CrawlJobs Logo

Cyber Security Analyst (NIST Evidence & Compliance)

United States, Chatsworth Employment contract · Job Posted June 04, 2026
Apply Position
Job Link Share

Job Description

Robert Half (Technology Solutions) is searching for an Cyber Security Analyst (NIST Evidence & Compliance) with a background in NIST Controls / Evidence Gathering, GRC, Audit-Prep, Documentation, and Microsoft Environments. If this sounds like your background, then this Cyber Security Analyst (NIST Evidence & Compliance) role is for you. For this opportunity, you will work onsite/hybrid in Chatsworth, CA area.

Job Responsibility

  • Must Fully Understand NIST SP 800-171 Controls / what is needed (110 Security Controls in place)
  • Completed Self-Assessment (met some Controls – other Controls not satisfied)
  • Gather Evidence / Artifacts for Audit-Readiness
  • Support Third-Party Assessors during Compliance Assessment
  • Prepare SSPs / POA&Ms / Data Flow & Network Diagrams / Security Training Records / Excel Reports
  • Review Audit Logs to Support Monitoring, Investigation, Reporting
  • Access Control Reviews / Maintain Privileged Account Documentation

Requirements

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, equivalent experience considered
  • 3–5+ years of cybersecurity, compliance, or IT security experience
  • Experience with NIST SP 800-171, DFARS 252.204-7012, CMMC Level 2
  • Microsoft Active Directory, Microsoft 365 / Azure, Security logging platforms, Endpoint security tools
  • Understanding of cybersecurity documentation and evidence management practices
  • Experience preparing audit documentation and supporting assessments
  • Strong documentation and organizational skills
  • Ability to communicate technical concepts to non-technical personnel

Nice to have

  • Experience supporting defense contractors handling CUI
  • Familiarity with Vulnerability management tools, Microsoft Defender
  • SonicWall firewalls, Remote access security
  • Industry certifications preferred: CompTIA Security+, Certified Information Systems Security Professional (CISSP), Microsoft Certified Professional (MCP) / Microsoft Certified IT Professional (MCITP), Certified Information Security Manager (CISM), Certified CMMC Professional (CCP)
  • PowerShell scripting preferred

What we offer

  • Medical
  • Vision
  • Dental
  • Life and disability insurance
  • 401(k) plan

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cyber Security Analyst (NIST Evidence & Compliance)

8 matching positions

Information Security Assurance Analyst

Information Security Assurance Analyst
Location
Location
United Kingdom , Portsmouth
Salary
Salary:
Not provided
talenthawk.com Logo
TalentHawk
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • CISM/CISSP/CCSP/TOGAF/CRISC/AWS Solution Architect or equivalent certified or willing to undergo certification on the job
  • Must have Security Clearance or be eligible for security cleared
  • Must have experience in Cloud (IaaS, Paas, SaaS)
  • Must have proven expertise in three of the following security areas: identity and access management, network security, end user security, threat modelling, Security Risk and Compliance, penetration testing
  • Must have at least 3 years’ cyber security experience
  • Good understanding and practical experience of Cyber Security Frameworks and standards such as NCSC CAF, NIST Framework, ISO 27001, ISO27005, IEC62443 etc.
  • Good understanding of Cyber Assurance Framework and experience with working with Regulators and providing compliance updates
  • The individual should be educated to degree level in a relevant discipline
Job Responsibility
Job Responsibility
  • Perform a threat modelling exercise of all projects and provide mitigating cyber security requirements to help ensure the secure delivery of compliant systems, applications and business processes
  • Review both high/low level architecture definition documents for compliance against security policies, standards and regulatory requirements, defining Cyber non-functional requirements
  • Attend Technical Design Authority (TDA meeting to provide security signoffs
  • Work within the Security Assurance team consisting of security assurance analyst / consultants providing thought leadership across several assurance functions, and helping smooth engagements with project delivery teams
  • Perform cyber security risk assessments, compliance checks, audits and reviews to ensure that appropriate security controls are in place and highlight any deficiencies and gaps for management consideration
  • Provide support in scoping and overseeing pen tests and re-tests
  • Review recommendations and collaborate with the relevant teams to support remediation efforts
  • Provide cyber security assurance activities by ensuring implemented solutions are a replica of agreed and approved architecture definition documents, helping to facilitate penetration testing, whilst providing security advice and guidance
  • Support to management, BAU and projects to comply with legal and regulatory requirements
  • Where required, propose solutions and coordinate delivery of mitigating actions to ensure risk levels are aligned with risk appetite
  • Fulltime
Read More
Arrow Right

