2026
Obligatoriu:AWSAzureGoogle CloudDockerKubernetesCloudCI/CDHealthTechSecuritySeniorLeadRemoteHybrid

From the beginning, our goal was to establish an advisory firm that stands apart from the rest – one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our success. With advisory solutions spanning accounting and risk, technology-enabled transformation, and transactions, we partner with our clients to solve today’s challenges and deliver present and future value. Our commitment to our people has earned us numerous awards including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work. Explore what our employees have to say about our unique culture by clicking here. We are seeking a technically strong Cybersecurity Manager to join our high-performing Cybersecurity & Privacy practice. This is a hands-on role requiring deep expertise across cloud security architecture, security engineering, risk and compliance frameworks, and threat modeling. The ideal candidate brings a strong technical foundation and the ability to design, implement, and assess security solutions across complex client environments. The position is hybrid (60% on-site/client, 40% remote) with local travel throughout Los Angeles and Orange County.

What You'll Do Typical engagements include:

Cybersecurity risk and maturity assessments using ISO 27001, NIST CSF 2.0, CIS 18, PCI-DSS, NIST 800-53, Cloud Security Alliance, and MITRE ATT&CK

Security tool gap analysis, consolidation, and implementation across vulnerability management, endpoint security, SIEM, IDS/IPS, and firewall platforms

Security transformation programs — architecture design, solution implementation, and technical remediation

Threat modeling, penetration testing advisory, and proactive defense strategy

Capability uplift across Vulnerability Management, Incident Response, IT Disaster Recovery, Business Continuity, Threat Intelligence, and Security Monitoring

Privacy program audits supporting CCPA/CPRA and GDPR compliance

PCI-DSS compliance implementation and advisory

Apply MITRE ATT&CK and other threat modeling methodologies to map adversary techniques and inform defensive controls

Review and harden application and system disaster recovery plans; identify technical gaps and develop remediation playbooks

Assess Incident Response preparedness; design IR playbooks, runbooks, and facilitate technical tabletop exercises

Design logical and technical cloud security architectures and define functional requirements for secure cloud environments

Architect and implement security controls for cloud-native technologies including containers (Docker/Kubernetes), infrastructure-as-code (Terraform, CloudFormation), and serverless functions

Design and enforce API security standards and secure integration patterns across cloud platforms (AWS, Azure, GCP)

Conduct solution-based gap analysis and engineer controls for asset testing, code scanning (SAST/DAST), and application and infrastructure monitoring

Leadership Skills

Serve as a proactive project leader and self-starter, driving engagement timelines, deliverables, and client confidence forward without needing direction

Manage multiple concurrent workstreams across assessment, implementation, and compliance activities — keeping teams organized, prioritized, and on schedule across all threads

Anticipate risks, dependencies, and roadblocks before they escalate, bringing well-reasoned solutions to clients and internal stakeholders proactively

Lead and coordinate cross-functional project teams across Senior Associates and other practice members, delegating effectively to maintain quality, accountability, and momentum throughout the engagement lifecycle

Own the full arc of engagement success — from initial scoping and project planning through final delivery — taking personal accountability for client satisfaction, output quality, and measurable outcomes

What You'll Bring Education & Experience

Bachelor's degree required in Information Systems, Computer Science, Mathematics, or a related technical field

Minimum of 5 years of Big 4 or related consulting/professional services experience with hands-on Cybersecurity engineering and advisory expertise

Certifications (Preferred)

CISSP — Certified Information Systems Security Professional

CCSP — Certified Cloud Security Professional

AWS Certified Security Specialty, Microsoft SC-100/AZ-500, or equivalent cloud security certification

CISM, CEH, OSCP, or other relevant security certifications a plus

Technical Skills

Cloud platforms: hands-on experience with AWS, Azure, and/or GCP security services and native security tooling

Cloud-native security: containers (Docker, Kubernetes), IaC (Terraform, CloudFormation, Bicep), serverless security, and CI/CD pipeline security

Network security: Firewalls (Palo Alto, Fortinet, Cisco), VPN, IDS/IPS, micro segmentation, and zero-trust architecture

Endpoint & identity security: EDR/XDR platforms, PAM, IAM, MFA, and SSO solutions

Vulnerability management: Tenable, Qualys, Rapid7, or equivalent; familiarity with CVSS scoring and patch prioritization

Application security: SAST/DAST tooling, API security testing, secure SDLC practices, and code scanning platforms

#LI-JS1

#LI- Hybrid

For applicants located in California, CrossCountry Consulting is required to include an estimate of the compensation range for this role. The following range takes into account a wide range of factors including but not limited to, skills, experience, education, licenses, certifications, business needs, and internal equity. An estimate of the current range is $136,250 - $194,500 per year + annual bonus + additional benefits.

Benefits Summary The CrossCountry total rewards package includes comprehensive healthcare options, including medical, dental, and vision coverage; flexible spending accounts; and a 401(k) with company matching. Additionally, employees can take advantage of generous parental and maternity leave policies, technology stipends, and wellness reimbursement programs, all designed to support both professional growth and personal well-being. For detailed information about benefits at CrossCountry, please visit our dedicated benefits site: https://www.crosscountry-consulting.com/careers/benefits/.

Equal Employment Opportunity (EEO) CrossCountry provides equal employment opportunities (EEO) to all employees and applicants for employment and believes that respect and fair treatment are critical to creating a productive and inclusive workplace. 

As an equal opportunity employer, CrossCountry is fully committed to comply with all federal, state, and local laws and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability, pregnancy, genetics, sexual orientation, veteran status, gender identity or expression or any other protected characteristic. The company also complies with pay transparency and labor laws applicable to all terms and conditions of employment.