1

Cyber Auditor Jobs in Oregon (NOW HIRING)

... evolving cyber threats, including external adversaries and insider threats. 9th Way Insignia is ... Coordinate with auditors, assessors, Government representatives, cybersecurity SMEs, system owners ...

New

... forms, procedures, and annual Cyber Awareness.* Manage the preparation, transmission ... Work with agencies and auditor directly on inconsistent requests. Serve as a resource/liaison for ...

New

Compliance Manager

Tigard, OR · On-site

$75 - $85/hr

... forms, procedures, and annual Cyber Awareness.* Manage the preparation, transmission ... Work with agencies and auditor directly on inconsistent requests. Serve as a resource/liaison for ...

Posted today

Compile miscellaneous work papers for year-end review by outside auditors. * General department ... With a rise in cyber-criminal activity, please note Hanna will never: -Ask for any sensitive ...

Compile miscellaneous work papers for year-end review by outside auditors. * General department ... With a rise in cyber-criminal activity, please note Hanna will never: -Ask for any sensitive ...

Compliance Manager

Tigard, OR · On-site

$75K - $85K/yr

... forms, procedures, and annual Cyber Awareness.* Manage the preparation, transmission ... Work with agencies and auditor directly on inconsistent requests. Serve as a resource/liaison for ...

New

Compile miscellaneous work papers for year-end review by outside auditors. * General department ... With a rise in cyber-criminal activity, please note Hanna will never: -Ask for any sensitive ...

Cyber Auditor information

See Oregon salary details

$40.7K

$98.1K

$159.7K

How much do cyber auditor jobs pay per year?

As of Sep 6, 2026, the average yearly pay for cyber auditor in Oregon is $98,113.00, according to ZipRecruiter salary data. Most workers in this role earn between $76,100.00 and $118,400.00 per year, depending on experience, location, and employer.

What is a cyber auditor?

A Cyber Auditor is a professional responsible for evaluating and assessing an organization's cybersecurity policies, procedures, and controls to ensure compliance with regulations and industry standards. They identify vulnerabilities, review security protocols, and recommend improvements to protect sensitive data and digital assets. Cyber Auditors often conduct regular audits, prepare detailed reports, and work closely with IT and management teams to enhance overall cybersecurity posture.

What are the key skills and qualifications needed to thrive as a cyber auditor?

To thrive as a Cyber Auditor, you need a strong understanding of cybersecurity frameworks, risk management, and auditing principles, often supported by a degree in information security or related fields and certifications like CISA or CISSP. Familiarity with tools such as vulnerability scanners, SIEM systems, and compliance management software is essential. Strong analytical thinking, attention to detail, and effective communication skills help in identifying risks and conveying findings to stakeholders. These skills and qualifications are crucial for ensuring organizations maintain robust security postures and comply with regulatory requirements.

What are some typical challenges cyber auditors face when conducting audits, and how can these be addressed?

Cyber Auditors often encounter challenges such as rapidly evolving threats, incomplete documentation, and resistance to change from staff. To address these issues, auditors should stay current with cybersecurity trends, maintain strong communication with IT teams, and use standardized frameworks like NIST or ISO 27001. Building collaborative relationships with stakeholders and promoting a culture of security awareness can also help overcome resistance and ensure successful audits.

What is the difference between Cyber Auditor vs Cyber Security Analyst?

AspectCyber AuditorCyber Security Analyst
CertificationsISO 27001 Lead Auditor, CISACompTIA Security+, CISSP
Work EnvironmentAudit firms, corporate compliance teamsSecurity operations centers, IT departments
Employer & IndustryFinancial, healthcare, governmentAny industry with IT infrastructure
Primary FocusAssessing compliance, evaluating controlsMonitoring security, incident response

While both roles focus on cybersecurity, a Cyber Auditor primarily evaluates an organization's compliance and controls through audits, whereas a Cyber Security Analyst actively monitors and responds to security threats. Understanding these differences helps organizations assign the right professionals to their cybersecurity needs.

