Full-Time

Strategic Security Advisor

GuidePoint Security

GuidePoint Security

1,001-5,000 employees

Cybersecurity consulting, software solutions, managed services

No salary listed

New York, NY, USA

Hybrid

Must be local to the New York City metropolitan area.

Category
IT & Security (1)
Required Skills
Risk Management

Get referred to GuidePoint Security

Find people who can refer or advise you

Requirements
  • 10+ years of experience in cybersecurity, with at least 5 years in advisory, consulting, or senior customer-facing roles
  • Ability to challenge assumptions, clarify goals, and advocate for measurable outcomes.
  • Demonstrated success in building and managing executive-level customer relationships that drive measurable business outcomes
  • Deep expertise across multiple cybersecurity domains (e.g., risk management, compliance, incident response, security architecture)
  • Strong business acumen with ability to translate technical concepts into business value for diverse stakeholders
  • Excellent communication and presentation skills with C-level executives
  • Established network and reputation in the New York City cybersecurity community
  • Must be local to the New York City metropolitan area
Responsibilities
  • Strategic Customer Partnership: Establish and maintain deep, consultative relationships with customer executives and security leaders, serving as their primary trusted advisor on cybersecurity matters
  • Opportunity Development: Identify and uncover opportunities where GuidePoint Security solutions can address customer cybersecurity needs and business objectives
  • Advisory Excellence: Provide expert guidance on cybersecurity strategy, risk management, and security program development tailored to each customer's unique environment
  • Thought Leadership: Represent GuidePoint Security as a subject matter expert in the cybersecurity community through speaking engagements, publications, and industry events
  • Cross-functional Collaboration: Partner closely with sales, delivery, and product teams to ensure seamless customer experiences and drive solution alignment
  • Market Intelligence: Stay current on emerging threats, industry trends, and regulatory requirements affecting customers in the region, and proactively communicate relevant insights to customers
  • Mentorship & Influence: Serve as a senior resource and mentor to colleagues, contributing to the development of best practices, methodologies, and advisory frameworks across the organization
  • Identify opportunities for program efficiency, alignment, and optimization across client engagements.
  • Advocate internally for client requirements, ensuring the right technical, architectural, and strategic resources are assigned.
  • Guide the creation of roadmaps and strategic plans that support client growth and security maturity.
  • Support vendor relationship management to ensure solution fit, partner accountability, and long-term success.
  • Partner with Architects and Presales Engineers to correctly identify, socialize, and document client requirements.
  • Collaborate with Sales leadership to support regional and account-specific resource alignment.
  • Work with Service Delivery and Engagement Leadership to define achievable program outcomes and ensure continuity from presales to delivery. Coordinate with vendor partners to shape and maintain long-term strategic relationships.
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
Desired Qualifications
  • Relevant certifications such as CISSP, CISM, CISA, or similar
  • Experience with security frameworks (NIST, ISO 27001, CIS Controls)
  • Background in professional services or consulting
  • Track record of driving significant revenue growth through advisory relationships

GuidePoint Security helps organizations assess and reduce cybersecurity risk through a mix of security technologies, consulting, and managed security services for enterprise and government clients. It works by assessing a client’s security posture, recommending and deploying appropriate tools and controls, and continuously monitoring and managing security operations to detect and respond to threats. The company differentiates itself with deep industry knowledge and hands-on practitioner experience from the DoD, Intelligence Communities, and Fortune 500, enabling tailored solutions for complex, mission-critical needs instead of generic products. Its goal is to help clients make informed security decisions, lower risk exposure, and defend against evolving cyber threats using a combination of technology, expertise, and managed services.