Senior Consultant - CRM

As a Senior Consultant in Unit 42 you will have the opportunity to work across a...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation’s security operations program, organisational structures, and capabilities
  • Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms
  • Experience in security operations design, engineering and/or analysis and investigations, ideally in complex environments, with security event correlations across a variety of sources i.e. cloud, network, endpoint, logs
  • Ability to perform detailed assessments, identify areas for improvement and make recommendations to transform an organisation's cyber security operations and capabilities to better protect, detect and rapidly respond to modern threats
  • Demonstrated experience in improving an organisations security operations capabilities such as improvements in asset visibility, threat detection capabilities, automation techniques, case management, enablement of compliance and regulatory requirements
  • Experience in conducting threat hunting and/or compromise assessments to identify active or dormant indicators of compromise (IoCs) or evidence of unknown threats within an organisations digital environment
  • Relevant industry certifications including GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP
  • Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
  • 3+ years of experience performing cloud security advisement and risk assessments based upon industry-accepted standards
  • Hands-on experience with a cloud hosting provider (AWS, Azure, GCP, etc)
Job Responsibility
Job Responsibility
  • work across a number of proactive cyber security domains including Cloud Security, Security Operations, Cyber Risk Management and Artificial Intelligence in cyber security
  • deliver the best consulting outcomes for clients, as they work to address the challenges associated with today’s cyber threat landscape
  • Fulltime
Read More
Arrow Right

Cyber Security Engineer

We are seeking an experienced and hands-on Cyber Security Engineer with a strong...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
coinshares.com Logo
CoinShares
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years’ experience in a cyber security engineering, cloud security, or infrastructure security role
  • Strong hands-on experience securing AWS environments in production
  • Bachelor’s degree in Cyber Security, Computer Science, Information Technology, or equivalent practical experience
  • Relevant certifications are desirable (e.g. AWS Security Specialty, CISSP, CCSP, GSEC)
  • Experience in the financial services sector or other regulated environments would be advantageous
  • Demonstrated understanding of cloud security concepts, particularly within AWS
  • Hands-on experience configuring and operating AWS GuardDuty
  • Strong knowledge of AWS IAM, networking (VPCs, security groups, NACLs), logging, and monitoring
  • Experience with cloud security posture management and vulnerability management tools (e.g. Wiz, Qualys, Rapid7)
  • Familiarity with infrastructure-as-code and automation (e.g. Terraform, CloudFormation)
Job Responsibility
Job Responsibility
  • Design, implement, and maintain security controls across AWS environments
  • Configure, manage, and optimise AWS GuardDuty, including alert tuning, findings triage workflows, and integrations with SIEM and incident response processes
  • Lead cloud security monitoring, detection engineering, and preventative control design
  • Work closely with the Cyber Security Analyst on incident response, providing technical expertise during investigations
  • Implement and manage cloud-native security services (e.g. AWS Security Hub, IAM, CloudTrail, VPC security controls)
  • Partner with DevOps and engineering teams to embed security into CI/CD pipelines and infrastructure-as-code
  • Conduct cloud security architecture reviews and threat modelling for new systems and services
  • Support vulnerability management and remediation efforts across cloud and hybrid environments
  • Contribute to compliance initiatives (e.g. ISO 27001, SOC 2) through control design, evidence generation, and audit support
  • Develop and maintain security standards, patterns, and technical documentation
Read More
Arrow Right

Senior Consultant - CRM (Proactive Services) Unit 42

As a Senior Consultant in Unit 42 you will have the opportunity to work across a...
Location
Location
South Korea , Seoul
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of consulting experience in SOC, security engineering, SIEM administration, and incident management and demonstrated success with serving large, multinational organisations in designing and implementing an organisation's security operations program, organisational structures, and capabilities
  • Possess a deep technical knowledge in Security Incident and Event Management (SIEM) platforms, Security Orchestration and Response (SOAR) technologies, Endpoint Protection and Response/Next Gen Protection and Response (EDR/XDR) tools, Next GenFirewalls, Threat Intelligence and Hunting platforms
  • Defensive Security Skills (desired)
  • Experience in security operations design, engineering and/or analysis and investigations, ideally in complex environments, with security event correlations across a variety of sources i.e. cloud, network, endpoint, logs
  • Ability to perform detailed assessments, identify areas for improvement and make recommendations to transform an organisation's cyber security operations and capabilities to better protect, detect and rapidly respond to modern threats
  • Demonstrated experience in improving an organisations security operations capabilities such as improvements in asset visibility, threat detection capabilities, automation techniques, case management, enablement of compliance and regulatory requirements
  • Experience in conducting threat hunting and/or compromise assessments to identify active or dormant indicators of compromise (IoCs) or evidence of unknown threats within an organisations digital environment
  • Relevant industry certifications including GIAC Defensible Security Architect (GDSA), GIAC Intrusion Analyst (GCIA), GIAC Continuous Monitoring (GMON), CISSP
  • Understanding of cyber risk frameworks or industry standards such as 800-53, ISO 27001/2, PCI, CIS 18, CMMC
  • 3+ years of experience performing cloud security advisement and risk assessments based upon industry-accepted standards
Job Responsibility
Job Responsibility
  • SOC Advisory
  • Principal Cloud Security
  • Principal Cyber Risk Management
Read More
Arrow Right

