Our team is dedicated to advancing the field of cybersecurity by combining deep expertise in risk assessment with cutting-edge automation technologies. This dual focus enables us to address the ...
Our team is dedicated to advancing the field of cybersecurity by combining deep expertise in risk assessment with cutting-edge automation technologies. This dual focus enables us to address the ...
Manager, Cyber Security
Reston, VA · Remote
$115K - $156K/yr
Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting ...
Manager, Cyber Security
Reston, VA · Remote
$115K - $156K/yr
Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting ...
You will conduct cybersecurity assessments, identify and remediate system vulnerabilities, and support secure cloud and network operations across complex mission environments. You will also provide ...
You will conduct cybersecurity assessments, identify and remediate system vulnerabilities, and support secure cloud and network operations across complex mission environments. You will also provide ...
Our team is dedicated to advancing the field of cybersecurity by combining deep expertise in risk assessment with cutting-edge automation technologies. This dual focus enables us to address the ...
Our team is dedicated to advancing the field of cybersecurity by combining deep expertise in risk assessment with cutting-edge automation technologies. This dual focus enables us to address the ...
Cybersecurity Risk Assessment Consultant Location: Hybrid (onsite work possibly at various locations throughout Maryland) Rate: Competitive, DOE (W2 or 1099) Position Overview We are seeking a ...
Quick apply
Cybersecurity Risk Assessment Consultant Location: Hybrid (onsite work possibly at various locations throughout Maryland) Rate: Competitive, DOE (W2 or 1099) Position Overview We are seeking a ...
Manager, Cyber Security
Reston, VA · On-site
$115K - $156K/yr
Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting ...
Manager, Cyber Security
Reston, VA · On-site
$115K - $156K/yr
Develop, maintain, and coordinate cybersecurity assessment documentation, including FIPS 199 analyses, E-Authentication Risk Assessments, security control implementation statements, and supporting ...
Cybersecurity Assessment Engineer
Washington, DC · Remote
$110K - $140K/yr
As a Cybersecurity Assessment Engineer at Second Front Systems, you will help ensure that Game Warden maintains a strong security posture. You will work hand-in-hand with the DevOps Engineering and ...
Quick apply
Cybersecurity Assessment Engineer
Washington, DC · Remote
$110K - $140K/yr
As a Cybersecurity Assessment Engineer at Second Front Systems, you will help ensure that Game Warden maintains a strong security posture. You will work hand-in-hand with the DevOps Engineering and ...
This role supports the assessment, authorization, and continuous monitoring of information systems under the Risk Management Framework (RMF) and ensures compliance with DoD cybersecurity policies ...
This role supports the assessment, authorization, and continuous monitoring of information systems under the Risk Management Framework (RMF) and ensures compliance with DoD cybersecurity policies ...
1. ISO/SAE 21434 Cybersecurity Assessment (Edge Analytics) o Perform a gap assessment of the Edge Analytics solution (device, cloud, data/ML components) against ISO/SAE 21434. o Identify ...
1. ISO/SAE 21434 Cybersecurity Assessment (Edge Analytics) o Perform a gap assessment of the Edge Analytics solution (device, cloud, data/ML components) against ISO/SAE 21434. o Identify ...
This role supports the assessment, authorization, and continuous monitoring of information systems under the Risk Management Framework (RMF) and ensures compliance with DoD cybersecurity policies ...
This role supports the assessment, authorization, and continuous monitoring of information systems under the Risk Management Framework (RMF) and ensures compliance with DoD cybersecurity policies ...
RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems.
RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems.
RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems.
RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems.
We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is ...
We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is ...
This includes the development of DA/CDA lists, CDA assessments, performance of cyber security walkdowns, cyber security testing, and Cyber Security Assessment Team (CSAT) presentations. The ...
This includes the development of DA/CDA lists, CDA assessments, performance of cyber security walkdowns, cyber security testing, and Cyber Security Assessment Team (CSAT) presentations. The ...
This includes the development of DA/CDA lists, CDA assessments, performance of cyber security walkdowns, cyber security testing, and Cyber Security Assessment Team (CSAT) presentations. The ...
