Senior Consultant, Healthcare Advisory
Listed on 2026-03-02
-
IT/Tech
Cybersecurity, IT Consultant
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position SummaryThe Senior Consultant – Healthcare Advisory is an individual contributor responsible for delivering and leading healthcare‑focused governance, risk, compliance, and resilience advisory services under the guidance of Principal Consultants and Directors. This role supports healthcare organizations by conducting assessments, developing documentation, facilitating workshops, and delivering actionable recommendations aligned to healthcare regulatory and cybersecurity requirements.
Senior Consultants are expected to independently execute defined portions of healthcare advisory engagements, apply established methodologies, contribute to high‑quality client deliverables, monitor project health, and budget while continuing to deepen their healthcare domain expertise.
What You'll Do Healthcare Advisory Delivery- Execute healthcare advisory engagements including Governance, Risk, and Compliance (GRC) assessments, gap analyses, and remediation support.
- Support and deliver services across Incident Response (IR), Disaster Recovery (DR), Business Impact Analysis (BIA), and Business Continuity Planning (BCP) engagements.
- Assist with Vendor Risk Management (VRM) and Cybersecurity Supply Chain Risk Management (C‑SCRM) activities for healthcare organizations.
- Develop and update healthcare specific documentation, including:
Policies and procedures, Risk assessment reports, System and program documentation, Plans and playbooks - Collect, analyze, and map client provided evidence to healthcare regulatory and framework requirements.
- Lead client interviews, workshops, and working sessions with IT, compliance, security, and operational stakeholders.
- Manage assigned tasks and deliverables to meet project timelines, utilization targets, and quality expectations.
- Collaborate with Project Managers, Principals, and Directors to support successful engagement execution.
- Contribute to client presentations and status updates.
- Ensure accuracy, consistency, and quality of assigned deliverables.
- Maintain and grow healthcare regulatory and cybersecurity knowledge.
- Pursue and maintain relevant certifications aligned to healthcare advisory services.
- Incorporate feedback from peer review and quality management processes.
- Contribute to thought leadership, white papers, and blogs to expand technical expertise and support practice level objective.
- Travel up to 25–50%, depending on client needs.
- 4–6 years of experience in cybersecurity, GRC, compliance, risk management, or related consulting roles.
- Bachelor’s degree in Information Security, Information Systems, Computer Science, Business, or equivalent experience.
- Experience supporting or delivering advisory or assessment engagements in healthcare or regulated environments.
- Working knowledge of healthcare regulations and frameworks, including: HIPAA / HITECH, HITRUST, CMS requirements (as applicable), NIST 800‑series frameworks
- Experience developing compliance documentation and assessment reports.
- Familiarity with cloud based and on-premises IT environments.
- Strong written and verbal communication skills.
- Ability to clearly document and explain compliance and risk concepts.
- Strong attention to detail and organizational skills.
- Ability to manage multiple tasks and deadlines.
- Consulting mindset with the ability to build trust and credibility with clients.
- Comfortable working independently while escalating issues appropriately.
- The ability to organize and lead engagement activities while training junior…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).