Cyber Security Analyst

The Cybersecurity Analyst will collaborate with IT, engineering, and compliance ...
Location
Location
United States , Austin
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 1–2 years of experience in Cybersecurity, SOC, IT Security, or a related analytical role
  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field (or equivalent experience)
  • Working knowledge of cybersecurity fundamentals including networking, operating systems, and threat vectors
  • Experience or exposure to security tools such as SIEM, EDR, antivirus, vulnerability scanners, or firewalls
  • Basic understanding of incident response lifecycle and security monitoring
  • Familiarity with security frameworks and standards (NIST, CIS, ISO 27001, HIPAA, etc.)
  • Strong analytical, problem-solving, and attention-to-detail skills
  • Good written and verbal communication skills
  • Ability to work collaboratively in a fast-paced, team-oriented environment
Job Responsibility
Job Responsibility
  • Monitor, analyze, and triage security alerts and events from SIEM, EDR, IDS/IPS, and other security tools
  • Investigate potential security incidents, document findings, and support containment and remediation efforts
  • Assist with log analysis, threat detection, and root-cause analysis of security events
  • Support vulnerability scanning, assessment, and remediation tracking
  • Collaborate with IT Infrastructure, Cloud, Application, and Compliance teams on security initiatives
  • Assist with access reviews, identity and access management (IAM), and privilege monitoring
  • Support implementation and validation of security controls aligned with organizational policies
  • Participate in incident response exercises and post-incident reviews
  • Assist with audits, risk assessments, and compliance activities (HIPAA, NIST, ISO, SOC 2, etc.)
  • Maintain security documentation including incident reports, runbooks, procedures, and evidence
What we offer
What we offer
  • Healthcare (medical, dental, and vision plans)
  • 401(k) and retirement plans
  • Commuter benefits
  • Employee and vendor discounts
  • Employee Assistance Program (EAP)
Read More
Arrow Right

SOC Analyst

SOC Analyst – SC Cleared – 12 Month Contract – Hereford
Location
Location
United Kingdom , Hereford
Salary
Salary:
55.00 - 75.00 GBP / Hour
morson.com Logo
Morson Talent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Previous experience in a SOC, IT Operations, or security support role
  • Understanding of key security concepts including malware, phishing, lateral movement and privilege escalation
  • Working knowledge of network fundamentals, windows/Linux system logs and authentication systems
  • Working knowledge of SIEM platforms (e.g. Microsoft sentinel, Splunk, Elastic, QRadar)
  • Awareness of security frameworks and methodologies (NIST CSF, MITRE ATT&CK, ISO27001)
Job Responsibility
Job Responsibility
  • Alert Triage: Review and assess alerts escalated by the outsourced SOC
  • validate their accuracy and determine potential impact
  • Initial Investigation: Perform first-line investigation using available tools (SIEM, Device Logs, firewall logs and SIEM alerts)
  • User Interaction: Engage with affected end users or asset owners to collect additional information, verify events, or guide immediate containment steps (e.g. asset isolation, password reset)
  • Escalation: Escalate confirmed or high severity incidents to the Level 2 SOC (outsourced) or internal incident response teams, ensuring complete and accurate handoff documentation
  • Incident Documentation: Create and maintain detailed case notes, timelines, and evidence within the case management system to support investigations and compliance requirements
  • Collaboration: Serve as the coordination point between the security team and the external SOC partner, maintaining strong communication and situational awareness
  • Playbook Execution: follow established triage and escalation playbooks
  • suggest improvements based on recurring issues or inefficiencies
  • Threat Awareness: Maintain awareness of current cyber threats, attacker techniques (MITRE ATT&CK), and industry trends relevant to the organisations threat landscape
Read More
Arrow Right

