Public Consulting Group LLC (PCG) is a premier firm in public sector solutions and operations improvement, dedicated to partnering with health, education, and human services agencies to make a positive impact in people's lives. Since our inception in 1986, we have grown to a team of approximately 2,000 committed professionals across the U.S., recognized for delivering transformative solutions. Our reach extends to all 50 states, and clients in three Canadian provinces and Europe. Visit our website to learn more about our innovative approaches.
As part of our Technology Consulting team, you will play a vital role in helping organizations streamline their operations and achieve strategic objectives to better serve the public. Our comprehensive technology consulting services are tailored to assist state and local agencies in enhancing their operational needs and program effectiveness.
Key Responsibilities
- Conduct security assessments of IT systems to ensure compliance with relevant security standards.
- Evaluate and review organizational security controls, including policies and configurations, to ensure adherence to security standards.
- Oversee and perform penetration testing and simulate attacks to identify vulnerabilities.
- Work collaboratively with state departments and federal agencies on security audit activities.
- Prepare detailed reports documenting findings from security assessments and testing.
- Advise project managers on security and privacy requirements mandated by state and federal agencies.
- Assist in developing and implementing security standards and best practices.
- Engage with architects, technicians, and business leaders to understand organizational security needs and capabilities.
- Stay informed on the latest trends in IT security.
- Adapt to new technologies in the dynamic field of Information Security.
- Draft and document security and privacy policies, procedures, and contractual language as necessary.
- Establish standard documentation and reporting templates for assessments.
- Recommend enhancements to security measures.
- Participate in proposal development, including writing responses and advising on strategy.
Qualifications
Experience in writing system security plans according to NIST 800-53.Familiarity with databases and SQL, as well as skills in penetration testing.Knowledge of cloud architecture and familiarity with federal standards.Experience collaborating with state and federal government agencies.Strong communication skills, both written and verbal, with effective presentation ability.Ability to manage multiple tasks while learning new technologies and supporting solution owners.Excellent analytical and conceptual problem-solving skills.Able to navigate diverse hierarchical environments.Experience working collaboratively with high-performing teams.Ability to foster trust and confidence among internal stakeholders.Focus on both immediate results and long-term goals.Capability to work across multiple locations and business units.Service-oriented mindset with a commitment to achieving results.Experience with DevOps and automated application deployment.Proficient in communicating with technical teams and subject matter experts.Education
B.S. or B.A. degree in a related discipline is preferred.Experience
A minimum of 3 years of experience in information security or risk management.General knowledge of security related to applications and infrastructure, and understanding of security threat / risk / data classification.Familiarity with industry standards including NIST-800, HIPAA, HITECH, FERPA, and various security protocols such as PKI, SSL, encryption, data redaction, and DLP.Experience with tools like FireEye, Qualys, Email Security Systems, DLP, Data Encryption, Antivirus, SIEM, IRS Publication 1075, and Minimum Acceptable Risk Standards for Exchanges (MARS-E) is highly advantageous.Over 3 years of experience in managing or developing IT systems / solutions.Understanding of various operating systems, such as MS Active Directory, MS Windows, MS Exchange, and Unix / Linux OS.Certifications
Professional certifications related to information security, such as CEH, CISSP, SANS, CISA, GIAC, or similar, are highly desired.This is a hybrid position requiring some travel for team and client meetings. To succeed at PCG, you must :
Be available during designated working hours.Have a safe, private, and distraction-free workspace.Be able to fully devote your attention to PCG job responsibilities.We invite applications on an ongoing basis until all positions are filled. Compensation ranges from $75,000 to $120,000, depending on location, role, skills, and experience. PCG offers a comprehensive benefits package including medical and dental coverage, 401k, PTO, parental leave, and bereavement leave.
Diversity and Inclusion
Public Consulting Group is an Equal Opportunity Employer committed to fostering inclusivity and diversity within our workforce. We embrace individuals from diverse backgrounds and work diligently to cultivate a culture of acceptance. Employment decisions are based on merit and qualifications without discrimination against any characteristics protected by law. PCG values health, equality, and success for all individuals involved in our mission.