This includes the development of DA/CDA lists, CDA assessments, performance of cyber security walkdowns, cyber security testing, and Cyber Security Assessment Team (CSAT) presentations. The ...
Cybersecurity Assessment and Authorization SME Job Locations US ID 2026-4425 Category Defense Type Full Time Overview Amyx is seeking a Cybersecurity Assessment and Authorization Subject Matter ...
Cybersecurity Assessment and Authorization SME Job Locations US ID 2026-4425 Category Defense Type Full Time Overview Amyx is seeking a Cybersecurity Assessment and Authorization Subject Matter ...
Cybersecurity Analyst
Fort Belvoir, VA · On-site
You will conduct cybersecurity assessments, identify and remediate system vulnerabilities, and support secure cloud and network operations across complex mission environments. You will also provide ...
Cybersecurity Analyst
Fort Belvoir, VA · On-site
You will conduct cybersecurity assessments, identify and remediate system vulnerabilities, and support secure cloud and network operations across complex mission environments. You will also provide ...
We are seeking a Cybersecurity Assessment and Authorization Validator to support Navy and DoD customers by delivering technical and programmatic Information Assurance and Cybersecurity services for ...
We are seeking a Cybersecurity Assessment and Authorization Validator to support Navy and DoD customers by delivering technical and programmatic Information Assurance and Cybersecurity services for ...
... Assessment Solution (ACAS) scanning. • Conduct cybersecurity assessments on customer components in order to identify vulnerabilities not addressed in standard DoD/DoN compliance methods. • ...
... Assessment Solution (ACAS) scanning. • Conduct cybersecurity assessments on customer components in order to identify vulnerabilities not addressed in standard DoD/DoN compliance methods. • ...
Cyber Security Specialist IV
Perry, OH · On-site
Responsibilities : • Perform a variety of cyber security implementation and/or assessment activities involving power plant upgrades and/or new power plant projects. • Assist with planning ...
Cyber Security Specialist IV
Perry, OH · On-site
Responsibilities : • Perform a variety of cyber security implementation and/or assessment activities involving power plant upgrades and/or new power plant projects. • Assist with planning ...
Cyber Security Assessor information
See salary details
$8.89 - $15.19
2% of jobs
$15.19 - $21.48
2% of jobs
$21.48 - $27.78
0% of jobs
$27.78 - $34.07
0% of jobs
$34.07 - $40.36
3% of jobs
$40.36 - $46.66
5% of jobs
$50.35 is the 25th percentile. Wages below this are outliers.
$46.66 - $52.95
21% of jobs
The median wage is $58.08 / hr.
$52.95 - $59.24
20% of jobs
$59.24 - $65.54
18% of jobs
$67 is the 75th percentile. Wages above this are outliers.
$65.54 - $71.83
15% of jobs
$71.83 - $78.13
14% of jobs
$8
$58
$78
How much do cyber security assessor jobs pay per hour?
What is a cyber security assessor?
What are the key skills and qualifications needed to thrive as a Cyber Security Assessor, and why are they important?
What is the 80 20 rule in cyber security?
Can you make $500,000 a year in cyber security?
What does a Cyber Security Assessor do?
Is SOC an entry level job?
What is the difference between Cyber Security Assessor vs Cyber Security Analyst?
| Aspect | Cyber Security Assessor | Cyber Security Analyst |
|---|---|---|
| Certifications | ISO 27001 Lead Auditor, CISSP, CEH | CISSP, CompTIA Security+, CEH |
| Work Environment | Audit and compliance settings, consulting firms | Security operations centers, IT departments |
| Employer & Industry | Organizations seeking compliance, consulting firms | Businesses with IT security teams, government agencies |
| Primary Focus | Assessing security controls, compliance audits | Monitoring security threats, incident response |
The main difference is that a Cyber Security Assessor focuses on evaluating security controls and ensuring compliance with standards, often through audits. In contrast, a Cyber Security Analyst actively monitors and responds to security threats within an organization. Both roles require relevant certifications but serve different functions within cybersecurity teams.
What are some common challenges faced by Cyber Security Assessors during security audits?

