Point your AI agent at freehire and let it find you a job.

Get the CLI →

Zazz

NewBe an early applicant

Senior Cybersecurity & Disaster Recovery Auditor - USA

Discussion

Summary

A principal-level consultant/fractional CISO leads cybersecurity and disaster recovery audits, tabletop exercises, and governance advisory for a financial-services client, assessing against NIST 800-53, NIST CSF, ISO 27001, FFIEC, and SOC 2 and briefing C-suite and boards. Fractional 1099 engagement with on-site days in Radnor, PA.

Fractional / Consulting Engagement — Financial Services Client

Position Summary

We are engaging a Senior Cybersecurity and Disaster Recovery Auditor to lead governance, risk, and resilience assessments for a financial-sector client. This role sits at the intersection of cybersecurity compliance, business continuity, and executive advisory work, and is best suited to a principal-level consultant or fractional CISO with a track record of directing tabletop exercises and presenting findings to senior leadership and boards. Candidates who have held Big 4 or comparable top-tier advisory roles (e.g., Deloitte, PwC, EY, KPMG, or equivalent boutique cybersecurity/risk consultancies) are strongly preferred.

Engagement Details

  • Location: On-site availability required in Radnor, PA 19087 for client tabletop exercise facilitation
  • Engagement type: Fractional / consulting (1099)
  • Level: Senior Architect minimum; Associate CIO/CTO-level experience preferred

Key Responsibilities

  • Design, lead, and facilitate disaster recovery and incident response tabletop exercises for large financial-sector clients, including scenario development, injects, and after-action reporting
  • Conduct cybersecurity and disaster recovery audits against recognized frameworks (NIST 800-53, NIST CSF, ISO 27001, FFIEC, SOC 2) and produce gap assessments with prioritized remediation roadmaps
  • Evaluate and advise on business continuity plans (BCP), disaster recovery plans (DRP), and risk governance structures, including RTO/RPO validation
  • Serve as a fractional CISO or governance advisor where needed — setting risk appetite, policy frameworks, and audit cadence
  • Prepare and deliver executive-level presentations and board briefings on audit findings, risk posture, and remediation status
  • Act as primary stakeholder liaison between the client's executive team, IT/security staff, and third-party auditors or regulators
  • Develop governance documentation: risk registers, audit charters, control matrices, and compliance attestations
  • Mentor client-side security and IT staff on maintaining audit readiness and resilience posture post-engagement

Required Qualifications

  • 10+ years in cybersecurity, IT risk, or audit roles, with demonstrated progression into senior/principal or fractional executive engagements
  • Direct experience designing and running disaster recovery/incident response tabletop exercises for enterprise or financial-sector clients
  • Deep working knowledge of business continuity planning (BCP/DRP), risk governance frameworks, and regulatory compliance in financial services (FFIEC, GLBA, SOX, FINRA as applicable)
  • Proven executive presentation and stakeholder communication skills — comfortable presenting directly to C-suite and boards
  • Prior experience at a Big 4 firm, national cybersecurity/risk consultancy, or as principal of an independent advisory practice
  • One or more relevant certifications: CISSP, CISM, CISA, CRISC, or equivalent
  • Available for on-site work in Radnor, PA 19087 for scheduled tabletop exercises

Preferred Qualifications

  • Prior title or equivalent standing at Associate CIO, CTO, VP of Risk/Security, or Principal Consultant level
  • Experience serving as fractional CISO for mid-market or enterprise clients
  • Background in M&A security due diligence or pre-IPO compliance readiness
  • Familiarity with CMMC, HITRUST, or FedRAMP in addition to financial-sector frameworks


Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available