Job Details
Description
Overview:
Archer helps organizations manage risk in the digital era – uniting stakeholders, integrating technologies, and transforming risk into reward. As true pioneers in Integrated Risk Management (IRM) software, Archer remains solely dedicated to helping customers manage risk and compliance domains, from traditional operational risk to emerging issues such as ESG. With over 20 years in the risk management industry, the Archer customer base represents one of the largest pure risk management communities globally, with more than 1,200 customers including more than 50% of the Fortune 500.
The Senior Advisor, Cybersecurity Engineering and Operations is responsible for leading advanced application security functions including penetration testing, vulnerability assessment, and privileged access management (PAM). This role shapes cybersecurity strategy, executes complex security assessments, and guides junior team members while collaborating across engineering, operations, and risk teams.
Principal Responsibilities
- Prioritize own work and provide guidance, direction, and oversight to junior team members.
- Understand, articulate, and enhance cybersecurity strategies, policies, standards, and procedures across penetration testing, vulnerability assessment, and PAM domains.
- Create and deliver presentations on cybersecurity topics to both technical and non‑technical audiences.
- Plan, develop, and execute penetration testing, adversarial simulation, and ethical hacking activities.
- Create and execute threat and vulnerability management procedures including scanning, analysis, reporting, and mitigation planning.
- Communicate security and compliance issues and findings to management, end users, engineering teams, and security leadership.
- Collaborate with Incident Response, Risk Management, and Senior Management to provide security assessments, gap analyses, audit reporting, and recommendations.
- Develop near‑term and long‑term vulnerability and risk mitigation strategies.
- Design, implement, and maintain Privileged Access Management (PAM) solutions including identity governance, privileged session management, credential vaulting, and privileged account lifecycle processes.
- Partner with IT and engineering teams to enforce least‑privilege models and ensure secure access controls.
- Conduct security reviews of privileged access workflows, automation, and integrations.
- Monitor, assess, and optimize PAM controls for compliance and operational effectiveness.
Skills
- Deep knowledge of penetration testing and vulnerability assessment methodologies across multiple platforms.
- Familiarity with industry cybersecurity frameworks including ISO 27001 and NIST 800-53B.
- Familiarity with PAM technologies such as CyberArk, BeyondTrust, One Identity Safeguard, or similar tools.
- Collaborative work style with the ability to influence cross‑functional teams.
- Strong analytical, documentation, and data analysis skills.
- Advanced written, verbal, and presentation abilities.
- Strong working knowledge of Microsoft Office Suite.
Education And Experience
- Bachelor's degree and 4 years of relevant experience, OR
- Master's/Doctorate degree and 2 years of relevant experience, OR
- Equivalent experience.
Certifications
- Industry-recognized cybersecurity certifications from ISC(2), SANS, or similar entities (e.g., CISSP, OSCP, GCIH, GPEN, GXPN, GCLD, etc.).