Top Benefits
About the role
About OTH Security
At OTH Security, we deliver right-sized security solutions tailored to each client. Our team believes in open, respectful collaboration, and continuous improvement. We believe security should enable our customers.
Role Overview
We are seeking a Security Consultant (Intermediate) to support client security and compliance initiatives across a variety of industries. This role is ideal for a mid-career cybersecurity professional who enjoys solving problems, and expanding their experience across security operations, compliance, consulting, and security program management. You will work closely with senior consultants to help clients improve their security posture, support client compliance initiatives, assist with security tooling administration, and contribute to client-facing deliverables and assessments. This role is primarily remote, with preference given to candidates located in the Greater Toronto Area (GTA).
Key Responsibilities
Manage security and compliance initiatives across multiple client engagements and industries. Lead security and compliance readiness initiatives for SOC 2, ISO 27001, NIST CSF, CIS Controls, and other applicable frameworks. Develop and maintain security policies, standards, procedures, and governance documentation. Coordinate recurring governance and compliance activities, including policy reviews, control testing, risk register maintenance, and audit readiness. Conduct security and risk assessments, document findings, and provide risk-based recommendations. Complete security questionnaires and prepare responses to customer, partner, and regulatory security requests. Coordinate penetration tests, vulnerability assessments, and external audits, and facilitate remediation efforts. Support the development, facilitation, and documentation of incident response tabletop exercises. Support the implementation and management of security technologies, endpoint management, identity and access management, and operational security controls. Prepare assessment reports, executive summaries, risk registers, dashboards, and other client-facing security documentation. Identify, recommend, and implement opportunities to improve and automate operational and security processes. Serve as a trusted point of contact for clients, communicating security and compliance recommendations clearly to technical and non-technical stakeholders.
Qualifications
Required 3 to 5 years of experience in cybersecurity, IT, compliance, consulting, or a related field. Previous consulting, MSP/MSSP, or other client-facing experience. Experience with security frameworks such as SOC 2, ISO 27001, NIST CSF, or CIS Controls. Experience conducting security, risk, or compliance assessments and developing risk-based recommendations. Strong written, verbal, and presentation skills, with the ability to communicate effectively with technical and business stakeholders. Strong organizational skills with the ability to manage multiple client engagements and deliver results independently.
Nice to Have
Experience leading or coordinating security or compliance initiatives. Experience implementing or supporting cloud platforms, identity and access management, endpoint management, security technologies, or workflow automation solutions. Experience with scripting or automation tools such as Python, Bash, or similar. Relevant cybersecurity, cloud, or governance certifications.
Compensation & Benefits
Flexible work hours with agreed core collaboration times. $80,000-$150,000 CAD/year commensurate with experience. Opportunities for professional development and certifications.
Not the right fit? Search for Security Consultant jobs in Canada
About OTH Security
OTH Security specializes in identifying and mitigating digital risks through comprehensive analysis, deep-dive threat intelligence, and robust penetration testing.
We're founded by technology veterans with 60 years' collective experience, offering innovative solutions driven by excellence and partnership, ensuring exceptional client service and comprehensive digital defense.
Our services include, vCISO advisory services, threat assessments for cloud, devops and organizational structure, and penetration testing.
Similar Jobs
Top Benefits
About the role
About OTH Security
At OTH Security, we deliver right-sized security solutions tailored to each client. Our team believes in open, respectful collaboration, and continuous improvement. We believe security should enable our customers.
Role Overview
We are seeking a Security Consultant (Intermediate) to support client security and compliance initiatives across a variety of industries. This role is ideal for a mid-career cybersecurity professional who enjoys solving problems, and expanding their experience across security operations, compliance, consulting, and security program management. You will work closely with senior consultants to help clients improve their security posture, support client compliance initiatives, assist with security tooling administration, and contribute to client-facing deliverables and assessments. This role is primarily remote, with preference given to candidates located in the Greater Toronto Area (GTA).
Key Responsibilities
Manage security and compliance initiatives across multiple client engagements and industries. Lead security and compliance readiness initiatives for SOC 2, ISO 27001, NIST CSF, CIS Controls, and other applicable frameworks. Develop and maintain security policies, standards, procedures, and governance documentation. Coordinate recurring governance and compliance activities, including policy reviews, control testing, risk register maintenance, and audit readiness. Conduct security and risk assessments, document findings, and provide risk-based recommendations. Complete security questionnaires and prepare responses to customer, partner, and regulatory security requests. Coordinate penetration tests, vulnerability assessments, and external audits, and facilitate remediation efforts. Support the development, facilitation, and documentation of incident response tabletop exercises. Support the implementation and management of security technologies, endpoint management, identity and access management, and operational security controls. Prepare assessment reports, executive summaries, risk registers, dashboards, and other client-facing security documentation. Identify, recommend, and implement opportunities to improve and automate operational and security processes. Serve as a trusted point of contact for clients, communicating security and compliance recommendations clearly to technical and non-technical stakeholders.
Qualifications
Required 3 to 5 years of experience in cybersecurity, IT, compliance, consulting, or a related field. Previous consulting, MSP/MSSP, or other client-facing experience. Experience with security frameworks such as SOC 2, ISO 27001, NIST CSF, or CIS Controls. Experience conducting security, risk, or compliance assessments and developing risk-based recommendations. Strong written, verbal, and presentation skills, with the ability to communicate effectively with technical and business stakeholders. Strong organizational skills with the ability to manage multiple client engagements and deliver results independently.
Nice to Have
Experience leading or coordinating security or compliance initiatives. Experience implementing or supporting cloud platforms, identity and access management, endpoint management, security technologies, or workflow automation solutions. Experience with scripting or automation tools such as Python, Bash, or similar. Relevant cybersecurity, cloud, or governance certifications.
Compensation & Benefits
Flexible work hours with agreed core collaboration times. $80,000-$150,000 CAD/year commensurate with experience. Opportunities for professional development and certifications.
Not the right fit? Search for Security Consultant jobs in Canada
About OTH Security
OTH Security specializes in identifying and mitigating digital risks through comprehensive analysis, deep-dive threat intelligence, and robust penetration testing.
We're founded by technology veterans with 60 years' collective experience, offering innovative solutions driven by excellence and partnership, ensuring exceptional client service and comprehensive digital defense.
Our services include, vCISO advisory services, threat assessments for cloud, devops and organizational structure, and penetration testing.