2

Cisa Remote Jobs in California (NOW HIRING)

Remote Role Responsibilities * Review simulated vendor SOC 2 reports , security questionnaires, and ... Relevant security certification, such as CISSP or CISA . * Prior task-writing, rubric-authoring, or ...

New

Sr. Auditor, Health Plan

Fresno, CA · On-site +1

$46.52 - $59.20/hr

Overview Remote or Onsite Opportunity! Opportunities for you! * Consecutively recognized as a top ... CISA - Certified Information Systems Auditor * CPA - Certified Public Accountant License * CHS ...

Sr. Auditor, Health Plan

Fresno, CA · On-site +1

$46.52 - $59.20/hr

Remote or Onsite Opportunity! Opportunities for you! * Consecutively recognized as a top employer ... CISA - Certified Information Systems Auditor * CPA - Certified Public Accountant License * CHS ...

Sr. Auditor, Health Plan

Fresno, CA · On-site +1

$80K - $98K/yr

Overview Remote or Onsite Opportunity! Opportunities for you! * Consecutively recognized as a top ... CISA - Certified Information Systems Auditor * CPA - Certified Public Accountant License * CHS ...

Cyber Security Program Manager

Sunnyvale, CA · On-site +1

$130K - $176K/yr

Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or PMP. * Experience with security and monitoring tools such as Jira, Splunk, Tenable, and Trend Micro.

IT Internal Audit Manager

Hawthorne, CA · On-site +1

$140K - $220K/yr

CISA (strongly preferred); CISSP, CIA, CISM, CRISC, or equivalent * CPA (Certified Public ... remote work will not be considered * Willingness to work long hours and weekends as needed ...

next page

Showing results 1-20

Cisa Remote information

What is a CISA remote?

CISA remote jobs refer to positions at the Cybersecurity and Infrastructure Security Agency (CISA) that allow employees to work from locations outside of traditional office environments, often from home. These roles support various cybersecurity, infrastructure protection, and emergency management missions. Remote positions can include cybersecurity analysts, IT specialists, policy advisors, and program managers, among others. Working remotely for CISA provides flexibility while contributing to national security initiatives and critical infrastructure protection.

What jobs can you get with a CISA?

A CISA (Certified Information Systems Auditor) credential qualifies individuals for roles such as IT auditor, information security auditor, compliance analyst, and risk management professional. These jobs typically involve assessing and monitoring an organization’s information systems, ensuring compliance with security standards, and using tools like audit software and frameworks such as COBIT or ISO 27001.

Is CISA still in demand?

The Certified Information Systems Auditor (CISA) certification remains highly in demand for cybersecurity and IT audit roles, as organizations prioritize information security and compliance. Professionals with CISA skills are sought after for their expertise in risk management, control assessment, and audit processes, often leading to strong job stability and competitive salaries.

What are the key skills and qualifications needed to thrive as a CISA remote?

To thrive as a CISA Remote, you need in-depth knowledge of information systems auditing, risk management, and compliance, typically supported by the CISA certification and relevant IT or audit experience. Familiarity with audit management software, data analytics tools, and frameworks like COBIT or ISO 27001 is highly valuable. Strong analytical thinking, self-motivation, and effective remote communication skills set top professionals apart in this role. These skills ensure accurate audits, secure systems, and successful collaboration with clients or teams across locations.

What are some common challenges faced by CISA professionals working remotely, and how can they be addressed?

CISA professionals working remotely often face challenges such as maintaining secure communication channels, ensuring the integrity of audit evidence, and collaborating effectively with onsite teams. To address these, it's important to leverage secure VPNs and encrypted communication tools, establish clear documentation protocols, and schedule regular virtual meetings with stakeholders. Building strong relationships with IT and business units can also help remote CISA professionals stay informed and maintain audit quality despite physical distance.

What is the difference between Cisa Remote vs Cisa Onsite?

AspectCisa RemoteCisa Onsite
Work EnvironmentRemote, flexible locationOn-site at client or company location
Required CredentialsSame certifications, including CISASame certifications, including CISA
Industry UsageCommon in consulting, auditing, cybersecurity firmsUsed in similar industries, often for on-site audits
Work FlexibilityHigh, with remote toolsLimited, based on location and client needs

Both Cisa Remote and Cisa Onsite roles require the CISA certification and involve information systems auditing. The main difference lies in the work environment: Cisa Remote offers flexibility and the ability to work from anywhere, while Cisa Onsite requires presence at specific locations. Your choice depends on your preference for remote work versus on-site engagement in the industry.

What are the most commonly searched types of Cisa jobs in California?

The most popular types of Cisa jobs in California are:

What cities in California are hiring for Cisa Remote jobs?

Cities in California with the most Cisa Remote job openings:

Infographic showing various Cisa Remote job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution.

Security Review Expert - SOC 2

Mercor

San Francisco, CA • Remote

$90 - $110/hr

Full-time

Posted 3 days ago

New


Job description

About the job

Mercor connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors include Benchmark, General Catalyst, Peter Thiel, Adam D'Angelo, Larry Summers, and Jack Dorsey.

Position: Security Expert
Type: Contract
Compensation: $90–$110/hour
Location: Remote

Role Responsibilities

  • Review simulated vendor SOC 2 reports, security questionnaires, and pen-test evidence against a buyer's security standard.
  • Catch scope mismatches and lapsed bridge letters that a surface-level review would miss.
  • Author step-level rubrics and golden responses capturing how an experienced security reviewer would judge a request or renewal.
  • Assess data-handling and sub-processor risk for vendors touching sensitive data.
  • Work independently and asynchronously to meet deadlines while improving AI model performance.

Qualifications

Must-Have

  • 8+ years of professional experience in security review, vendor risk management, or third-party risk (TPRM).
  • Hands-on experience evaluating SOC 2 reports, security questionnaires, and compliance evidence.
  • Strong written communication skills; comfortable producing structured, rubric-style feedback.

Preferred

  • Relevant security certification, such as CISSP or CISA.
  • Prior task-writing, rubric-authoring, or AI-training data experience.

Application Process (Takes 20–30 mins to complete)

  • Upload resume
  • AI interview based on your resume
  • Submit form

Resources & Support

  • For details about the interview process and platform information, please check: https://talent.docs.mercor.com/welcome
  • For any help or support, reach out to: support@mercor.com

PS: Our team reviews applications daily. Please complete your AI interview and application steps to be considered for this opportunity.