Archived listing. This role was posted over 30 days ago and is no longer accepting applications. We keep it for reference, but the employer may have already filled it. See today's verified listings.

Security Compliance Consultant (SOC 2, PCI DSS, HIPAA, NYDFS 500), Contract

Invadel United States

See live roles like this Save · sign in Alert me to jobs like this

This one is closed

Live roles like this one

See every "Security Compliance Consultant" role →

Salary $130k - $210k/yr
Posted 15 Sep 2026
Last seen 15 Sep 2026
Location United States
Lifecycle mature
Grade B
This listing scored 76/100, which is a B. It lost the most ground on remote clarity. See the breakdown

Every figure above is arithmetic over the posting itself — its salary field, its text, its age, its tags and how many sources carry it. How the grades work →

Mid level Senior Contractor

Invadel is a New York City penetration testing firm. Every engagement is fixed-scope and fixed-price, agreed in writing, with public prices at invadel.com/pricing and a free retest. This is a contract role, remote within the United States, paid per engagement; work is typically one to three days per client engagement, attached to a penetration test, plus occasional readiness reviews.

What you will do: produce the framework mapping section of each report and the attestation letter clients hand to auditors and customers; review client scope against the requirement that drives the test (for example PCI DSS 11.4 segmentation testing or NYDFS 500.5) and flag gaps before testing starts; answer auditor and customer security questionnaire follow-ups with the client; run readiness reviews for clients preparing for a first SOC 2 Type II or PCI DSS assessment; keep the compliance mapping templates current.

What we need: four or more years in security compliance, audit or GRC with direct experience of SOC 2 and at least one of PCI DSS, HIPAA, ISO 27001, NYDFS 500 or CMMC; enough technical grounding to read a penetration test finding and explain what it means for a control; clear writing for auditors, executives and engineers; based in the United States with authorization to work here; two professional references.

Nice to have: time on the assessor side (QSA, SOC 2 audit team, C3PAO) or inside a compliance automation platform; experience with New York financial services or healthcare clients.

Full description, pay range and application:

Originally posted on Himalayas

Apply for this role Opens himalayas.app — the link as listed; we have not yet verified it is the employer's own page

Quick question · anonymous · one tap

Would you apply to this job?

Answer to see what other job seekers said.

Description review

73/100 HR standards 79/100 Title ↔ description 47/100 Fit to the official role
Read the marked-up listing →

Your turn · no account needed

Help the next applicant

You may know something about this listing that we cannot see from here. One tap. No account needed. Signed-in reports earn points once the evidence agrees with you.

I know what it pays

What you were offered, quoted in an interview, or paid in this role. A range is fine.

Sign in with Google to earn points for reports — 100 confirmed points buy a week of Early Access.

Where this listing came from

  1. 15 Sep 2026 Himalayas first sighting

Seen on 1 board over 0 days.