Company Size

1,001-5,000

Company Stage

Growth Equity (Non-Venture Capital)

Total Funding

N/A

Headquarters

Reston, Virginia

Founded

2011

Get referred to GuidePoint Security

Find people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • New SCDR service addresses growing board-level demand for third-party cyber risk management
  • Expansion into three new offices and new headquarters signals aggressive scaling under new CEO
  • Adding Cyber Risk Quantification service enables data-driven security investment prioritization

What critics are saying

  • SCDR faces market saturation from entrenched TPRM platforms like Bitsight and OneTrust within 6-12 months
  • Reseller partnerships create dependency on vendor pricing, risking margin compression if competitors undercut bundles
  • A single high-profile breach involving cabinet agencies could trigger immediate contract terminations and federal disqualification

What makes GuidePoint Security unique

  • Leverages DoD and Intelligence Community veterans for high-stakes government security missions
  • Uses vendor-agnostic approach to vet 800+ cybersecurity solutions for unique client needs
  • Integrates real-time supply chain risk intelligence directly into SOC workflows for immediate response

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Paid Holidays

Unlimited Paid Time Off

Remote Work Options

Phone/Internet Stipend

401(k) Retirement Plan

Pet Insurance

Growth & Insights and Company News

Headcount

6 month growth

18%

1 year growth

18%

2 year growth

18%
CLDigital
Jun 26th, 2026
CLDigital & GuidePoint Security win 2026 CIR Business Continuity Award for Strategy through Partnership.

CLDigital & GuidePoint Security win 2026 CIR Business Continuity Award for Strategy through Partnership. Contributor Reading Time London, UK - June 18, 2026 - CLDigital is proud to announce that it has been named the winner of the 2026 CIR Business Continuity Award for Strategy through Partnership, alongside strategic partner GuidePoint Security. Presented as part of the prestigious CIRMagazine's 2026 Business Continuity Awards, the recognition celebrates organisations that demonstrate excellence in advancing business continuity, operational resilience, and security through innovative partnerships. The award recognizes the collaboration between CLDigital and GuidePoint Security, which combines GuidePoint's advisory expertise with CLDigital's connected resilience platform to help organisations move beyond static plans and fragmented data toward integrated, operational resilience programs. Together, the partnership enables organisations to embed resilience into day-to-day operations by connecting business continuity, cyber resilience, operational risk, and third-party risk within a single, living framework. "Our partnership was built around a simple philosophy: resilience doesn't come from software alone, and it doesn't come from consulting alone," said Ian Wilson, SVP UK & Europe at CLDigital. "By combining trusted advisory expertise with connected technology, we're helping organisations transform resilience from a compliance exercise into an operational capability that continuously evolves with the business." Unlike traditional consulting engagements that conclude with static reports, the CLDigital-GuidePoint partnership delivers lasting value by operationalizing resilience. Organisations gain a connected platform for business continuity, risk management, scenario testing, recovery planning, and ongoing improvement - ensuring resilience programs continue long after implementation. "This recognition reflects the commitment of both organisations to helping customers prepare for an increasingly complex risk landscape," Wilson added. "We're honored by this award and grateful to GuidePoint Security, our customers, and our teams for making this achievement possible." The Business Continuity Awards are widely recognized as one of the industry's premier programs honoring excellence in business continuity, resilience, and security. To learn more about CLDigital's award-winning operational resilience solution, schedule a personalized demo today. The CLDigital blog. Dive into its powerful decision analytics, explore modern solutions for risk processes, and join Cldigital as Cldigital empower organizations to adapt, deliver, and thrive in an ever-changing world. GET STARTED Let's connect. Discover how its platform can help you achieve better outcomes and you prepare for what's next in risk and resilience.

