Overview
Skills
Job Details
Job Title: Cyber Security Controls Assessor - Career
Location: Oakland, CA
Duration: October 06, 2025 December 31, 2026
*LOCAL CANDIDATES ONLY. For better collaboration, HM expects candidates to be located in the Bay Area, as they may have regular in-person touch base meetings. The role is hybrid. HM expects to have the role to be onsite on a monthly basis, but will be adjusted when needed.
Key Skills:
- Deep understanding of security framework and IT assessment process; detail oriented
Qualifications Minimum Education Required:
- BA/BS in Computer Science, Business, or equivalent experience.
Minimum On-the-Job Experience
- Minimum of 3 years of general IT experience, including IT security or IT risk management experience
- Experience using Excel worksheets, workbooks, and formulas
- Experience managing multiple projects with conflicting priorities
Desired Experience
Utility Industry Experience
Big 4 experience
Demonstrated experience with Sarbanes Oxley or National Institute of Standards and Technology (NIST) SP800-53 security controls catalog.
Minimum Required License / Certification:
At least one existing certification from the following list, which must be currently maintained and valid: certification:
Cisco Certified Networking Associate (CCNA)
Certified Information Systems Auditor (CISA)
Certified in Risk and Information System Control (CRISC);
Certified Internal Auditor (CIA);
Certified Information Systems Security Professional (CISSP);
Desired License / Certification:
One or more current and valid certifications directly applicable or complementary to the role and area of expertise, including those listed above, as well as:
Certified Ethical Hacker (CEH)
Information Technology Infrastructure Library (ITIL)
Microsoft Certified Professional/Security Engineer (MCP, MCSE)
Cisco Certified Network Associate/Professional (CCNA, CCNP)
Certified Information Security Manager (CISM)
Project Management Professional (PMP).
Knowledge, Skills, and Abilities:
- Strong oral and written communication skills
- Strong analytical skills
- Understanding of application, database, network and systems security
- Understanding of general computing controls (GCCs)
- Able to identify complex control gaps.
- Understanding of generally applicable and accepted auditing standards and framework (e.g. COBIT) and best practices for IT services management (e.g., ITIL), regulatory standards and requirements (e.g. Sarbanes Oxley Act, NERC/CIP)
- Excellent planning, organizational, and project management skills
- Able to multi-task projects or assessments
- Ability to work with minimal supervision in a fast-paced environment
Regards,
Dominic Savio