Cyber Security Controls Assessor

Pivot Point Solutions

California (MO)

Hybrid

USD 104,000 - 145,000

Full time

13 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Pivot Point Solutions, a California-based technology consulting firm, is seeking a Cyber Security Controls Assessor to help protect critical energy infrastructure by assessing and validating cybersecurity controls across IT, OT, and cloud environments.

The role requires 5+ years of experience in security controls assessment, risk management, and compliance, with knowledge of NIST CSF, NIST 800-53, CIS Controls, and NERC CIP. Hybrid work arrangement in California is provided.

Qualifications

  • Bachelor’s degree in cybersecurity or related field or equivalent experience.
  • 5+ years of cybersecurity, risk management, compliance, audit, or security controls assessment.
  • Experience with security assessments and evaluating cybersecurity controls.
  • Knowledge of frameworks such as NIST CSF, NIST 800-53, CIS Controls, and risk management methodologies.
  • Strong analytical, communication, and technical documentation skills.

Responsibilities

  • Conduct cybersecurity control assessments for enterprise IT, cloud, and OT/industrial environments.
  • Evaluate security controls against NIST CSF, NIST 800-53, NERC CIP, CIS Controls, and security policies.
  • Identify security risks, control deficiencies, and compliance gaps, and recommend corrective actions.
  • Prepare assessment reports detailing findings, risk ratings, remediation recommendations, and control effectiveness.
  • Partner with cybersecurity, engineering, IT, OT, compliance, and business stakeholders on risk identification and management.
  • Validate implementation and effectiveness of security controls for new projects, system upgrades, and technology deployments.
  • Support internal audits, regulatory reviews, and compliance initiatives related to critical infrastructure protection.
  • Track remediation activities and validate closure of cybersecurity findings.
  • Maintain assessment methodologies, standards, and procedures supporting cybersecurity programs.
  • Mentor junior assessors and contribute to continuous improvement initiatives within the Cybersecurity Risk & Compliance team.

Skills

Cybersecurity assessment
Risk management
Compliance
Regulatory knowledge
Technical documentation
Communication skills

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Azure
AWS

Job description

Pivot Point Solutions is a California-based technology consulting firm that specializes in delivering IT solutions and support for the construction and utility industries. We partner with organizations across the state to provide reliable technology services that improve operational efficiency, enhance project delivery, and support critical business systems.

Our team understands the unique technology challenges facing construction and utility organizations, from field operations and infrastructure projects to enterprise applications and cybersecurity. By combining industry expertise with responsive service, we help clients modernize their technology environments, streamline workflows, and maintain secure, reliable IT systems that support long-term growth.

Job Overview
Title: Cyber Security Controls Assessor
Sector: Information Technology / Cybersecurity
Seniority: Mid to Senior Level
Location: California (Hybrid)
Job Type: Contract
Contract Length: 6+ Months
Compensation: $104K - $145K

About the Role
PPS is seeking a Cyber Security Controls Assessor to support the protection of critical energy infrastructure through the assessment and validation of cybersecurity controls across enterprise and operational technology (OT) environments. This role evaluates compliance with cybersecurity policies, regulatory requirements, and industry standards to ensure the confidentiality, integrity, and availability of systems supporting electric and gas utility operations. The ideal candidate brings strong experience in security assessments, risk management, compliance, and control validation, with a focus on protecting critical infrastructure and supporting regulatory obligations.

Key Responsibilities

  • Conduct cybersecurity control assessments for enterprise IT, cloud, and OT/industrial control system environments
  • Evaluate security controls against NIST CSF, NIST 800-53, NERC CIP, CIS Controls, and security policies
  • Identify security risks, control deficiencies, and compliance gaps, and recommend corrective actions
  • Prepare assessment reports detailing findings, risk ratings, remediation recommendations, and control effectiveness
  • Partner with cybersecurity, engineering, IT, OT, compliance, and business stakeholders on risk identification and management
  • Validate implementation and effectiveness of security controls for new projects, system upgrades, and technology deployments
  • Support internal audits, regulatory reviews, and compliance initiatives related to critical infrastructure protection
  • Track remediation activities and validate closure of cybersecurity findings
  • Maintain assessment methodologies, standards, and procedures supporting cybersecurity programs
  • Mentor junior assessors and contribute to continuous improvement initiatives within the Cybersecurity Risk & Compliance team

Qualifications

Required:

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Engineering, IT, or related field; or equivalent experience
  • 5+ years of experience in cybersecurity, risk management, compliance, audit, or security controls assessment
  • Experience performing security assessments and evaluating cybersecurity controls
  • Knowledge of cybersecurity frameworks such as NIST CSF, NIST 800-53, CIS Controls, and risk management methodologies
  • Experience with regulatory compliance programs and audit support
  • Strong analytical, communication, and technical documentation skills
  • Ability to communicate security risks and recommendations to technical and non-technical stakeholders

Preferred:

  • Experience within electric utilities, critical infrastructure, energy, or other regulated industries
  • Knowledge of NERC CIP standards and compliance requirements
  • Experience assessing OT, SCADA, IC S, or energy management systems
  • Familiarity with cloud security environments (Azure, AWS)
  • Experience with GRC platforms
  • Professional certifications: CISSP, CISA, CRISC, GICSP, Security+, or equivalent
  • Standard office/field environment supporting critical infrastructure operations
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Controls Assessor
Cyber Security Controls Assessor

Pivot Point Solutions • United States

Hybrid
USD 104,000 - 145,000
Cyber Security Controls Assessor, Critical Infra (Hybrid)
Cyber Security Controls Assessor, Critical Infra (Hybrid)

Pivot Point Solutions • United States

Hybrid
USD 104,000 - 145,000
Cyber Security Controls Assessor — Hybrid CA, Critical Infra
Cyber Security Controls Assessor — Hybrid CA, Critical Infra

Pivot Point Solutions • California (MO)

Hybrid
USD 104,000 - 145,000
Cyber Security Controls Assessor III
Cyber Security Controls Assessor III

Pivot Point Solutions • Oakland (CA)

Hybrid
USD 69,000 - 98,000
Cyber Security Controls Assessor
Cyber Security Controls Assessor

Heyer Expectations LLC • Oakland (CA)

On-site
USD 90,000 - 120,000
Cyber Security Controls Assessor III
Cyber Security Controls Assessor III

Pivot Point Solutions • Town of Oakland (WI)

Hybrid
USD 68,000 - 98,000
Cyber Security Analyst
Cyber Security Analyst

Infobahn Softworld Inc • Oakland (CA)

Hybrid
USD 85,000 - 120,000
IT – Cyber Security Controls Assessor
IT – Cyber Security Controls Assessor

Finezi Inc. • Oakland (CA)

Hybrid
USD 90,000 - 125,000
Client laptop provided
Flexible working hours
Remote Cyber Security Controls Assessor III (Critical Infra)
Remote Cyber Security Controls Assessor III (Critical Infra)

Spectraforce Technologies • Oakland (CA)

On-site
USD 110,000 - 160,000
OT Cybersecurity Analyst
OT Cybersecurity Analyst

Attractivate Consulting Solutions • Houston (TX)

On-site
USD 110,000 - 150,000
Full benefits
Professional development