IT – Cyber Security Controls Assessor
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, IT Consultant, IT Business Analyst, Information Security
IT – Cyber Security Controls Assessor (Hybrid | Oakland, CA) About the Role
We are seeking a detail-oriented Cyber Security Controls Assessor to support enterprise-wide IT compliance and security control assessments. This role focuses on evaluating General Computer Controls (GCCs) and ensuring compliance with regulatory and internal standards.
This is a hybrid position with expected onsite presence on a monthly basis (subject to change as needed).
- Deep understanding of security frameworks and IT assessment processes
- Strong attention to detail
- Experience performing structured control assessments
- Perform multi-platform IT control assessments (applications, databases, OS, middleware, monitoring tools, business processes)
- Validate and interpret control evidence
- Execute IT compliance reviews aligned with:
- NIST SP800-53 / SP800-115
- SOX
- NERC CIP
- Identify control gaps, vulnerabilities, and risks
- Recommend sustainable remediation plans
- Partner with control owners to maintain updated documentation
- Support compliance leadership as needed
Required:
- BA/BS in Computer Science, Business, or equivalent experience
- 3+ years of IT experience (IT security or IT risk management preferred)
- Experience with Excel (worksheets, formulas, reporting)
- Ability to manage multiple assessments simultaneously
- Strong analytical and communication skills
Must Have At Least One Active Certification:
- CISA
- CISSP
- CRISC
- CIA
- CCNA
- Utility industry background
- Experience with SOX and/or NIST SP800-53
- Familiarity with COBIT, ITIL frameworks
- CISM
- CEH
- PMP
- ITIL
- CCNP / MCSE
- General Computing Controls (GCCs)
- IT risk & compliance assessment
- Security frameworks & regulatory standards
- Control gap analysis
- Strong project management capabilities
💻 Client laptop will be provided (supplier laptop required temporarily if needed via Citrix access).
If you are a Bay Area-based IT Security professional with strong assessment and compliance experience, we would love to connect!
📩 Apply or reach out directly to learn more.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).