Skip to content
  • Employers
  • Job Seekers
    • Open Jobs
  • Expertise
    • GENERATIVE AI
    • CYBERSECURITY
    • CLOUD & AUTOMATION
    • DIGITAL TRANSFORMATION
    • DATA & BUSINESS ANALYTICS
    • NETWORKING & INFRASTRUCTURE
    • PROJECT & PROGRAM MANAGEMENT
    • QA & TESTING
    • SOFTWARE DEVELOPMENT
  • Resource
    • IT STAFFING BLOG
    • RESOURCES & GUIDES
    • PODCASTS
CONTACT US
  • Application Security Engineer

    ** Due to client requirements, applicants must be able to work on a w2 basis
    **  Onsite is required

    Application Security Engineer

    Job Overview

    We are seeking an experienced Application Security Engineer to provide security leadership for a growing internal application development environment, including emerging AI-enabled solutions. This is a newly created role with an immediate need for someone who can embed practical security controls into the development lifecycle while partnering closely with engineering, data, security, and technology stakeholders.

    To secure an interview, candidates should bring hands-on Application Security and Secure SDLC experience, understand modern development practices beyond checklist-based risk reviews, and be comfortable evaluating applications, architecture, vulnerabilities, third-party components, and emerging AI security risks.

    Must Haves

    • Approximately 3–5 years of relevant technology or security experience, including practical exposure to Application Security, secure coding, or Secure SDLC activities.
    • Strong understanding of how modern applications are designed, developed, tested, deployed, and secured throughout the Software Development Life Cycle (SDLC).
    • Demonstrated ability to perform substantive application risk assessments and identify meaningful technical security concerns rather than relying solely on compliance checklists.
    • Working knowledge of Secure SDLC, CI/CD security, release controls, vulnerability remediation, and application security testing.
    • Familiarity with security testing approaches such as SAST, DAST, IAST, SCA, API security testing, infrastructure-as-code scanning, container scanning, and secrets detection.
    • Experience reviewing vulnerability or source-code scanning results using platforms such as SonarQube, Checkmarx, Fortify, Veracode, GitHub security capabilities, or comparable tools.
    • Ability to collaborate effectively with developers, architects, security professionals, and technology stakeholders while navigating competing priorities and technical disagreements.
    • Bachelor’s degree in Cybersecurity, Computer Science, Software Engineering, Information Technology, Information Security, or a related discipline; equivalent relevant professional experience may be considered.

    What the Client Needs You to Do

    You will serve as a hands-on security partner for teams building new applications and AI-enabled capabilities. Your primary objective is to integrate security into development from design through release, ensuring new functionality receives appropriate technical review without unnecessarily slowing delivery.

    You will evaluate proposed solutions, review architecture, establish secure development expectations, analyze scanning results, validate vulnerability remediation, assess third-party technology, and determine the security implications of new functionality before deployment.

    The successful candidate must be comfortable challenging technical decisions constructively. This position requires someone who understands how software is actually built and can translate security requirements into practical guidance developers can implement.

    Key Responsibilities

    • Embed Application Security practices throughout design, development, testing, deployment, and ongoing enhancement activities.
    • Review new application features and releases to confirm appropriate security requirements and development controls have been addressed.
    • Establish practical secure coding expectations, technical guardrails, and development security standards in partnership with engineering stakeholders.
    • Analyze application security scanning results, distinguish meaningful vulnerabilities from lower-priority findings, and validate appropriate remediation.
    • Evaluate application architectures, integrations, APIs, infrastructure components, and technical design decisions for potential security weaknesses.
    • Assess third-party software, libraries, services, and other external components introduced into application environments.
    • Partner with developers and technology teams to incorporate security testing and controls into CI/CD and release processes.
    • Evaluate AI-enabled applications for risks involving data exposure, source integrity, prompt injection, unauthorized disclosure, model misuse, and other emerging attack patterns.
    • Test internally developed solutions prior to release and provide actionable recommendations when security concerns are identified.
    • Collaborate across security and technology functions to resolve vulnerabilities, address technical risks, and strengthen secure development practices.

    Additional Information

    The technical environment includes a mixture of modern application development technologies. Experience with Python is particularly valuable, while exposure to Java, .NET, or comparable enterprise development frameworks is beneficial. Candidates do not need to specialize in one programming language; broader understanding of sound development and application security principles is more important.

    Experience with Azure, Azure DevOps, GitHub Enterprise, GitHub Advanced Security, or comparable cloud-based development and DevSecOps platforms is preferred.

    Candidates with knowledge of AI security will have an advantage. Relevant areas include the OWASP Top 10 for Large Language Model Applications, NIST AI Risk Management Framework, responsible AI concepts, prompt injection, sensitive-data leakage, hallucination risk, model misuse, AI agents, and prompt security.

    This position is best suited for a technically curious security professional who can operate beyond policy and compliance activities. A software developer or engineer who has transitioned into Application Security may be particularly well aligned.

    Strong interpersonal judgment is essential. You will work with stakeholders who may have different levels of security maturity and occasionally challenge security recommendations. The successful candidate can explain technical risk clearly, establish credibility with developers, resolve reasonable disagreements, and determine when a material security concern requires escalation.



    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #25572

    August 10, 2026
  • GRC Lead

    ** Due to client requirements, applicants must be able to work on a w2 basis

    Job Overview

    We are seeking an experienced GRC Technology Lead with deep expertise in AuditBoard to lead the administration, optimization, and governance of enterprise audit and risk management platforms. This role is ideal for a professional who combines technical platform expertise with a strong understanding of governance, risk, and compliance (GRC) practices. Candidates with demonstrated success supporting SOX compliance programs and modernizing audit processes will be well positioned for an interview.

    Must Haves

    • Bachelor’s degree in Computer Science, Information Technology, Accounting, Finance, or a related discipline.
    • Proven experience supporting public company SOX 404 compliance programs.
    • Hands-on expertise administering and configuring AuditBoard, including SOXHUB, OpsAudit, and RiskOversight modules.
    • Strong knowledge of operational auditing, risk assessments, and Risk Control Matrix (RCM) development.
    • Experience managing ERP controls within environments such as SAP, Oracle, and NetSuite.
    • Solid understanding of IT General Controls (ITGC) and GRC best practices.
    • Proficiency with data visualization and analytics tools, including Power BI, Tableau, or advanced Microsoft Excel.
    • Excellent communication, stakeholder management, and cross-functional collaboration skills.

    What the Client Needs You to Do

    In this role, you will serve as the technical lead for the organization’s audit technology platform while helping strengthen enterprise governance, risk, and compliance capabilities. You will partner with internal stakeholders across Information Technology, Risk, Compliance, Internal Audit, and business teams to streamline audit processes, improve control effectiveness, and drive automation initiatives. Your expertise will help ensure regulatory compliance, enhance reporting capabilities, and support continuous improvement across the organization’s GRC program.

    Key Responsibilities

    • Lead the configuration, administration, and ongoing optimization of the AuditBoard platform, including SOXHUB, OpsAudit, and RiskOversight.
    • Manage platform security, user access, and environment administration while maintaining system integrity and governance standards.
    • Coordinate configuration updates and manual migration activities between testing and production environments in accordance with platform capabilities.
    • Support and enhance SOX 404 compliance initiatives by maintaining effective workflows, documentation, testing, and reporting processes.
    • Partner with cross-functional teams to improve GRC workflows, automate control testing, and increase audit efficiency.
    • Oversee ERP control environments for SAP, Oracle, and NetSuite while ensuring alignment with enterprise risk and compliance objectives.
    • Develop and maintain Risk Control Matrices (RCMs) and support operational audit activities through effective control design and assessment.
    • Analyze audit and compliance data using Power BI, Tableau, Excel, and other reporting tools to provide meaningful insights and executive-level reporting.
    • Drive process improvement initiatives that strengthen governance practices, reduce manual effort, and improve operational effectiveness.
    • Coordinate with internal stakeholders and external platform support teams to plan upgrades, resolve technical issues, and implement system enhancements.
    • Present program status, risk assessments, remediation progress, and key performance metrics to leadership in a clear and concise manner.
    • Promote platform governance, documentation standards, and best practices to ensure long-term scalability and compliance.

    Additional Information

    • Work arrangement: Remote, hybrid, or onsite based on business needs.
    • Employment type: Full-time.
    • This position partners closely with Internal Audit, Information Technology, Compliance, Risk Management, and business stakeholders.
    • The ideal candidate is proactive, detail-oriented, and comfortable leading technical initiatives while collaborating with both business and executive leadership.
    • Experience with enterprise GRC frameworks, regulatory standards, and audit technology modernization initiatives is highly desirable.
    • Applicants who demonstrate a combination of AuditBoard platform expertise, SOX compliance experience, ERP controls knowledge, and strong stakeholder communication skills will be highly competitive for this opportunity

    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #25569

    July 28, 2026
  • Senior Security Architect – AI & Enterprise Security

    About the Role

    We’re not looking for someone who knows every security tool. We’re looking for someone who can take any application, platform, or technology, understand how it works, identify its risks, troubleshoot complex issues, and architect the right security solution. If you’re energized by learning new technologies, solving difficult security challenges, and influencing enterprise security strategy, we’d love to talk with you.

    We’re seeking a highly technical Senior Security Architect to help secure the next generation of enterprise technology. This role offers significant autonomy, giving you the freedom to independently evaluate technologies, identify security risks, design secure architectures, and influence the future direction of our security program.

    Rather than supporting a single product or platform, you’ll work across AI, cloud, networking, infrastructure, applications, and security operations. You’ll partner with engineering teams to ensure security is built into solutions from concept through deployment while helping the organization confidently adopt emerging technologies.

    What You’ll Do

    ● Design secure architectures across cloud, infrastructure, enterprise applications, AI platforms, networking, identity, and security operations.

    ● Evaluate new technologies and determine how they can be securely implemented within the enterprise.

    ● Diagnose, troubleshoot, and remediate security vulnerabilities across a broad range of systems, applications, and platforms.

    ● Develop security guidance for AI initiatives, including AI agents, LLMs, secure SDLC, agent identity, least privilege, API security, and automation.

    ● Support enterprise modernization initiatives, including Zero Trust, micro-segmentation, identity security, network segmentation, and cloud adoption.

    ● Evaluate and recommend security technologies including SIEM, SOAR, Exposure Management (CTEM), AI-driven security solutions, and automation platforms.

    ● Research emerging threats and technologies, conduct proof-of-concepts, and help shape enterprise security strategy.

    ● Collaborate with engineering, infrastructure, and security teams to embed security throughout the technology lifecycle.

    ● Mentor other security architects and engineers while serving as a trusted technical advisor across the organization.

    What We’re Looking For

    ● 8+ years of experience in cybersecurity with significant experience in security architecture.

    ● Strong understanding of enterprise security principles across cloud, networking, applications, infrastructure, identity, and AI.

    ● Demonstrated ability to quickly learn unfamiliar technologies, assess their security posture, troubleshoot complex issues, and design practical security solutions.

    ● Experience performing security assessments, threat modeling, architectural reviews, and risk analysis.

    ● Strong communication skills with the ability to influence technical teams and business stakeholders.

    ● A naturally curious, hands-on problem solver who enjoys tackling new technologies and complex security challenges.

    Preferred Experience

    Experience with one or more of the following is beneficial but not required:

    ● AI Security, Large Language Models (LLMs), and Agentic AI

    ● Model Context Protocol (MCP)

    ● Microsoft Copilot and Microsoft Foundry

    ● Splunk Enterprise Security

    ● Torq or other SOAR platforms

    ● Cisco ISE

    ● Zero Trust Architecture

    ● Cloud Security (Azure, AWS, or GCP)

    ● Secure SDLC and DevSecOps

    ● API Security

    ● HIPAA or other regulated environments

    ** Due to client requirements, applicants must be able to work on a w2 basis

    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #25554

    July 20, 2026
  • Zscaler Security Analyst

    ** Due to client requirements, applicants must be able to work on a w2 basis

    Zscaler Analyst/Administrator

    Job Overview

    We are seeking a Secure Access Administrator to support and maintain a modern remote access environment built on Zscaler. This position is ideal for someone with hands-on Zscaler experience who enjoys operational support, user administration, and collaborating with security teams. Candidates who demonstrate strong technical fundamentals, responsiveness, and a willingness to learn will be well-positioned for success.

    Must Haves

    • Hands-on experience administering Zscaler in an enterprise environment.
    • Working knowledge of Active Directory and Microsoft Entra ID.
    • Experience managing incidents and service requests through ServiceNow.
    • Ability to troubleshoot user access issues and resolve connectivity problems efficiently.
    • Strong customer service mindset with excellent communication and follow-through.
    • Ability to prioritize multiple requests while maintaining timely response and resolution times.
    • Willingness to learn new technologies and follow established operational processes.

    What the Client Needs You to Do

    In this role, you will provide day-to-day operational support for a secure remote access platform that enables thousands of distributed users to safely connect to critical business applications. You will manage user access, process service requests, and help maintain consistent security standards across the environment. Working closely with senior security engineers, you will contribute to ongoing platform enhancements while ensuring users receive prompt and reliable support.

    Key Responsibilities

    • Administer the organization’s Zscaler environment, including user provisioning, access management, and platform maintenance.
    • Process and resolve ServiceNow tickets related to secure remote access and user connectivity.
    • Determine appropriate user access by reviewing inventory records and Active Directory group memberships.
    • Troubleshoot authentication and connectivity issues while providing timely updates to end users.
    • Escalate complex issues to senior engineering resources or vendor support when appropriate.
    • Assist with the rollout and adoption of new Zscaler capabilities and platform enhancements.
    • Support the standardization of secure connectivity practices across the broader security technology portfolio.
    • Collaborate with security, infrastructure, and application teams to ensure secure access requirements are met.
    • Document procedures, recurring issues, and operational best practices to improve support efficiency.
    • Maintain a high level of responsiveness and ownership for incoming requests to ensure consistent service delivery.

    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #25518

    June 29, 2026
  • IT Security Engineer

    ** Due to client requirements, applicants must be able to work on a w2 basis

    Job Overview
    A leading research-driven organization is seeking a Cybersecurity Engineer to serve as a subject matter expert and escalation point for security operations. This role requires a highly analytical and self-driven professional capable of investigating, diagnosing, and resolving complex security incidents across a large-scale, dynamic environment. Candidates with strong hands-on experience in incident response, threat analysis, and security operations will be prioritized.


    Must Haves

    • 5+ years of experience in cybersecurity, information security, or related fields

    • Strong experience with incident detection, response, and investigation using SIEM tools

    • Solid understanding of networking concepts (TCP/IP, DNS, HTTP/S, SSH, RDP, etc.)

    • Experience with system administration across Windows, Linux, and macOS environments

    • Familiarity with security threats, vulnerabilities, exploits, and mitigation strategies

    • Experience analyzing phishing attempts, email headers, and compromised systems

    • Hands-on experience with scripting languages (e.g., Python, Bash) for automation

    • Ability to analyze structured and unstructured data (JSON, CSV) and correlate large datasets

    • Strong analytical and problem-solving skills with the ability to work independently


    What the Client Needs You to Do
    You will lead efforts to detect, investigate, and respond to cybersecurity threats while continuously improving security operations. This includes serving as an escalation point for complex incidents, performing threat hunting, and recommending security controls to mitigate risks. You will collaborate across teams to enhance security posture, support strategic initiatives, and promote best practices throughout the organization.


    Key Responsibilities

    • Monitor and analyze security events using SIEM tools to detect potential threats and incidents

    • Investigate alerts to determine validity, impact, and required response actions

    • Serve as an escalation point for security incidents, including phishing, compromised accounts, and system breaches

    • Perform proactive threat hunting to identify vulnerabilities and emerging risks

    • Develop and enhance security monitoring capabilities, including alerts, dashboards, and automation

    • Implement and manage security tools such as vulnerability scanners, EDR, and intrusion detection systems

    • Collaborate with cross-functional teams to address security risks throughout project lifecycles

    • Provide clear communication and reporting on incidents, risks, and remediation efforts

    • Support security governance, policies, and compliance initiatives

    • Research and evaluate new security tools, technologies, and best practices

    • Contribute to security awareness and training initiatives across the organization

    • Mentor junior team members and share technical expertise


    Additional Information

    • This is a fully remote role within a large, complex, and highly distributed technical environment

    • The position supports a diverse infrastructure including cloud platforms and enterprise systems

    • Experience with tools such as Splunk, Elasticsearch, QRadar, or similar SIEM platforms is preferred

    • Familiarity with security tools such as EDR, IDS/IPS, and vulnerability scanning solutions is beneficial

    • Experience with ticketing systems (e.g., ServiceNow) is a plus

    • Relevant certifications such as CISSP or equivalent are highly desirable

    • Candidates should be comfortable working in fast-paced environments with evolving priorities and limited standardization

    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #25376

    March 18, 2026
  • Penetration Tester- Pipeline

    Our company is a leader in cybersecurity, dedicated to providing comprehensive security solutions. We specialize in identifying vulnerabilities and fortifying defenses in information systems across various industries. Our culture is rooted in innovation, excellence, and a relentless pursuit of securing digital assets against emerging cyber threats.

    We are looking for a skilled Penetration Tester to join our cybersecurity team. This role involves conducting simulated attacks on our systems, networks, and applications to identify vulnerabilities before they can be exploited by malicious actors. Your expertise will play a crucial role in enhancing our organization’s security posture.

    Key Responsibilities:

    • Perform penetration tests on computer systems, networks, and applications.
    • Create new testing methods to identify vulnerabilities.
    • Prepare reports on findings and provide recommendations for security enhancements.
    • Stay up-to-date with the latest penetration testing methods and tools.
    • Work with cybersecurity and IT teams to remediate vulnerabilities.
    • Conduct security assessments of applications, operating systems, and networks.
    • Develop automation scripts to handle and track incidents.
    • Collaborate with colleagues on code reviews, internal infrastructure, and process enhancements.
    • Participate in security audits and risk assessments.

    Qualifications:

    • Bachelor’s degree in Computer Science, Information Security, or a related field.
    • Proven experience as a Penetration Tester or similar role.
    • Strong understanding of network protocols, data flows, and vulnerabilities within a network.
    • Familiarity with penetration test tools (e.g., Metasploit, Nessus, Burp Suite).
    • Knowledge of scripting languages (e.g., Python, Bash).
    • Excellent problem-solving and analytical skills.
    • Strong communication skills to effectively report findings and strategies.
    • Relevant certifications (e.g., OSCP, CEH, GPEN) are preferred.

    Summary:

    Identify vulnerabilities in systems, networks, and applications through simulated attacks, thereby enhancing the organization’s security. Responsibilities include conducting penetration tests, developing new testing methods, preparing reports, staying current with testing tools, remediating vulnerabilities, and participating in security audits and risk assessments.

    JOB-24365

    October 4, 2025
  • AI/Senior Technology Consultant – Pipeline

    Key Responsibilities

    • Lead and contribute to technology projects, translating client business requirements into technical solutions across cloud, database, and software development platforms.
    • Design and implement solutions using cloud platforms (e.g., AWS, Azure, Google Cloud) and database systems (e.g., SQL, DB2, Oracle, Postgres, MySQL, NoSQL).
    • Develop and deliver software using multiple programming languages (e.g., Java, JavaScript, C#, C++, Python) and frameworks (e.g., .NET, NodeJS, React, Angular).
    • Drive IoT and Edge Computing initiatives, applying strategies and concepts to meet client needs.
    • Collaborate with clients and cross-functional teams to define technical requirements, ensuring alignment with business objectives.
    • Guide project teams in adopting best practices, design principles, and advanced technologies, fostering innovation and quality.
    • Support Agile and Waterfall project management methodologies, leading or contributing to Waterfall-to-Agile transformation efforts.
    • Coach teams and organizations on Agile processes and best practices to enhance project delivery and collaboration.
    • Contribute to internal initiatives, such as business development, hiring, brand-building activities, or training programs, to support organizational growth.
    • Provide thought leadership and strategic guidance to clients, delivering measurable results across diverse industries and technologies.

    Required Skills and Qualifications

    Technical Expertise (50%)

    • 8+ years of professional experience in technology consulting, with hands-on expertise in cloud platforms, database systems, or software development.
    • Proficiency in one or more cloud platforms (e.g., AWS, Azure, Google Cloud) and database platforms (e.g., SQL, DB2, Oracle, Postgres, MySQL, NoSQL).
    • Experience with multiple programming languages (e.g., Java, JavaScript, C#, C++, Python) and software frameworks (e.g., .NET, NodeJS, React, Angular).
    • Knowledge of IoT and Edge Computing strategies, with practical application in client projects.
    • Proven ability to translate business requirements into technical solutions, delivering measurable outcomes.

    Leadership and Collaboration (50%)

    • Demonstrated experience leading or significantly contributing to project teams, promoting best practices and advanced technologies.
    • Strong written and verbal communication skills, with the ability to engage diverse stakeholders and articulate complex concepts.
    • Expertise in Agile and Waterfall methodologies, with experience driving Waterfall-to-Agile transformations.
    • Ability to work across industries, roles, and technologies, collaborating effectively with clients and internal teams.
    • Strong business acumen and a track record of solving real-world business challenges with innovative solutions.

    Additional Considerations

    • Experience with state or government technology projects is highly valued.
    • A bachelor’s degree in a relevant field (e.g., Computer Science, Engineering) is preferred.
    • Certifications such as PMP, SAFe Agilist, or cloud-specific credentials (e.g., AWS Certified Solutions Architect) are a plus.
    • Familiarity with coaching Agile processes and mentoring teams is advantageous.
    • Candidates must be located within 20 miles of Boston to support occasional onsite collaboration.

    Why Join Us?

    This role offers an opportunity to lead transformative technology projects in a dynamic, client-focused environment. You’ll work with cutting-edge platforms and frameworks, collaborate with diverse teams, and contribute to a forward-thinking organization dedicated to delivering innovative solutions and fostering professional growth.

    What is a Pipeline Job?

    These roles represent future opportunities we’ve uncovered through our client discussions. We have stripped away the rigid “Must Haves,” “Mandatories,” and “Required” criteria to find the right fit for their needs. By applying for these future roles, we will complete our human-centered process to see if you are a fit while adding your profile to our database to be considered for additional openings. When you apply, rest assured a human will thoroughly review your resume and respond to you personally. We take pride in finding the right match for each job, valuing your unique talents and potential over just what’s on your resume.

    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #24925

    September 4, 2025
  • Cybersecurity Analyst- Pipeline

    Join a forward-thinking and rapidly growing organization committed to protecting digital assets and maintaining data integrity. Our company is at the forefront of cybersecurity, providing innovative solutions to safeguard information across various sectors. We value diligence, adaptability, and a proactive approach in our mission to defend against evolving cyber threats.

    We are seeking a detail-oriented and experienced Cybersecurity Analyst to strengthen our cybersecurity team. This role involves monitoring our networks for security breaches, investigating security incidents, and implementing protective measures to safeguard our information systems.

    Key Responsibilities:

    • Monitor networks and systems for security breaches using tools like firewalls and intrusion detection systems.
    • Respond to and investigate security incidents and breaches.
    • Conduct regular security audits and risk assessments.
    • Develop and implement protective measures against cyber threats.
    • Stay updated on the latest cybersecurity trends and threat intelligence.
    • Collaborate with other departments to improve security protocols.
    • Conduct vulnerability testing, risk analyses, and security assessments.
    • Develop and update disaster recovery and incident response plans.
    • Provide training and guidance to staff on information security protocols.

    Qualifications:

    • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
    • Minimum of 3 years of experience in a cybersecurity role.
    • Strong knowledge of various security methodologies and processes, and technical security solutions (firewall and intrusion detection systems).
    • Knowledge of cybersecurity frameworks (e.g., NIST, ISO 27001, etc.).
    • Excellent analytical skills and attention to detail.
    • Strong communication and interpersonal skills.
    • Certifications like CISSP, CISM, CEH, CompTIA Security+, or similar are preferred.

