Cyber Security Controls Assessor III Global Software Resources - 3.2 Oakland, CA Job Details Contract $72 an hour 3 hours ago Qualifications Risk management compliance audits Content creation for technical audiences
NIST SP 800-53
Information security audit implementation Technical documentation Security risk assessment investigation Regulatory compliance analysis Technical writing experience within technology Information security auditing
Security Testing Full Job Description Job Title:
Cyber Security Controls Assessor III Location:
Oakland, CA Duration:
September 21, 2026 - December 31 ,2026
Pay Rate:
$72/hr. W2
Account Manager Notes:
Manager would like this worker to be remote but living in
California Job Description:
Cyber Security Controls Assessor III Position Summary Seeking a Cyber Security Controls Assessor III to support the protection of critical energy infrastructure through the assessment and validation of cybersecurity controls across enterprise and operational technology (OT) environments. This role is responsible for evaluating compliance with cybersecurity policies, regulatory requirements, and industry standards to ensure the confidentiality, integrity, and availability of systems supporting electric and gas operations. The ideal candidate will possess strong experience in security assessments, risk management, compliance, and control validation, with a focus on protecting critical infrastructure and supporting regulatory obligations. Key Responsibilities Conduct cybersecurity control assessments for enterprise IT, cloud, and OT/industrial control system environments. Evaluate security controls against industry standards and regulatory requirements, including NIST Cybersecurity Framework (CSF), NIST 800-53, NERC
CIP, CIS
Controls, security policies. Identify security risks, control deficiencies, and compliance gaps, and recommend corrective actions. Prepare assessment reports detailing findings, risk ratings, remediation recommendations, and overall control effectiveness. Partner with cybersecurity, engineering, IT, OT, compliance, and business stakeholders to ensure risks are identified and appropriately managed. Validate implementation and effectiveness of security controls for new projects, system upgrades, and technology deployments. Support internal audits, regulatory reviews, and compliance initiatives related to critical infrastructure protection. Track remediation activities and validate closure of cybersecurity findings. Assist in maintaining assessment methodologies, standards, and procedures to support cybersecurity program. Mentor junior assessors and contribute to continuous improvement initiatives within the Cybersecurity Risk & Compliance team. Required Qualifications Bachelor's degree in Cybersecurity, Information Security, Computer Science, Engineering, Information Technology, or related field; or equivalent experience. 5+ years of experience in cybersecurity, risk management, compliance, audit, or security controls assessment. Experience performing security assessments and evaluating cybersecurity controls. Knowledge of cybersecurity frameworks such as
NIST CSF, NIST 800-53, CIS
Controls, and risk management methodologies. Experience with regulatory compliance programs and audit support. Strong analytical, communication, and technical documentation skills. Ability to communicate security risks and recommendations to technical and non-technical stakeholders. Preferred Qualifications Experience within electric utilities, critical infrastructure, energy, or other regulated industries. Knowledge of
NERC CIP
standards and compliance requirements. Experience assessing Operational Technology (OT), SCADA, Industrial Control Systems (ICS), or energy management systems. Familiarity with cloud security environments, including Azure and AWS. Experience with governance, risk, and compliance (GRC) platforms. Professional certifications such as CISSP, CISA, CRISC, GICSP, Security+, or equivalent