Senior Cybersecurity Compliance Lead Consultant

Blue Cross Blue Shield Association (BCBSA)

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Chicago, IL
Salary
$157,600–$228,550 / yr
Posted
14 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $167k
This role $193k
$115k most similar roles pay here $241k

This role pays more than 75% of similar roles. Most pay $140,500–$193,678 — the shaded band above. At the midpoint, this role pays about $193k versus about $167k for comparable roles.

Based on 240 similar postings.

Employer

About Blue Cross Blue Shield Association (BCBSA)

The Blue Cross Blue Shield Association is a federation of 33 independent health insurance companies providing health coverage to millions of Americans through locally operated member plans. Industry: Health Insurance

Blue Cross Blue Shield Association (BCBSA) currently has 4 open roles on FindRole.

Most-posted roles

View all roles at Blue Cross Blue Shield Association (BCBSA)

At a glance

TL;DR · Senior Cybersecurity Compliance Lead Consultant

The Senior Cybersecurity Compliance Lead Consultant will lead the creation and deployment of structured processes to support the cyber risk management program across the organization. This role involves utilizing analytical and qualitative assessment approaches to identify risks, develop mitigation plans, and manage technical and non-technical risk communication. A primary focus is leading the FedRAMP compliance strategy by building an AI-enabled operating model that integrates regulatory controls, continuous monitoring, and audit readiness into business operations. The candidate will manage project lifecycles, including budget approvals, task prioritization, and stakeholder engagement. Key requirements include expertise in NIST Cybersecurity Framework, ISO 27001, HIPAA/HITECH, and FedRAMP. Essential skills involve AI literacy, project management methodologies, and the ability to translate complex compliance requirements into scalable processes while managing multiple simultaneous projects within a high-stakes regulatory environment.

What you'll do

  • Lead the creation and deployment of structured processes for the cyber risk management program.
  • Develop mitigation plans using analytical and qualitative assessment approaches to manage technical and non-technical risks.
  • Lead the FedRAMP compliance strategy by building an AI-enabled operating model for regulatory controls and audit readiness.
  • Translate complex internal and third-party supplier risks into actionable information for diverse audiences.
  • Manage project lifecycles including budget approvals, resource management, task prioritization, and status reporting to executive leadership.
  • Maintain a formal risk register to align security findings with business objectives and ensure continuous monitoring.
  • Act as a product champion for cyber risk within the Governance, Risk, and Compliance technology platform.

What we're looking for

  • Bachelor's Degree in IT, Information Security, Risk Management, Computer Science, or a related field (or equivalent experience).
  • 10+ years of career experience in IT or a closely related field.
  • Experience leveraging automation and AI-enabled solutions to improve compliance monitoring, reporting, and operational efficiency.
  • Deep knowledge of FedRAMP requirements, continuous monitoring practices, control implementation, evidence management, and audit readiness.
  • Knowledge of national and international regulatory frameworks including NIST Cybersecurity Framework, ISO 27001, EU DPD, and HIPAA/HITECH.
  • Extensive knowledge in project management methodologies, tools, and change management techniques.
  • Demonstrated leadership, mentoring, and project management skills to lead multiple simultaneous projects.
  • Ability to translate complex compliance requirements into scalable, business-integrated processes and controls.

More like this

Similar roles

Cybersecurity Compliance and Risk Manager

Booz Allen Hamilton

Newport, RI 25 days ago $61,900$141,000
RMF NIST SP 800-53 ACAS eMASS VRAM STIGs SRGs Xacta ESS Altiris ServiceNow VMware Cisco TCP, IP VLANs Firewalls ConMon POA&M
Hybrid

Director, Cyber Risk Services (Information Security)

Cardinal Health

Remote 3 days ago $137,400$232,320
Cybersecurity Risk Management GRC NIST CSF ISO 27001 Third-Party Risk Management (TPRM) Enterprise Risk Management (ERM) Risk Assessment KPIs KRIs Information Security Compliance Audit
8+ yrs exp Remote

Cybersecurity Manager

Abbott

Lake Forest, IL +2 11 days ago $113,300$226,700
NIST ISO 27001 SOC2 HITRUST FedRAMP CISM SOX GDPR FDA OWASP CVSS MITRE ATT&CK Risk Management Audit Data Governance AI Governance Cybersecurity Strategy
10+ yrs exp

Senior Cybersecurity Analyst, OT Compliance

Marathon Petroleum

Findlay, OH +2 2 days ago $106,900$184,300
OT Cybersecurity Risk Management SIEM Vulnerability Management Penetration Testing Identity Access Management Security Governance Threat Hunting Forensics Web Application Scanning Asset Inventory Information Technology Operational Technology
5+ yrs exp

Senior Lead, Information Security Office Consultant

Capital One Financial

McLean, VA +1 2 days ago $229,900$262,400
Cloud Services Containers Docker Microservices Serverless APIs Micro-segmentation Network Architecture Data Security Application Security Threat Modeling Vulnerability Management AWS CISSP
6+ yrs exp

Senior Lead Cybersecurity Architect

JPMorgan Chase

Washington, DC 30 days ago
Cybersecurity Architecture Cloud Security Public Cloud Artificial Intelligence Machine Learning Mobile Threat Modeling Secure Design Reference Architectures Distributed Systems Programming Languages
5+ yrs exp