Is a cyber auditor a high paying job?

Cyber auditors typically earn competitive salaries, especially with experience, certifications like CISA, and knowledge of cybersecurity frameworks. Salaries can vary based on industry, location, and level of expertise, but the role is generally considered well-compensated within cybersecurity careers.

What are popular job titles related to Cyber Auditor jobs in Oregon?

For Cyber Auditor jobs in Oregon, the most frequently searched job titles are:

What cities in Oregon are hiring for Cyber Auditor jobs?

Cities in Oregon with the most Cyber Auditor job openings:

Infographic showing various Cyber Auditor job openings in Oregon as of August 2026, with employment types broken down into 90% Full Time, 8% Part Time, and 2% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $98,113 per year, or $47.2 per hour.

Cyber Identity - PlainID/PBAC Engineering Manager II

Deloitte

Portland, OR

Full-time

Re-posted 3 days ago


Key responsibilities

  • Configure and implement the PlainID Authorization Platform within client environments, including policy modelling and decision-point/information-point setup.

  • Lead technical discussions with enterprise architects and IAM stakeholders, and oversee the delivery of PBAC/ABAC authorization tools.

  • Design and support the full policy lifecycle, troubleshoot integration issues, and produce technical documentation for clients and internal teams.


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 93 frontline employees who took The Breakroom Quiz

47th of 154 rated financial services


Job description

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Recruiting for this role ends on 12/31/2026.

Position Summary
As an experienced PlainID professional at Deloitte Consulting, you will be responsible for delivering high-quality work products within defined timelines while providing delivery and technical leadership to the PBAC engagement team who delivers the PBAC/ABAC authorization tools including PlainID. This role combines deep technical ownership with engineering expertise, governance, and stakeholder management.

Work you'll do

As a PlainID professional, you will:

  • Configure and implement the PlainID Authorization Platform within client environments, including policy modelling and decision-point/information-point setup.
  • Lead technical discussions with Enterprise architects and IAM stake holders.
  • Lead a PBAC team for successful and seamless delivery.
  • Design fine-grained, attribute-based access policies (PBAC/ABAC) that translate business rules into technical controls, including row- and column-level data access restrictions where needed.
  • Integrate PlainID with client identity providers (Okta, Microsoft Entra ID, Ping Identity, ForgeRock), API gateways, microservices, and data platforms such as Snowflake or Big Query.
  • Support the full policy lifecycle - authoring, testing, versioning, and deployment - using PlainID's visual policy modeling and policy-as-code capabilities.
  • Run requirements sessions with client stakeholders to document current-state access patterns and design the target-state authorization model.
  • Troubleshoot policy conflicts, integration issues, and authorization-decision errors across the client's technology stack.
  • Lead the testing, validation, and go-live activities, including access-decision auditing and performance checks.
  • Lead the team to produce clear technical documentation - policy catalogs, integration diagrams, runbooks - for both the client and the internal delivery team.
  • Partner with engagement leads and architects to keep delivery on track and surface risks early.
  • Stay current on PlainID's platform roadmap, including emerging capabilities for AI agent and machine-identity authorization.
  • Lead the team to establish and maintain runbooks, SOPs, knowledge articles, and documentation standards for repeatable and governed support operations.
  • Lead the conversation with client stakeholders, internal teams, and third-party vendors to resolve defects, manage dependencies, and improve service outcomes.

The Team

Enables trust and safety of online communications and digital products, protecting users, consumers, and patients from harm. Enables clients to provide consumer confidence in knowing with whom they are dealing and ensuring the integrity of access to data.

Qualifications

Required:

         7+ years of total experience, including strong hands-on experience in PlainID and access management implementation.

         3+ years with access control models - specifically PBAC - and how each maps to real enterprise use cases.

         3+ years of experience integrating and supporting complex integrations and connectors for PIP integration.

         Must have strong knowledge of ensuring compliance with internal and external regulations, including SOX, GDPR, and ISO standards.

         Experience integrating with identity providers and standard protocols: OAuth 2.0, OpenID Connect, SAML, JWT.