FAIR Institute
Dec 9th, 2025
Four Findings from FAIRCON25

Four findings from FAIRCON25. I had the fun, engaging, energizing, and informative pleasure of attending the 10th Annual FAIR Conference in New York City this year with its team from GuidePoint Security. This blog post is contributed by GuidePoint Security, a FAIR Institute sponsor. Author Ben Moreland is Risk Practice Director at GuidePoint Security The cyber risk management community there was great, breakout sessions were packed with lessons learned, and the sessions, education, and content were extremely engaging. I took away more than four findings, but I couldn't resist the consonance of this catchy title. Here are four findings (or key takeaways) that resonated with me: * How you COMMUNICATE risk is as important as how you MEASURE risk. Jack Jones and the FAIR community have given scientific and mathematical rigor to risk modeling and analysis. But that doesn't mean you need to be a mathematician to know, understand, and communicate cyber risk. Using the FAIR model provides measurable, data-driven analysis that enables decision making. Being able to communicate risk in dollars and probabilities is one of many frequencies that may resonate with your board or audit committee. Traditional qualitative "measures" and stoplight colors provide an at-a-glance understanding of risk; but having measured, accurate, risk ranges with impact and probability add significantly more confidence to the executive team for conversations around information and cybersecurity investments, trade-offs, and prioritization. * Risk decision intelligence is a force multiplier Reframing "Cyber Risk Quantification" to "Cyber Decision Intelligence" was a challenge posed to conference attendees by Saket Modi, CEO of SAFE. Thinking of it another way, cyber risk quantification is the action, but decision intelligence is the outcome. The late, great, venerated General Colin Powell was quoted with "Perpetual optimism is a force multiplier". I'm a huge fan of Colin Powell and would like to borrow from him in stating "risk decision intelligence is (also) a force multiplier". When I led Information Security for a media company I was often asked by peers and other executives: "Are we secure?". As simple and generic as that statement is - they were serious. And as CEOs, CIOs, CFOs, and other executives rely on big data and business intelligence to amplify their ability to make decisions that drive and grow their business, so, too, should CISOs and other cyber executives. * Compliance is your floor, not your ceiling "Compliance is your floor, not your ceiling", are words I've heard Alla Valente, Principal Analyst at Forrester, utter before, but at FAIRCON, they hit a nerve. Compliance is important - AND - you don't have to stop there. At GuidePoint Security, FAIR Institute Inc. help manage and treat risk for so many customers. In contrast, I've seen too many organizations limit their IT+information+cyber-security programs to meet compliance requirements and audit standards. Sometimes a shiny new tool or popular platform that vendors are marketing and CISOs are raving about get added to the security stack too. But, as FAIR Institute Inc. know, being compliant and having cool security tools doesn't make your organization and data "secure". While 100% cyber risk elimination isn't possible in today's digital age, compliance with regulations and standards linked to SOX, PCI, CMMC, HIPAA, NIST and others is only the beginning, a catalyst. Governance, Risk and Compliance (GRC) leaders need to correlate risks in the context of business strategies. Cyber risk quantification or - to use a new and emerging term - cyber business intelligence - aims to do just that. So I encourage GRC leaders, risk managers, cyber executives to evolve their programs beyond compliance if they're not doing so already. * Quantifying cyber risk is a journey, FAIR Institute Inc. is all at different stages FAIR Institute Founder, Nick Sanna, opened the FAIRCON25 welcome address with "The Future of Cyber Risk Management Starts Here." As I met with, spoke with, and listened to attendees, I really understood the journey FAIR Institute Inc. is on together. Students I met from Georgetown University and Harvard are learning fundamentals and frameworks around cyber risk management. Several risk managers I spoke with or heard from identified pain points and lessons learned in moving qualitative third-party risk management to a more continuous, autonomous, quantitative risk-aligned program. Executive speakers demonstrated a variety of ways risk may be communicated and reported. Each offered valuable insights into risk management stages. The best part of the conference for me was knowing I'm on the journey with a like-minded community all focused on a similar mission to improve cyber risk management. Learn more about quantifying your cyber risk.

ChannelE2E
Sep 15th, 2025
Red Sift Joins GuidePoint Security's Lineup of Reseller Offerings

Red Sift has partnered with GuidePoint Security in a new reseller partnership that brings Red Sift's email security and attack surface management platform to GuidePoint's enterprise customers.

GuidePoint Security
Jul 21st, 2025
GuidePoint Security Launches New Cyber Risk Quantification Service To Help Organizations Make Smarter Security Investments

GuidePoint Security launches new Cyber Risk Quantification Service to help organizations make smarter security investments.

ADD-USA, Inc.
Jun 17th, 2025
GitGuardian Partners with GuidePoint Security to Strengthen Application Security Offerings

GitGuardian partners with GuidePoint Security to strengthen application security offerings.