Sr. Cyber Consultant, Advisory

Alert Logic
Alert Logic

United States

Posted on Sep 17, 2026
LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services.LevelBlue is looking for a Cyber Security Advisory Sr. Consultant – Security Advisory to join our Professional Services Organization.The Security Advisory Sr. Consultant will be part of a cross-functional team responsible for managing, executing, and delivering cybersecurity advisory engagements for LevelBlue clients. This role is designed for an experienced cybersecurity generalist who can work across multiple security disciplines and help organizations assess risk, strengthen resilience, improve cybersecurity maturity, and prepare for cyber incidents.LevelBlue Security Advisory provides client-facing cybersecurity consulting services focused on helping organizations understand their current security posture, identify areas of risk, develop pragmatic improvement strategies, and prepare for disruptive cyber events. Advisory engagements may include cybersecurity strategy and program development, risk and maturity assessments, incident response planning, tabletop exercises, business continuity and disaster recovery, security governance, policy development, ransomware preparedness, third-party risk, and other cybersecurity transformation initiatives.Working within a shared resource model, the Sr. Consultant will contribute across multiple types of Security Advisory engagements based on client requirements and individual areas of expertise. The role requires the ability to understand business and technology environments, evaluate security capabilities, facilitate discussions with stakeholders, analyze findings, and translate cybersecurity risks into practical recommendations and actionable roadmaps.The Sr. Consultant will work directly with clients ranging from technical practitioners to business leaders and executives. Successful candidates will combine cybersecurity knowledge with strong consulting, communication, facilitation, analytical, and report-writing skills.Engagements may be performed at customer locations, LevelBlue offices, or remotely. Performance is generally measured through successful client delivery, utilization, quality of work, contribution to the practice, and achievement of role-based objectives.Location is flexible. Travel may be required based on client engagement needs.Your Impact as a Cyber Security Advisory Sr. ConsultantJob Responsibilities Participate in and lead workstreams for cybersecurity advisory engagements involving organizations of varying size, complexity, and industry.Conduct cybersecurity risk assessments and maturity assessments using recognized frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, NIST 800-series guidance, and other applicable industry or regulatory frameworks.Evaluate client cybersecurity programs, governance structures, processes, technologies, and controls to identify risks, capability gaps, and opportunities for improvement.Conduct stakeholder interviews, workshops, document reviews, and other discovery activities to understand a client's cybersecurity environment and business requirements.Analyze assessment results and translate findings into practical recommendations, prioritized remediation activities, cybersecurity roadmaps, and executive-level observations.Develop, review, and enhance Incident Response Plans, including roles and responsibilities, escalation procedures, communications protocols, decision-making processes, and coordination with business and technical stakeholders.Plan, develop, facilitate, and document cybersecurity tabletop exercises addressing scenarios such as ransomware, data breaches, business disruption, insider threats, third-party compromises, cloud incidents, and other relevant cyber events.Develop realistic tabletop exercise scenarios, injects, discussion questions, facilitator materials, participant guides, executive briefings, and after-action reports.Identify lessons learned during tabletop exercises and convert observations into prioritized corrective actions and program improvements.Assess and develop Business Continuity and Disaster Recovery (BC/DR) capabilities, including business impact considerations, critical business services, recovery requirements, technology dependencies, recovery strategies, and organizational preparedness.Review and assist in developing cybersecurity policies, standards, procedures, playbooks, and governance documentation.Support cybersecurity strategy and program development engagements, including current-state evaluations, target-state design, operating models, program priorities, and multi-year improvement roadmaps.Evaluate organizational preparedness for ransomware and other disruptive cyber events, including prevention, detection, response, recovery, crisis management, and executive decision-making capabilities.Support assessments involving third-party risk, cloud security, data protection, identity and access management, security operations, vulnerability management, threat detection and response, and related cybersecurity disciplines.Understand client business objectives and operational environments in order to ensure cybersecurity recommendations are practical, appropriately prioritized, and aligned with business risk.Develop clear and concise client deliverables, including assessment reports, executive summaries, presentations, findings, recommendations, roadmaps, plans, procedures, and other advisory materials.Present assessment findings and recommendations to technical teams, cybersecurity leadership, business stakeholders, and executives.Collaborate with engagement managers, directors, and other consultants to ensure engagements are delivered within agreed scope, schedule, quality, and budget expectations.Manage assigned workstreams and deliverables across multiple concurrent client engagements.Support less experienced consultants through knowledge sharing, quality review, coaching, and mentorship.Contribute to the continued development of LevelBlue Security Advisory methodologies, templates, tools, accelerators, service offerings, and intellectual property.Maintain awareness of emerging cybersecurity threats, regulations, technologies, standards, and