Judit Inc.

Judit Inc. provides innovative labor solutions that support business growth by connecting organizations with skilled, reliable workers across a range of industr

Lead Cybersecurity Risk Assessor

Location

Florida

Posted

3 days ago

Salary

0

Seniority

Lead

Bachelor Degree

Job Description

Lead Cybersecurity Risk Assessor

Judit Inc.

Title: Lead Cybersecurity Risk Assessor (NIST / State Government) Location: Remote with Travel Throughout Florida Tagged: Cyber Security, Project Based Employment Type: Contract / Project-Based Position Summary We are seeking a Lead Cybersecurity Risk Assessor to support a large-scale public-sector cybersecurity assessment initiative involving multiple government entities across the State of Florida. The selected professional will serve as the technical lead responsible for planning, conducting, and overseeing enterprise cybersecurity risk assessments aligned with NIST SP 800-30, NIST SP 800-53 Rev. 5, and cybersecurity governance frameworks. This individual will lead assessment teams, conduct executive-level interviews, evaluate organizational controls, identify security risks, and develop strategic remediation recommendations. Candidates must possess substantial experience leading cybersecurity assessments within government, education, healthcare, or highly regulated environments. Key Responsibilities - Lead cybersecurity risk assessments across multiple organizations and locations. - Evaluate administrative, technical, and operational security controls. - Conduct executive interviews and stakeholder workshops. - Review cybersecurity policies, standards, procedures, and governance frameworks. - Perform risk identification, threat analysis, vulnerability assessments, and risk scoring. - Map findings to NIST Cybersecurity Framework and NIST 800-53 control families. - Develop remediation strategies, implementation roadmaps, and risk mitigation plans. - Prepare executive briefings, technical reports, and risk assessment documentation. - Provide quality assurance oversight for assessment teams and project deliverables. Required Qualifications - Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field. - 10+ years of cybersecurity, risk management, or information assurance experience. - 7+ years leading enterprise cybersecurity assessments. - Demonstrated experience with NIST SP 800-30 and NIST SP 800-53. - Experience supporting state government, federal government, education, or public-sector organizations. - Strong report-writing and executive presentation skills. Preferred Certifications - CISSP - CISA - CRISC - CISM - CGEIT Candidates must be able to provide: - Detailed resume. - Descriptions of comparable cybersecurity assessment projects. - Scope, size, and complexity metrics for prior engagements. - Client references where permissible. - Examples of risk assessment methodologies utilized. - Evidence of participation in NIST-based assessment initiatives. Preferred Experience - Statewide cybersecurity assessment programs. - Education sector cybersecurity initiatives. - Government audit and compliance reviews. - Multi-site assessments involving 20+ locations. - Executive-level risk reporting and remediation planning. Job # 3714

Related Categories

Related Job Pages

More Security Engineer Jobs

Kyndryl logo

Cybersecurity Auditor

Kyndryl

We design, build, manage and modernize the mission-critical technology systems that the world depends on every day.

Full TimeRemoteTeam 10,001+Since 2021H1B Sponsor

• Understand and execute the audit process using a risk-based audit approach • Perform analysis of the process and associated risks • Develop and conduct formal testing to determine if controls are effective to mitigate or manage risks • Communicate the impact for achieving objectives • Develop recommendations and prepare a final report

Brazil

IT Network Security Engineer

EagleBank - Eagle Bancorp, Inc.

Founded in 1998, EagleBank is a community-focused financial institution offering a wide range of financial services, including personal banking, commercial bank

Assist with network security operations, analyze and resolve vulnerability issues, generate reports, and document activities related to various security controls and technologies to ensure robust network security and compliance.

Maryland
ARSIEM Corporation logo

Security Specialist

ARSIEM Corporation

At ARSIEM, we are committed to serving our employees, clients, and our Nation by driving advances in Cybersecurity

Full TimeRemoteTeam 51-200H1B No Sponsor

• Support security, privacy, and governance activities across the Microsoft 365 cloud suite. • Assist with data readiness planning and integration of Microsoft Purview to protect sensitive data. • Support management of user permissions, data retention, compliance settings, and enterprise policies. • Assist with documentation and management of Security Change Requests and audit logging solutions. • Support Microsoft security and cyber architecture activities related to M365 services. • Assist with security and configuration support for SharePoint Online, OneDrive for Business, Exchange Online, Teams, Power Platform, Copilot, Azure/Azure AD, Intune, and AvePoint Online Services. • Support AvePoint Online Services security capabilities, including tenant-to-tenant considerations, Splunk Enterprise integration, bring-your-own-key configurations, IP restrictions, SFTP, and related interfaces. • Collaborate with systems support staff and technical teams to identify, mitigate, and document risks. • Contribute to bi-weekly and monthly status reporting, including action items, risks, mitigations, escalations, accomplishments, and closures.

United States
Job Closed
harrison.ai logo

Cybersecurity Engineer

harrison.ai

On a mission to raise the standard of healthcare for millions of patients every day. Through our clinical Al solutions.

Full TimeRemoteTeam 51-200Since 2018H1B No Sponsor

• ISMS management and compliance. Manage and maintain the Information Security Management System, ensuring ongoing compliance with ISO 27001, GDPR, HIPAA, and other applicable frameworks. • Cybersecurity assessments and risk remediation. Conduct cybersecurity assessments and audits; triage and drive remediation of identified risks in collaboration with engineering teams. • Policies and documentation. Author and maintain cybersecurity policies, procedures, and controls documentation to support Cybersecurity and Governance requirements. • Technical security operations. Support cybersecurity operations and IT on technical security tooling, firewalls, networking, endpoint protection, and SIEM. • Security questionnaires and third-party vetting. Respond to bids, tenders, and third-party security vetting. • Security culture and awareness. Champion a security first culture across the organisation: create awareness programs, run training, and embed security-by-design thinking into how teams work. • Data security and governance. Support data security and data governance initiatives across the organisation. • Demonstrably AI-forward. Uses AI in their own workflows and can point to concrete automations they have built or commissioned to take work out of IT and operations.

Australia