Insight Global logo

Cyber Security Subject Matter Expert

Insight Global

Santa Clara, CAJobNo compensation foundPosted 1mo agoSeen in employer's feed 6 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Santa Clara, CA
Work Authorization
Not specified

Job overview

Insight Global is hiring a Cyber Security Subject Matter Expert. The Cyber Security Subject Matter Expert will serve as a technical leader, driving cybersecurity testing and product security across North America. This role involves defining and scaling service offerings, bridging product testing, engineering, and cybersecurity assurance, and acting as a technical authority for clients and internal teams. The expert will also support business growth with technical credibility and lead the development of new service lines.

Key focus areas include Lead the development and expansion of cybersecurity testing services across North America, Define service offerings, methodologies, and frameworks for product and system security testing, and Partner with internal teams to integrate cybersecurity into existing lab testing capabilities.

Successful candidates bring 10+ Years Cybersecurity Experience and Experience in Regulated Environments. Important skills include Cybersecurity Testing, Product Security, Penetration Testing, Social Engineering, Vulnerability Identification, and Security Audits.

Skills & qualifications

RequiredNice to have

Skills

Cybersecurity TestingProduct SecurityPenetration TestingSocial EngineeringVulnerability IdentificationSecurity AuditsRisk AssessmentsThreat ModelingSecurity ArchitectureSecurity EngineeringCompliance ValidationSecurity Development LifecycleIncident ManagementRisk MitigationSME LeadershipService DevelopmentOffensive SecurityVulnerability AssessmentsPhysical Security TestingEmbedded Devices SecurityIoT SecurityIndustrial Systems SecurityNSA RequirementsCOMSEC Requirements

Qualifications

10-15+ Years in Hands-on CybersecurityStrong System, Application, and Product Security ExpertiseExperience Translating Findings Into Practical Fixes and Security RequirementsEngineering-Facing OperatorExperience Working Closely With Engineering, Product, or Systems TeamsEnd-to-End Security Program ExposureOperated Within or Contributed to Structured Security ProgramsComfortable Acting as an SME Across Teams and StakeholdersExperience in Highly Regulated/High-Security EnvironmentsGWAPT CertificationGPEN CertificationCEH Certification

Full job description

Job Description

You will serve as the technical leader driving cybersecurity testing and product security across North America, helping build and scale a leader in the TIC industry's cyber offerings across connected products, systems, and software. You will bring deep technical cybersecurity expertise, help define and scale service offerings, bridge the gap between product testing, engineering, and cybersecurity assurance, and act as the technical authority in front of clients and internal teams.

Cybersecurity Testing & Assessment

Perform penetration testing (network, application, physical/social engineering)

Identify vulnerabilities across systems, software, and connected products

Conduct security audits, risk assessments, and threat modeling

Security Architecture & Engineering

Define and enforce security requirements for systems and products

Evaluate and improve software and system architecture security

Validate compliance against industry standards and frameworks

Cross-Functional Engineering Support

Partner with software, hardware, and systems teams

Embed security into the development lifecycle

Educate teams on vulnerabilities, attack vectors, and remediation

Incident Response & Risk Management

Support incident response efforts

Assess and mitigate system and network risks

Strengthen overall security posture across environments

SME Leadership & Practice Growth (Critical)

Act as the Subject Matter Expert for cybersecurity in NA

Help build and scale cybersecurity testing services

Engage with clients, program leaders, and internal stakeholders

Support business growth with technical credibility This position is ideal for a hands-on cybersecurity expert who can both execute technically and help define, grow, and lead a new service line. The role sits at the intersection of product testing, cybersecurity engineering, and client advisory.

Key Responsibilities

Cybersecurity Service Development & Growth

Lead the development and expansion of cybersecurity testing services across North America

Define service offerings, methodologies, and frameworks for product and system security testing

Partner with internal teams to integrate cybersecurity into existing lab testing capabilities

Support business development efforts by serving as a subject matter expert in client engagements

Offensive Security & Testing

Conduct penetration testing across a range of systems including embedded devices, IoT, and industrial systems

Perform vulnerability assessments, physical security testing, and social engineering exercises

Evaluate the resilience of products and systems against real-world attack scenarios

Security Architecture & Risk Assessment

Assess system and product architectures for security risks and design vulnerabilities

Provide recommendations to improve security posture across hardware and software ecosystems

Support compliance and regulatory requirements related to cybersecurity validation

Engineering & Product Collaboration

Work closely with software, hardware, and product engineering teams to embed security into design and development processes

Review system designs and provide guidance on secure architecture and implementation

Advocate for proactive security practices rather than reactive fixes

Incident Response & Advisory

Support incident response efforts and guide clients through security events when needed

Translate technical findings into business risk and actionable recommendations

Serve as a trusted advisor to both internal stakeholders and external customers

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to [email protected] learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Skills and Requirements

10–15+ years in hands-on cybersecurity

Deep experience in penetration testing (network, application, physical; social engineering preferred), vulnerability assessment, auditing/risk assessments, and incident response across systems, software, and connected products

Strong system, application, and product security expertise

Able to evaluate software, systems, configurations, and architecture for risk

Experience translating findings into practical fixes and security requirements, not just reports

Engineering-facing operator (not isolated security)

Proven experience working closely with engineering, product, or systems teams embedding security into development, not just testing after the fact

End-to-end security program exposure

Experience across testing, auditing, risk analysis, incident response, and security controls

Has operated within or contributed to structured security programs, not just one function

Comfortable acting as an SME across teams and stakeholders One or more certifications GWAPT, GPEN, CEH, CISM, GWEB, CISSP (Strongly Preferred)

Experience in highly regulated/high-security environments such as Defense/DoD, Financial Services, or similar

Familiarity with NSA / COMSEC requirements

Experience applying system security engineering processes across programs

You've read the whole posting — now see how you match it.