industry practices and incorporate relevant developments into client engagements.Identify additional client needs or areas where LevelBlue capabilities may help address cybersecurity risk, while maintaining a trusted-advisor relationship with the client. You Bring Knowledge and ExpertiseRequired Experience 3+ years of progressively responsible experience in cybersecurity, information security, technology risk, cybersecurity consulting, or a related field.Experience across multiple cybersecurity disciplines rather than specialization in only one technical domain.Demonstrated experience in one or more of the following areas: Cybersecurity risk assessmentsCybersecurity maturity assessmentsIncident response planningCyber incident tabletop exercisesBusiness continuity planningDisaster recovery planningCybersecurity strategy and program developmentSecurity governancePolicy and standards developmentRansomware preparednessSecurity operationsThird-party cybersecurity riskCybersecurity controls assessments Working knowledge of recognized cybersecurity frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, NIST 800-53, or similar frameworks.Ability to assess cybersecurity capabilities through interviews, workshops, documentation reviews, control analysis, and stakeholder discussions.Ability to understand cybersecurity risks in the context of business operations and communicate those risks to both technical and non-technical audiences.Experience developing professional client-facing reports, presentations, plans, recommendations, and executive-level deliverables.Strong facilitation skills and the ability to lead discussions involving cybersecurity practitioners, IT leadership, business representatives, executives, legal teams, communications teams, and other stakeholders.Strong oral and written communication skills, including the ability to clearly explain complex cybersecurity topics and recommendations.Strong analytical and problem-solving skills with the ability to organize large amounts of information, identify meaningful observations, and develop practical recommendations.Ability to work effectively both independently and as part of cross-functional consulting teams.Ability to manage multiple engagements, deliverables, and deadlines simultaneously.Strong attention to quality, accuracy, and detail.Willingness to travel based on client and engagement requirements. Preferred Experience Previous cybersecurity consulting or professional services experience with a consulting firm, cybersecurity provider, systems integrator, or similar organization.Experience facilitating executive-level cyber incident tabletop exercises.Experience developing or evaluating enterprise Incident Response, Business Continuity, Disaster Recovery, or Crisis Management programs.Experience conducting NIST CSF, CIS, ISO, or similar cybersecurity maturity assessments.Experience working with organizations in regulated or complex industries.Experience developing cybersecurity strategies, transformation roadmaps, or security operating models.Familiarity with cybersecurity regulatory and compliance requirements applicable to industries such as financial services, healthcare, manufacturing, critical infrastructure, government, or technology.General knowledge of enterprise security technologies and domains including endpoint security, network security, cloud security, identity and access management, vulnerability management, security operations, data protection, and threat detection and response. Preferred CertificationsRelevant cybersecurity, risk, resilience, or technology certifications are preferred but not required. Examples include: CISSPCISMCISACRISCSecurity+CBCP or other business continuity certificationsGIAC certificationsISO 27001 certificationsCloud security certificationsOther relevant cybersecurity or risk management credentials Education Bachelor's degree in cybersecurity, computer science, information technology, information systems, business, risk management, or a related discipline preferred.Equivalent professional experience, military experience, technical training, or relevant cybersecurity certifications may be considered in lieu of a degree. What Success Looks LikeSuccessful Security Advisory Sr. Consultants are cybersecurity generalists who can quickly understand a client's environment, ask effective questions, identify meaningful cybersecurity risks, and translate those observations into practical recommendations.They are equally comfortable discussing cybersecurity capabilities with technical practitioners, facilitating a tabletop exercise with business leaders, evaluating an Incident Response Plan, conducting a maturity assessment, developing an improvement roadmap, or presenting findings to executives.The role requires cybersecurity knowledge, sound judgment, intellectual curiosity, strong client skills, and the ability to translate cybersecurity concepts into actions that improve an organization's security and resilience.Why Join LevelBlue?At LevelBlue, you’re not just an employee—you’re part of a team making a real difference in the world of cybersecurity. We foster a culture of innovation and creativity where your contributions are valued, and you’ll have the support and resources to grow and thrive.Benefits and Perks: Comprehensive medical, dental, and vision insurance.401(k) with employer matching.Generous paid time off and holidays.Flexible spending accounts and health savings accounts.Employee assistance programs.Training and development opportunities.Adoption assistance program. This role is open to candidates legally authorized to work in the United States. At LevelBlue, we support flexible work and bring people together in person for key moments based on role, team, and business needs.LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.To all agencies: Please do not contact LevelBlue employees outside of the Talent Acquisition team. LevelBlue’s policy is to only accept resumes from agencies through its approved agency process and with a valid agreement in place. Any resume submitted outside this process will be considered the property of LevelBlue, and no fee will be paid if a candidate is hired from such a submission. #LI-SD1