Lead Cybersecurity Assessment Engineer with Security Clearance
MITRE CorporationLexington Park, MD • Hybrid
Other
Posted 10 days ago
Job description
* Develop and implement security strategies, and provide mentorship to junior assessors.
* Cybersecurity Risk Management: Expert knowledge of cybersecurity risk management frameworks and methodologies.
* Vulnerability Assessment & Penetration Testing: Conduct vulnerability assessments, penetration testing, and ethical hacking of applications and systems to identify and remediate security weaknesses.
* Security Controls Assessment: Conduct Security Controls Assessments (SCA), workshops, and audits for internal teams and partner organizations.
* Security Tools Utilization: Utilize a variety of security tools-including Burp Suite, Nessus, Splunk, QRadar, WireShark, eMASS, and others-to support security operations and assessments.
* Contribute technically to one or more Sponsor tasks.
* Collaborate effectively with MITRE, government, and contractors; effectively communicate in writing, presentations, and collaborative discussions; and interface with peers, managers, and sponsors.
* Promote collaboration and integration with other organizational elements within the department and across MITRE. Basic Qualifications: * Requires a minimum of 8 years of related experience with a Bachelor's degree; or 6 years and a Master's degree; or a PhD with 3 years' experience; or equivalent combination of related education and work experience.
* Experience with RMF, NIST SP-800 series, and Security Controls Assessment (SCA).
* Experience in software engineering and systems engineering, including requirements analysis and technical writing.
* Familiarity with Windows, Linux, macOS/Open BSD, and VxWorks/Tornado operating systems.
* Proficiency in programming languages including Java, C#, C++, Python, Perl, Visual Basic, ASP.NET, PHP, COBOL.
* Certifications: CISSP, Certified Ethical Hacker (CEH), Network+, AWS Certified Cloud Practitioner.
* This position requires a minimum of 50% hybrid on-site * Must be able to successfully obtain a Top-Secret clearance within one year of hire.
* Per the U.S. Government's eligibility requirements, you must be a U.S Citizen to be considered for a security clearance Preferred Qualifications: * Active Top Secret Security Clearance.
* Graduate-level degree in a technical discipline (Cybersecurity, Information Assurance, etc.).
* 12 years related experience as a cybersecurity analyst/systems engineer.
* Experience with advanced assessment techniques utilizing Kali Linux, Burp Suite, Wireshark, etc.
* Experience with various Security Information and Event Management (SIEM) platforms (Splunk, QRadar, Tenable products, etc.)
* Experience with offensive and defensive cybersecurity operations, including penetration testing
* Experience with various Information Technology (IT) operations in enterprise environments including system integration, device/network hardening, server administration, network maintenance, etc.
* Certified Information Systems Security Professional (CISSP)
* GIAC Penetration Tester (GPEN), GIAC Certified Intrusion Analyst (GCIA)
* CompTIA Security+, CompTIA Network+, CompTIA Linux+ This requisition requires the candidate to have a minimum of the following clearance(s):
None This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):
Top Secret Salary compensation range and midpoint:
$158,800 - $198,500 - $238,200 Annual Work Location Type:
Hybrid Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local or international law. MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE's employment process, please email for general support and for intern positions. This service is for individuals requiring reasonable accommodation requests. Please note that vendor solicitations will not receive a reply. Benefits information may be found here . Copyright © 1997-2026, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.
About MITRE
Sourced by ZipRecruiter
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges-and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day-working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities, and a culture of innovation that embraces diversity, inclusion, flexibility, collaboration, and career growth. If this sounds like the choice you want to make, then choose MITRE-and make a difference with us. MITRE is a trusted operator of federally funded research and development centers and we're on a mission to make the world a safer place-for all of humanity, today and in the future. To deliver on our mission, we need the world's best talent and leaders-groundbreakers and partnership-builders on a global scale in areas like healthcare, artificial intelligence, critical infrastructure resiliency, pandemic management, and cybersecurity. In return, we have the privilege of backing you with thousands of technical experts in diverse fields, a culture of innovation and knowledge sharing, access to data and resources uniquely available to MITRE through our wide-ranging partnerships across government, industry and academia.
Industry
It services
Company size
5,001 - 10,000 Employees
Headquarters location
McLean, VA, US
Year founded
1958