Title: Lead Information Security Engineer
Location: DC Metro Area
Target Start Date: ASAP
Type: contract
Pay Rate: DOE
We are seeking an experienced Lead Information Security Engineer to provide technical leadership across enterprise security risk management, security controls, compliance, and security architecture. This role will help identify and prioritize security risks, define security requirements, design and implement effective controls, and ensure those controls continue to operate as intended.
The ideal candidate combines strong hands-on security expertise with the ability to influence security strategy, partner across technical and business teams, improve processes, and mentor junior team members.
Key Responsibilities
Security Risk & Architecture
- Lead efforts to identify, validate, assess, and prioritize information security risks.
- Identify gaps in security requirements and work with stakeholders to define appropriate security requirements and controls.
- Contribute to the architecture and design of security solutions and controls.
- Develop strategies that promote consistent implementation and use of security controls across the enterprise.
- Evaluate and recommend new security technologies, tools, techniques, and security practices.
Security Controls & Monitoring
- Lead the implementation, operation, and monitoring of enterprise security controls.
- Establish strategies and processes for effective security control monitoring.
- Assess control effectiveness and identify operational gaps or discrepancies.
- Review, triage, and prioritize security control findings and alerts.
- Drive appropriate remediation activities to resolve identified security issues.
Governance, Risk & Compliance
- Lead the development, review, and adoption of information security policies, standards, guidelines, and procedures.
- Promote compliance with internal security requirements as well as applicable external regulations and industry standards.
- Establish approaches for monitoring and enforcing security compliance.
- Partner with technology and business teams to ensure security requirements are incorporated into technology solutions and operational processes.
- Maintain adherence to organizational technology policies and security controls.
Leadership & Continuous Improvement
- Lead and participate in security and technology process-improvement initiatives.
- Identify opportunities to strengthen security processes, controls, and operating practices.
- Provide guidance and mentorship to junior security professionals.
- Represent information security and quality assurance perspectives in cross-functional initiatives and committees.
- Provide leadership coverage and support as needed.
- Ensure security-related deliverables meet established quality and security standards.
Qualifications
- Extensive experience in information security, cybersecurity, security engineering, or a related discipline.
- Strong knowledge of security risk assessment, security architecture, and control design.
- Experience implementing, operating, and monitoring enterprise security controls.
- Strong understanding of security governance, risk, and compliance practices.
- Experience developing or implementing information security policies, standards, and procedures.
- Ability to analyze security findings, prioritize risk, and drive remediation efforts.
- Experience evaluating security technologies and recommending appropriate solutions.
- Strong understanding of security and technology industry standards and best practices.
- Demonstrated ability to lead initiatives and mentor junior team members.
- Strong written and verbal communication skills with the ability to collaborate effectively across technical, business, and leadership teams.
Preferred Qualifications
- Experience working in a highly regulated or security-sensitive enterprise environment.
- Knowledge of established cybersecurity frameworks, regulatory requirements, and security control standards.
- Experience supporting enterprise-wide security programs and large-scale technology environments.
- Relevant information security certifications are a plus.
Welcome to ConsultNet, a premier national provider of technology talent and solutions. Our expertise spans across project services, contract-to-hire, direct search, and managed services onshore, nearshore, and hybrid. For over 25 years, we have connected thousands of consultants with meaningful roles through a personal, communication-driven approach, partnering with a diverse client base to build high-performing teams and create lasting impact. Our comprehensive service offerings cover a wide range of technology and engineering positions across key markets nationwide. Learn more at www.consultnet.com .
We champion equality and inclusivity, proudly supporting an Equal Opportunity Employer policy. We welcome applicants regardless of Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other status protected by law.