Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Tusker

Cyber Security Principal

Tusker

. Serve as the primary trusted cybersecurity advisor to client executives, leadership teams, and boards .

Posted 10/6/2026full-timeBoston • Massachusetts • United StatesLead💰 $150,000 - $175,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in cybersecurity strategy, governance, risk management, and compliance, with a strong focus on executive communication and multi-year program maturation. Proven ability to lead incident response planning and third-party risk assessments while fostering client relationships and guiding security budgeting decisions.

Highest-signal resume keywords
Cybersecurity Strategy LeadershipNIST CSF ComplianceIncident Response PlanningExecutive-Level CommunicationThird-Party Risk Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cybersecurity GovernanceRisk ManagementCompliance FrameworksProgram MaturationSecurity BudgetingRisk AssessmentPerformance MeasurementIncident ResponseCyber Resilience PlanningGovernance Structures
Soft Skills
Proactive CommunicationSound JudgmentTransparencyFollow-ThroughInfluential Leadership
Tools & Technologies
GRC PlatformsCompliance AutomationSecurity Operations Capabilities
Certifications & Qualifications
CISSPCISMCRISCCISACDPSECIPP
Industry Keywords
HealthcareFinancial ServicesManufacturingEducationPublic SectorDefense Industrial Base

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Serve as the primary trusted cybersecurity advisor to client executives, leadership teams, and boards
  • Establish engagement objectives, governance, decision rights, meeting cadence, success measures, and executive reporting expectations
  • Translate technical findings, threat conditions, and compliance obligations into business impact, clear choices, and prioritized actions
  • Build durable client relationships through proactive communication, sound judgment, transparency, and follow-through
  • Manage multiple client programs while maintaining quality, consistency, and responsiveness
  • Assess current-state program maturity and define target-state capabilities
  • Develop and maintain multi-year cybersecurity maturation roadmaps aligned to business strategy, budgets, risk tolerance, and regulatory requirements
  • Create or improve governance structures, policies, standards, risk registers, performance measures, and reporting mechanisms
  • Guide security budgeting, investment prioritization, and risk-treatment decisions
  • Define key risk and performance indicators and use them to demonstrate progress and support executive decisions
  • Lead or guide cybersecurity risk assessments, gap assessments, and remediation planning
  • Advise on alignment with NIST CSF, NIST 800-53/171, CIS Controls, ISO 27001, CMMC, PCI DSS, HIPAA, and SOC 2
  • Support audit and assessment readiness without representing Tusker as the independent auditor or attestation body
  • Lead third-party risk discussions, vendor due diligence, and risk-based review of critical service providers
  • Develop, review, and exercise incident response and cyber resilience plans, including executive and board-level tabletop exercises
  • Advise on secure adoption of cloud, AI, and emerging technologies
  • Coordinate with Tusker Solution Architects, technical delivery teams, Managed Services, Advisory, Sales, and external partners
  • Clarify ownership, dependencies, timing, and expected outcomes across strategic and technical workstreams
  • Provide cybersecurity subject-matter expertise during qualified sales pursuits, client workshops, renewals, and expansion discussions
  • Help shape repeatable vCISO methods, templates, reporting, service standards, and quality controls
  • Mentor colleagues and strengthen Tusker teams’ ability to identify advisory needs and engage the right resources

Requirements

What you’ll need
  • 12 or more years of progressive cybersecurity experience, including significant responsibility for cybersecurity strategy, governance, risk, compliance, and program leadership
  • Experience serving as a CISO, vCISO, deputy CISO, security executive, or equivalent senior cybersecurity leader
  • Demonstrated ownership of cybersecurity programs, budgets, risk decisions, executive reporting, and board-level communication
  • Proven ability to lead strategic assessments, create multi-year roadmaps, and guide security-program maturation
  • Strong working knowledge of NIST CSF, NIST 800-53/171, CIS Controls, ISO 27001, CMMC, PCI DSS, HIPAA, and SOC 2
  • Experience leading incident response planning, executive exercises, third-party risk activities, and governance or policy programs
  • Executive-level communication, facilitation, writing, and presentation skills for technical and non-technical audiences
  • Ability to lead through influence across client teams, Tusker teams, and external providers
  • Ability to manage multiple concurrent client engagements and operate effectively in ambiguous situations
  • High ethical standards, discretion, and professional integrity
  • Candidate should reside within approximately two hours driving distance of Boston and be able to travel periodically based on client and business needs
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Business, or a related field; advanced degree is a plus (preferred qualification)
  • One or more relevant certifications, including CISSP, CISM, CRISC, CISA, CDPSE, or CIPP (preferred)
  • Experience delivering vCISO, cybersecurity advisory, consulting, MSP, or MSSP services to mid-market clients (preferred)
  • Experience in regulated industries such as healthcare, financial services, manufacturing, education, public sector, or defense industrial base organizations (preferred)
  • Familiarity with GRC platforms, compliance automation, common security operations capabilities, and outsourced service delivery (preferred)

Benefits

Comp & perks
  • Equal opportunity employer committed to diversity and inclusion
  • Periodic travel based on client and business needs
  • Compensation and benefits provided as part of employment practices