         Comfort with policy-as-code concepts and reading/writing structured policy logic (e.g., Rego or similar rules-based languages).

         Working knowledge of APIs and microservices architectures, plus experience with at least one API gateway (Apigee, Kong, Azure API Management, or similar).

         Proven ownership of CAB/change governance, release management, and stakeholder management.

         Advanced troubleshooting capability with strong knowledge of PlainID integration.

  • Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred:

  • Previous consulting or Big 4 experience preferred.
  • Experience with RBAC, ABAC
  • Strong documentation, reporting, and executive communication skills.
  • Ability to manage vendor coordination

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.


#CyberDTP27


Qualifications:

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Recruiting for this role ends on 12/31/2026.

Position Summary
As an experienced PlainID professional at Deloitte Consulting, you will be responsible for delivering high-quality work products within defined timelines while providing delivery and technical leadership to the PBAC engagement team who delivers the PBAC/ABAC authorization tools including PlainID. This role combines deep technical ownership with engineering expertise, governance, and stakeholder management.

Work you'll do

As a PlainID professional, you will:

  • Configure and implement the PlainID Authorization Platform within client environments, including policy modelling and decision-point/information-point setup.
  • Lead technical discussions with Enterprise architects and IAM stake holders.
  • Lead a PBAC team for successful and seamless delivery.
  • Design fine-grained, attribute-based access policies (PBAC/ABAC) that translate business rules into technical controls, including row- and column-level data access restrictions where needed.
  • Integrate PlainID with client identity providers (Okta, Microsoft Entra ID, Ping Identity, ForgeRock), API gateways, microservices, and data platforms such as Snowflake or Big Query.
  • Support the full policy lifecycle - authoring, testing, versioning, and deployment - using PlainID's visual policy modeling and policy-as-code capabilities.
  • Run requirements sessions with client stakeholders to document current-state access patterns and design the target-state authorization model.
  • Troubleshoot policy conflicts, integration issues, and authorization-decision errors across the client's technology stack.
  • Lead the testing, validation, and go-live activities, including access-decision auditing and performance checks.
  • Lead the team to produce clear technical documentation - policy catalogs, integration diagrams, runbooks - for both the client and the internal delivery team.
  • Partner with engagement leads and architects to keep delivery on track and surface risks early.
  • Stay current on PlainID's platform roadmap, including emerging capabilities for AI agent and machine-identity authorization.
  • Lead the team to establish and maintain runbooks, SOPs, knowledge articles, and documentation standards for repeatable and governed support operations.
  • Lead the conversation with client stakeholders, internal teams, and third-party vendors to resolve defects, manage dependencies, and improve service outcomes.

The Team

Enables trust and safety of online communications and digital products, protecting users, consumers, and patients from harm. Enables clients to provide consumer confidence in knowing with whom they are dealing and ensuring the integrity of access to data.

Qualifications

Required:

         7+ years of total experience, including strong hands-on experience in PlainID and access management implementation.

         3+ years with access control models - specifically PBAC - and how each maps to real enterprise use cases.

         3+ years of experience integrating and supporting complex integrations and connectors for PIP integration.

         Must have strong knowledge of ensuring compliance with internal and external regulations, including SOX, GDPR, and ISO standards.

         Experience integrating with identity providers and standard protocols: OAuth 2.0, OpenID Connect, SAML, JWT.

         Comfort with policy-as-code concepts and reading/writing structured policy logic (e.g., Rego or similar rules-based languages).

         Working knowledge of APIs and microservices architectures, plus experience with at least one API gateway (Apigee, Kong, Azure API Management, or similar).

         Proven ownership of CAB/change governance, release management, and stakeholder management.

         Advanced troubleshooting capability with strong knowledge of PlainID integration.

  • Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred:

  • Previous consulting or Big 4 experience preferred.
  • Experience with RBAC, ABAC
  • Strong documentation, reporting, and executive communication skills.
  • Ability to manage vendor coordination

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.


#CyberDTP27


Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom