Security Consultant Jobs
Security Consultant jobs are open across cybersecurity, financial services, healthcare, government contracting, and technology, at every level from junior analyst to principal and managing consultant, with specializations in risk assessment, penetration testing, and compliance advisory. Find a role that fits from the openings below and apply directly.
Find Security Consultant JobsLooking for remote work? View remote security consultant jobs →Overview
Showing 5 of 245+ Security Consultant jobs







The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help?
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
RegularLanguage Fluency: English (Required)
Work Shift:
1st shift (United States of America)Please review the following job description:
Designs, develops, and maintains enterprise security architecture blueprints, standards, and automation capabilities that align technology solutions with business strategy, risk management, and regulatory requirements. This individual contributor role transforms security policies, standards, and regulatory requirements into reusable, machine-readable security architecture capabilities — including Security Architecture as Code — that improve consistency, accelerate delivery, and strengthen compliance and audit readiness. Leveraging expertise in cloud security, automation, AI applications, and prompt engineering, this role drives secure, efficient, and standardized technology delivery across the enterprise.
ESSENTIAL DUTIES AND RESPONSIBILITIES
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Develop and maintain automated security architecture blueprints, reusable architecture patterns, control libraries, and reference architectures.
Evaluate and govern AI-generated architecture recommendations for accuracy, consistency, and compliance alignment; improve automation workflows for architecture analysis and risk identification.
Develop and maintain Security Architecture as Code capabilities, including version-controlled, traceable architecture assets integrated into software delivery workflows.
Translate security policies, standards, and regulatory requirements into machine-readable logic; develop automated compliance validation and risk assessment capabilities.
Apply hands-on AWS cloud security expertise to design secure architecture patterns; utilize Infrastructure as Code (Terraform, CloudFormation, or AWS CDK).
Partner with security architects, solution architects, developers, and risk teams to embed security requirements into technology solutions; participate in architecture and design reviews.
Develop architecture standards, implementation guidance, and reusable templates; serve as subject matter expert on security architecture, cloud security, and AI-enabled automation.
Qualifications
Required Qualifications
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
1. Bachelor’s degree in Computer Science, Information Technology, or related technical field.
2. Minimum of 10 years of experience in enterprise architecture or related technology design roles.
3. Deep expertise in architecture frameworks, principles, and best practices.
4. Proficient in advanced modeling tools and techniques for system and application architecture.
5. Extensive knowledge of regulatory compliance and risk management related to technology architecture.
Preferred Qualifications
10 years of experience in Security Architecture, Enterprise Architecture, Cloud Security, Security Engineering, or related disciplines, including 5+ years designing enterprise-scale security architecture.
Hands-on experience with AWS cloud services and cloud security controls.
Experience using AI applications, automation tools, and prompt engineering to improve technology processes and outcomes.
Experience building Security-as-Code, Policy-as-Code, Compliance-as-Code, or Architecture-as-Code capabilities.
Strong experience with Infrastructure as Code, CI/CD pipelines, Git-based version control, and automation frameworks.
Strong understanding of risk management, regulatory compliance, and governance frameworks; experience in highly regulated environments preferred.
AWS Certified Solutions Architect Professional or AWS Security Specialty certification.
CISSP, CCSP, SABSA, TOGAF, or equivalent certifications.
Experience developing prompt libraries, AI governance practices, and integrating AI-assisted capabilities into engineering workflows.
Familiarity with NIST, FFIEC, PCI-DSS, CIS Controls, or other financial services regulatory frameworks.
Security Architecture & AWS Cloud Security, Security Architecture as Code & Policy as Code, Infrastructure as Code (Terraform, CloudFormation, AWS CDK)
AI Applications & Prompt Engineering, Compliance Automation & Regulatory Risk Assessment, CI/CD Security Integration & Git-Based Version Control
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law E-Verify IER Right to Work
Security Consultant Jobs by Experience Level
See All 245+ Security Consultant Jobs
Find roles that match your experience and apply in just a few clicks.
Find Security Consultant JobsSecurity Consultant Job Market
Who's Hiring
- Everon23

- Deloitte14

- Amazon Web Services14

- Google12

- Guidehouse11

Top Industries Hiring
- Technology & Software20
- Consulting & Professional Services14
- Healthcare & Medical Services7
- Accounting & Auditing6
- Investment & Asset Management5
What Employers Look For
The qualifications that appear most often in security consultant jobs.
- Active security certification such as CISSP, CISM, CEH, or CompTIA Security+
- Experience conducting risk assessments, vulnerability scans, or penetration tests
- Familiarity with compliance frameworks including NIST, ISO 27001, SOC 2, or FedRAMP
- Ability to produce clear written reports and present findings to non-technical stakeholders
- Bachelor's degree in cybersecurity, information technology, computer science, or a related field
- Experience with security tools such as Nessus, Burp Suite, Splunk, or similar platforms
Tips for Your Security Consultant Job Search
Tailor your resume to each engagement type
Security consultant roles split sharply between technical work like penetration testing and advisory work like GRC and compliance. Emphasize the right skill cluster for each posting, because a resume built for red team work reads poorly to a risk advisory hiring manager.
List certifications prominently above experience
Hiring managers scan for CISSP, CISM, CEH, or CompTIA Security+ before reading your job history. Put active certifications in a dedicated section near the top of your resume, and include the full credential name alongside the abbreviation.
Apply early to roles that fit
Migrate Mate lists security consultant openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Search by compliance framework, not just job title
Many postings use framework names like SOC 2, NIST, ISO 27001, or FedRAMP as searchable keywords rather than the phrase 'security consultant.' Searching those terms surfaces relevant openings you'd otherwise miss with a title-only search.
Prepare a client-facing case study for interviews
Interviewers in consulting firms regularly ask you to walk through a past engagement. Have one anonymized example ready that covers your methodology, findings, and the client outcome, because a vague answer about 'improving security posture' won't land.
Negotiate scope before accepting offer terms
Security consultant offers often bundle travel requirements, billable-hour targets, or on-call obligations into the role without stating them explicitly. Ask about expected travel frequency and utilization rates before accepting, so you're comparing offers on equal terms.
Security Consultant Jobs: Frequently Asked Questions
Which companies are hiring the most security consultants?
The companies hiring the most security consultants right now include Everon, Deloitte, and Amazon Web Services, with the largest share of openings in Virginia, Texas, and California, based on current listings on Migrate Mate as of August 2026. Openings are concentrated across federal contracting firms, Big Four professional services, and specialized cybersecurity practices.
How many security consultant jobs are remote?
About 70% of security consultant openings are fully remote or hybrid as of August 2026, though on-site or travel-heavy roles remain common for engagements involving classified environments or physical security assessments. Advisory and GRC-focused roles tend to offer the most remote flexibility, while penetration testing and government contract work more often requires in-person presence.
How do you become a security consultant?
Start by building foundational knowledge in networking, operating systems, and cybersecurity principles, then earn an entry-level certification like CompTIA Security+. Gain hands-on experience through IT support, a security operations center, or an internal analyst role. Pursue a specialist certification relevant to your target area, such as CEH for technical work or CISM for governance roles, and develop client communication skills alongside your technical expertise.
Can you get a security consultant job with little experience?
Yes, some firms hire junior or associate security consultants directly from IT support, helpdesk, or security analyst backgrounds. Employers value certifications heavily at the entry level, so earning CompTIA Security+, CompTIA CySA+, or a vendor certification before applying strengthens your candidacy significantly. Internships at consulting firms or contributing to open-source security projects can also substitute for full-time professional experience in early-career applications.
What does the security consultant interview process look like?
Most security consultant interviews include a recruiter screen followed by a technical interview covering your knowledge of frameworks, tools, and methodology. A case study or scenario exercise is common, where you walk through how you'd approach a client engagement or interpret a finding. Final rounds often involve a conversation with a senior consultant or manager focused on your communication style, client-handling approach, and how you explain complex risks to non-technical audiences.
Where can I find and apply to security consultant jobs?
You can find and apply to security consultant jobs on Migrate Mate, which lists current openings from across the United States. Search the listings to find roles that match your experience and specialization, then apply directly to each one that fits.
See All 245+ Security Consultant Jobs
Find roles that match your experience and apply in just a few clicks.
Find Security Consultant Jobs