LA Metro Principal Cybersecurity Consultant

Last Updated: November 3, 2023By

Job title: LA Metro Principal Cybersecurity Consultant

Company: Auriga Corporation

Job description: AURIGA JOB POSTING

(Auriga Website:

Principal Cybersecurity Consultant

Auriga Corporation was established in 1990, to provide high-quality design, engineering and project management services for Electric Power, Telecommunication, and Information Technology systems. Auriga’s cliental includes investor owned and municipal utilities, rail and transit agencies, federal, state and local government agencies, and international public and private sector organizations.

Auriga Corporation is looking for an experienced, talented and self-motivated individual to join our team to help us provide our customers with innovative and cost effective solutions and services. An ideal candidate will be excited to be part of a company that moves quickly on a constant flow of ideas, is able to wear multiple hats as needed, and has the drive to succeed.

Auriga Corporation currently has following vacancies in the Los Angeles, California Office:

Principal Cybersecurity Consultant

Job Responsibilities:

  • Assist with security strategy updates addressing the evolving risk landscape.
  • Assist with security governance, aligned to NIST CSF, as required to sustain an effective cybersecurity program.
  • Assist with 3rd parties/projects/initiatives security risk assessments and provide solutions recommendations as needed.
  • Assist with security operations management update/improvement as required.
  • Manage information security-related activities including the analysis, identification, estimation of InfoSec efforts and the development, planning, testing, and documenting of remediation measures.
  • Develops, conducts, and documents executive-level reporting and strategy formulation.
  • Creates and maintains a centralized information security register to manage all information and document changes relevant requirements.
  • Collaborates with internal and external stakeholders to maintain an understanding of current risks, new systems, and changes to the environment.
  • Supports development, implementation, and maintenance of strong security risk & compliance processes for new and existing deployments.
  • Participates in vendor due-diligence processes and third-party security risk management efforts; in addition to performing contract reviews as it relates to Information Security.
  • Supports internal and external audit and assessment processes for relevant compliance (PCI DSS, Privacy, etc.).
  • Creates security guidelines, checklists, and other documentation to support projects and initiatives.
  • Develops and presents metrics, reports, and dashboards.
  • Develops documentation for information security controls, acquisitions, and process or system changes.
  • Stays up to date on developing regulatory concerns, evolving IT, and information security trends.
  • Assist IT Security team in the review of new and existing third-party applications and systems.
  • Conduct cybersecurity risk/gap assessments of departments and processes.
  • Assist with and documenting knowledge transfer on all activities.
  • Provide written reports with Executive Summaries detailing Cybersecurity position, including a comparative scorecard of findings; results of testing performed, identified gaps and mitigation plans, and a collaboratively developed roadmap to enhance future cybersecurity positions.

Minimum Requirements:

  • Minimum of 15 years’ experience supporting companies of a similar size as LA Metro with data and network security remediation and other regulatory compliance initiatives.
  • Experience working with a transit Universal Fare System (UFS) and the Cubic Payment Application (CPA) as it relates to transportation agency data compliance.
  • Knowledge of cybersecurity technology and compliance in transit systems.
  • Demonstratable strong background in the processes, policies, procedures, systems, practices, and professional standards of cybersecurity
  • Demonstratable knowledge of industry best practices and relevant legal requirements as they pertain to cybersecurity, compliance, and privacy laws and regulations including TSA/DHS transport directives, DMV rules and regulation and other transportation agency cyber security rules and regulations.
  • Consultant must have delivered similar services (as stated above) during the past 10 years.

Minimum Certifications:

  • Certified Information Systems Security Professional (CISSP).
  • Certified Information Systems Auditor (CISA).
  • Certified Information Security Manager (CISM).
  • GIAC Security Professional (GSEC).
  • Certified Data Privacy Solutions Engineer (CDPSE).
  • Cyber Security Nexus (CSX).

Desired Skills:

  • Bachelor’s degree in Computer Science, Information Systems, or related field.
  • Valid California Class C driver license.
  • Excellent verbal and written communications skills.
  • Good interpersonal relationship skills.
  • Must be a Team Player.

Auriga Corporation would like to thank all applicants, however only those who qualify for an interview will be contacted.

Auriga is an Equal Opportunity Employer. Auriga provides compensation and benefits commensurate with the qualifications and experience.

Expected salary:

Location: Milpitas, CA

Job date: Fri, 03 Nov 2023 03:06:57 GMT

Apply for the job now!

Leave A Comment