Cyber Security Controls Assessor III
Job Summary
Our client, a major energies & utilities provider, is seeking a Cyber Security Controls Assessor III to join them in support of protecting critical energy infrastructure through the assessment, validation, and continuous improvement of cybersecurity controls across enterprise IT and Operational Technology (OT) environments. This role will be responsible for evaluating security controls against regulatory standards, identifying risks and compliance gaps, and partnering with stakeholders to strengthen the organization's cybersecurity posture.
Contract Details
- Work Model: Remote
- Location: California
Core Responsibilities
- Conduct cybersecurity control assessments across enterprise IT, cloud, and OT/Industrial Control System (ICS) environments
- Evaluate security controls against industry standards and regulatory requirements including NIST CSF, NIST 800-53, NERC CIP, CIS Controls, and internal security policies
- Identify security risks, control deficiencies, and compliance gaps while providing actionable remediation recommendations
- Develop detailed assessment reports outlining findings, risk ratings, remediation plans, and overall control effectiveness
- Partner with cybersecurity, engineering, IT, OT, compliance, and business stakeholders to effectively manage cybersecurity risks
- Validate the design, implementation, and effectiveness of security controls for new projects, system upgrades, and technology deployments
- Support internal audits, regulatory reviews, and compliance initiatives related to critical infrastructure protection
- Track remediation efforts and validate closure of identified findings
- Contribute to the enhancement of assessment methodologies, standards, and procedures
- Mentor junior team members and support continuous improvement initiatives within the Cybersecurity Risk & Compliance function
Required Skills & Experience (Must-Haves)
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Engineering, Information Technology, or related field; equivalent experience will be considered
- 5+ years of experience in cybersecurity, risk management, compliance, auditing, or security controls assessment
- Hands-on experience performing security assessments and evaluating cybersecurity controls
- Strong knowledge of cybersecurity frameworks and standards, NIST Cybersecurity Framework (CSF), NIST 800-53, CIS Controls, Risk management methodologies
- Experience supporting regulatory compliance programs and audits
- Excellent analytical, technical documentation, and communication skills
- Ability to clearly communicate security risks and remediation recommendations to both technical and non-technical audiences
Preferred Skills & Experience (Nice-to-Haves)
- Experience within electric utilities, critical infrastructure, energy, or other highly regulated industries
- Knowledge of NERC CIP standards and compliance requirements
- Experience assessing Operational Technology (OT), SCADA, Industrial Control Systems (ICS), or Energy Management Systems
- Familiarity with cloud security environments including Azure and AWS
- Experience using Governance, Risk, and Compliance (GRC) platforms
- Professional certifications in CISSP, CISA, CRISC, GICSP, Security+, Equivalent security certifications
Key Competencies & Behaviors
- Strong risk assessment and analytical capabilities
- Detail-oriented with a focus on compliance and security effectiveness
- Ability to collaborate across technical and business teams
- Strong written and verbal communication skills
- Proven ability to manage multiple priorities in a fast-paced environment
- Self-motivated with a continuous improvement mindset
- Ability to mentor and guide less experienced team members
Work Environment
- Work Model: Remote
- Candidates must reside in California
- 14-week contract engagement
- Project dates: September 21, 2026 through December 31, 2026
Compensation & Benefits
- Pay Range: The approximate pay range for this position is between $49.00 and $70.00. Please note that the pay range provided is a good faith estimate. Final compensation may vary based on factors including but not limited to background, knowledge, skills, and location. We comply with local wage minimums.
- Medical, Dental, & Vision Insurance Plans
- Employee-Owned Profit Sharing (ESOP)
- 401K offered
About KellyMitchell
At KellyMitchell, our culture is world class. We’re movers and shakers! We don’t mind a bit of friendly competition, and we reward hard work with unlimited potential for growth. This is an exciting opportunity to join a company known for innovative solutions and unsurpassed customer service. We're passionate about helping companies solve their biggest IT staffing & project solutions challenges. As an employee-owned, women-led organization serving Fortune 500 companies nationwide, we deliver expert service at a moment's notice.
Marketing Disclosure
By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from KellyMitchell and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at https://www.careers.kellymitchell.com/privacy-policy
[142909]