    Summary:

    Cybersecurity Analyst who will monitor and protect the company’s networks and systems from security breaches. This includes investigating incidents, conducting security audits and risk assessments, developing protective measures, staying informed on cybersecurity trends, collaborating on security protocols, and training staff on information security.

    JOB-24363

    September 4, 2025
  • Cybersecurity and Compliance Consultant – Pipeline

    Key Responsibilities

    • Lead or contribute to cybersecurity, information security, risk, compliance, and data privacy programs or projects, ensuring alignment with organizational and regulatory objectives.
    • Design and implement compliance frameworks, regulatory mappings, and risk remediation strategies to address audit findings or regulatory requirements.
    • Develop roadmaps to mature cybersecurity, risk, and compliance programs, including control design and process enablement for areas like ERP, identity management, and cloud security.
    • Manage readiness initiatives for new laws, regulations, or certifications, coordinating with technical, business, compliance, and audit teams.
    • Oversee risk, compliance, or information security reporting and monitoring, delivering actionable insights to stakeholders.
    • Facilitate change management for regulatory adoption or compliance transformations, ensuring smooth transitions across business units.
    • Conduct or support internal/external audits, leveraging expertise in audit readiness and regulatory compliance.
    • Collaborate with cross-functional teams to deliver solutions across lines of defense, integrating technical and business perspectives.
    • Apply knowledge of GRC and cybersecurity tools to enhance program effectiveness and compliance processes.
    • Contribute to internal initiatives, such as business development, training, or process improvements, to support organizational growth.

    Required Skills and Qualifications

    Cybersecurity and Compliance Expertise (50%)

    • 8+ years of experience in cybersecurity, information security, risk, compliance, or data privacy programs or projects.
    • Proven expertise in compliance framework mapping, regulatory implementation, or audit/risk remediation management.
    • Knowledge of industry regulations and standards, such as EU-GDPR, CCPA/CPRA, HIPAA, PCI, COSO, NIST, or ISO.
    • Experience managing or supporting regulatory audits or certification readiness initiatives.
    • Familiarity with GRC and cybersecurity solutions, tools, and technologies for control design and monitoring.

    Leadership and Collaboration (50%)

    • Demonstrated ability to lead or coordinate cross-functional teams, working with technical, business, compliance, and audit stakeholders.
    • Strong written and verbal communication skills to articulate complex concepts and deliver presentations to diverse audiences.
    • Proven track record of solving business problems and delivering results in high-demand environments.
    • Ability to work across industries, roles, and technologies, adapting to varied project requirements.
    • Experience with change management, roadmap development, or maturing cybersecurity and compliance programs.

    Additional Considerations

    • Experience with state or government cybersecurity, risk, or compliance projects, particularly in healthcare or public sector contexts, is highly valued.
    • A bachelor’s degree in a relevant field (e.g., Cybersecurity, Information Systems, Business) is preferred.
    • Certifications such as CIPP, CRCM, CRM, ARM, CISSP, or CISM are a plus.
    • Familiarity with Agile methodologies or cloud security practices is advantageous.
    • Candidates must be located within 20 miles of Boston to support occasional onsite collaboration.

    Why Join Us?

    This role offers an opportunity to lead impactful cybersecurity and compliance initiatives in a dynamic, client-focused environment. You’ll work with cutting-edge GRC tools and regulatory frameworks, collaborate with diverse teams, and contribute to a forward-thinking organization dedicated to delivering innovative solutions and fostering professional growth.

    What is a Pipeline Job?

    These roles represent future opportunities we’ve uncovered through our client discussions. We have stripped away the rigid “Must Haves,” “Mandatories,” and “Required” criteria to find the right fit for their needs. By applying for these future roles, we will complete our human-centered process to see if you are a fit while adding your profile to our database to be considered for additional openings. When you apply, rest assured a human will thoroughly review your resume and respond to you personally. We take pride in finding the right match for each job, valuing your unique talents and potential over just what’s on your resume.


    W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.

    #24928

    September 2, 2025

© 2026 All rights reserved. Overture Partners.