Cyber Security Controls Assessor - Remote / Telecommute

Cyber Security Controls Assessor - Remote / Telecommute

Posted 1 week ago by 1752667967

Negotiable
Outside
Hybrid
USA

Summary: The Cyber Security Controls Assessor role involves reviewing IT policies and procedures to identify risk mitigation points, analyzing vulnerabilities, and collaborating with stakeholders to develop remediation plans. The position requires a strong background in IT security and risk management, along with effective communication and project management skills. This role is primarily remote, with potential hybrid options in Oakland, California, and is classified as outside IR35.

Key Responsibilities:

  • Review organizational IT policies, standards, and procedures to identify control points for risk mitigation.
  • Analyze test results and evidence to identify vulnerabilities or control deficiencies, and support stakeholders in establishing sustainable remediation plans.
  • Partner with control owners to ensure periodic updates of control documentation to reflect current environments.
  • Support the Compliance Candidateager or Senior Candidateager as needed.
  • Perform other tasks to help meet compliance commitments and organizational goals.

Key Skills:

  • Bachelor's degree in Computer Science, Business, or related field (or equivalent experience).
  • Minimum 3 years of general IT experience, including IT security or IT risk management.
  • Proficiency in Excel (worksheets, workbooks, formulas).
  • Experience managing multiple projects with conflicting priorities.
  • At least one valid and current certification such as CISA, CRIClient, CIA, CISSP, or CCNA.
  • Experience in the utility industry or with Big 4 consulting.
  • Familiarity with SOX and NIST SP800-53 security controls.
  • Strong understanding of application, database, network, and system security.
  • Experience identifying control gaps and proposing effective mitigating controls.
  • Understanding of general computing controls (GCCs) and industry standards like COBIT and ITIL.
  • Additional certifications such as CEH, ITIL, MCP/MCSE, CCNP, CISM, or PMP are preferred.
  • Strong oral and written communication skills.
  • Strong analytical and problem-solving abilities.
  • Excellent planning, organizational, and project management skills.
  • Ability to work independently in a fast-paced, dynamic environment.
  • Attention to detail and ability to manage multiple assessments simultaneously.

Salary (Rate): £55.00 hourly

City: Oakland

Country: USA

Working Arrangements: hybrid

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Job Description:

Pay Range: $63hr - $68hr

  • Review organizational IT policies, standards, and procedures to identify control points for risk mitigation.
  • Analyze test results and evidence to identify vulnerabilities or control deficiencies, and support stakeholders in establishing sustainable remediation plans.
  • Partner with control owners to ensure periodic updates of control documentation to reflect current environments.
  • Support the Compliance Candidateager or Senior Candidateager as needed.
  • Perform other tasks to help meet compliance commitments and organizational goals.

Requirement/Must Have:

  • Bachelor's degree in Computer Science, Business, or related field (or equivalent experience).
  • Minimum 3 years of general IT experience, including IT security or IT risk management.
  • Proficiency in Excel (worksheets, workbooks, formulas).
  • Experience managing multiple projects with conflicting priorities.
  • At least one valid and current certification such as CISA, CRIClient, CIA, CISSP, or CCNA.

Should Have:

  • Experience in the utility industry or with Big 4 consulting.
  • Familiarity with SOX and NIST SP800-53 security controls.
  • Strong understanding of application, database, network, and system security.
  • Experience identifying control gaps and proposing effective mitigating controls.
  • Understanding of general computing controls (GCCs) and industry standards like COBIT and ITIL.
  • Additional certifications such as CEH, ITIL, MCP/MCSE, CCNP, CISM, or PMP are preferred.

Skills:

  • Strong oral and written communication skills.
  • Strong analytical and problem-solving abilities.
  • Excellent planning, organizational, and project management skills.
  • Ability to work independently in a fast-paced, dynamic environment.
  • Attention to detail and ability to manage multiple assessments simultaneously.

Qualification And Education:

  • Bachelor's degree in Computer Science, Business, or equivalent experience
  • At least one required professional certification in IT audit, security, or risk management