Senior IT Risk Analyst

Berkshire Hathaway Specialty Insurance (BHSI) has an exciting opportunity for a ...
Location
Location
United States , Boston
Salary
Salary:
95000.00 - 125000.00 USD / Year
bhspecialty.com Logo
Berkshire Hathaway Specialty Insurance
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years of experience in IT risk, IT audit/compliance, or cyber GRC
  • Experience running RCSAs, defining KRIs/KPIs, and presenting risk insights to senior stakeholders
  • Strong documentation skills, including writing risk narratives, control designs, control matrices, testing procedures, and remediation plans
  • Effective communication and partnership skills
  • able to challenge constructively and receive challenge professionally
  • Experience conducting vendor risk reviews, including SOC 2 analysis, control gap identification, and remediation follow‑up
  • Solid background knowledge of major risk and control frameworks (Technology, Cyber, Enterprise), such as NIST CSF, COSO ERM, COBIT, etc.
  • Working knowledge of U.S. IT regulations (e.g., SOX, CCPA/CPRA, PCI, NY‑DFS) is recommended
  • Ability to work in a team-based environment and communicate effectively and efficiently with others domestically and globally
Job Responsibility
Job Responsibility
  • Lead risk identification, risk assessment, and ongoing monitoring
  • maintain the IT risk register and ensure risks map to business objectives and risk appetite/tolerances
  • Drive Risk and Control Self‑Assessments (RCAs) with different risk and control owners
  • advise on control design for identity & access, change/release, resiliency/DR, cloud security, data protection, and vulnerability management
  • Define and socialize KRIs/KPIs, risk dashboards, trends, and heat maps
  • deliver clear status to Technology leadership, and key stakeholders
  • Partner with Vendor Risk Management Team to evaluate critical vendors (including AI‑enabled services), review SOC reports/certifications, assess control gaps, and track remediation/compensating controls through closure
  • Track risk issues, action plans, and target dates
  • validate remediation and retest where needed
  • participate in lessons‑learned and scenario exercises
What we offer
What we offer
  • Comprehensive Health, Dental and Vision benefits
  • Disability Insurance (both short-term and long-term)
  • Life Insurance (for you and your family)
  • Accidental Death & Dismemberment Insurance (for you and your family)
  • Flexible Spending Accounts
  • Health Reimbursement Account
  • Employee Assistance Program
  • Retirement Savings 401(k) Plan with Company Match
  • Generous holiday and Paid Time Off
  • Tuition Reimbursement
  • Fulltime
Read More
Arrow Right

Sr. Accountant

We are looking for an experienced Sr. Accountant to support corporate accounting...
Location
Location
United States , Honolulu
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Accounting is required
  • At least 5 years of accounting experience, with background in corporate accounting and financial reporting preferred
  • Strong knowledge of generally accepted accounting principles, financial statement preparation, internal controls, and account reconciliation processes
  • Experience managing month-end close activities, journal entries, accrual accounting, general ledger analysis, and accounts payable functions
  • Familiarity with Workday or another large-scale ERP platform is preferred
  • Advanced Microsoft Excel skills and solid proficiency with Microsoft Office applications are required
  • Ability to review legal and financial documents, analyze complex data, protect confidential information, and communicate effectively across all levels of an organization
  • CPA designation is preferred
Job Responsibility
Job Responsibility
  • Prepare and evaluate financial statements, supporting schedules, and detailed workpapers to ensure accuracy and completeness
  • Lead complex journal entry preparation, oversee month-end close activities, and record accruals, cash receipts, and disbursements in a timely manner
  • Reconcile general ledger accounts, investigate balance fluctuations, and provide clear explanations for monthly and quarterly variances
  • Support recurring and ad hoc reporting needs, including intercompany activity review, consolidation support, and year-end or quarter-end deliverables
  • Review contracts and other legal documents to determine accounting implications and document the appropriate treatment for nonroutine transactions
  • Partner with external auditors by assembling audit support, responding to requests, and preparing documentation for interim and annual reviews
  • Maintain project and budget data within Workday, including contract tracking and payment application oversight
  • Help oversee accounts payable operations by monitoring invoice workflows, resolving system exceptions, supporting users, and coordinating communication with vendors
  • Prepare and review AP-related reconciliations, 1099 reporting support, vendor account analysis, and documentation retention in line with company policy and tax requirements
  • Collaborate with operations, asset management, corporate accounting, and other teams while supervising delegated work, training staff on AP-related tasks, and assisting with special projects as needed
What we offer
What we offer
  • Medical
  • Vision
  • Dental
  • Life and disability insurance
  • 401(k) plan
  • Fulltime
Read More
Arrow Right