This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Robert Half (Technology Solutions) is searching for an Cyber Security Analyst (NIST Evidence & Compliance) with a background in NIST Controls / Evidence Gathering, GRC, Audit-Prep, Documentation, and Microsoft Environments. If this sounds like your background, then this Cyber Security Analyst (NIST Evidence & Compliance) role is for you. For this opportunity, you will work onsite/hybrid in Chatsworth, CA area.
Job Responsibility
Must Fully Understand NIST SP 800-171 Controls / what is needed (110 Security Controls in place)
Completed Self-Assessment (met some Controls – other Controls not satisfied)
Gather Evidence / Artifacts for Audit-Readiness
Support Third-Party Assessors during Compliance Assessment
Prepare SSPs / POA&Ms / Data Flow & Network Diagrams / Security Training Records / Excel Reports
Review Audit Logs to Support Monitoring, Investigation, Reporting
Access Control Reviews / Maintain Privileged Account Documentation
Requirements
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, equivalent experience considered
3–5+ years of cybersecurity, compliance, or IT security experience
Experience with NIST SP 800-171, DFARS 252.204-7012, CMMC Level 2
Microsoft Active Directory, Microsoft 365 / Azure, Security logging platforms, Endpoint security tools
Understanding of cybersecurity documentation and evidence management practices
Experience preparing audit documentation and supporting assessments
Strong documentation and organizational skills
Ability to communicate technical concepts to non-technical personnel
Nice to have
Experience supporting defense contractors handling CUI
Familiarity with Vulnerability management tools, Microsoft Defender
SonicWall firewalls, Remote access security
Industry certifications preferred: CompTIA Security+, Certified Information Systems Security Professional (CISSP), Microsoft Certified Professional (MCP) / Microsoft Certified IT Professional (MCITP), Certified Information Security Manager (CISM), Certified CMMC Professional (CCP)