The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring compliance with federal cybersecurity frameworks and OSTI's internal policies. This is onsite in Oak ...
The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring compliance with federal cybersecurity frameworks and OSTI's internal policies. This is onsite in Oak ...
The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring ... Support internal and external audits, including evidence collection, control mapping, and ...
The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring ... Support internal and external audits, including evidence collection, control mapping, and ...
Key Responsibilities Audit Planning & Execution Develop and execute cybersecurity audit plans and strategies based on industry standards and organizational needs. Conduct comprehensive assessments of ...
Key Responsibilities Audit Planning & Execution Develop and execute cybersecurity audit plans and strategies based on industry standards and organizational needs. Conduct comprehensive assessments of ...
Director of Internal Audit, Technology
Denver, CO · On-site
$148K - $181K/yr
Lead the planning and delivery of complex, high-risk IT and cybersecurity audits across ... infrastructure, cloud, applications, data, and security domains. * Oversee audit quality ...
Director of Internal Audit, Technology
Denver, CO · On-site
$148K - $181K/yr
Lead the planning and delivery of complex, high-risk IT and cybersecurity audits across ... infrastructure, cloud, applications, data, and security domains. * Oversee audit quality ...
Senior Auditor, Technology - Global Audit & Enterprise Risk Management
Portland, OR · On-site
$85K - $105K/yr
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Senior Auditor, Technology - Global Audit & Enterprise Risk Management
Portland, OR · On-site
$85K - $105K/yr
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Perform cybersecurity audits against core frameworks and collaborate with technical teams to deliver clear, actionable findings and recommendations. * Technology Risk Assessment & Planning: Lead ...
Cybersecurity Senior Data Analyst
Long Island City, NY · On-site
$100K - $125K/yr
... CYBER SECURITY ANALYST CIVIL SERVICE LIST ARE ELIGIBLE TO APPLY. Division/Program Summary ... Audit Services plays a leading role in risk-based assessments of the Department's operational ...
Cybersecurity Senior Data Analyst
Long Island City, NY · On-site
$100K - $125K/yr
... CYBER SECURITY ANALYST CIVIL SERVICE LIST ARE ELIGIBLE TO APPLY. Division/Program Summary ... Audit Services plays a leading role in risk-based assessments of the Department's operational ...
Cybersecurity Senior Data Analyst
Long Island City, NY · Hybrid
$108K - $139K/yr
Audit Services plays a leading role in risk-based assessments of the Department's operational ... This position will report to the Cyber Security IT Audit Manager in the Bureau of Audit Services ...
Cybersecurity Senior Data Analyst
Long Island City, NY · Hybrid
$108K - $139K/yr
Audit Services plays a leading role in risk-based assessments of the Department's operational ... This position will report to the Cyber Security IT Audit Manager in the Bureau of Audit Services ...
Cyber Security Manager
$105K - $142K/yr
Conduct regular security assessments and audits * Monitor network traffic for potential security breaches * Establish and coordinate the agency Cybersecurity Response Team (CRT) to respond to a ...
Cyber Security Manager
$105K - $142K/yr
Conduct regular security assessments and audits * Monitor network traffic for potential security breaches * Establish and coordinate the agency Cybersecurity Response Team (CRT) to respond to a ...
Cybersecurity Analyst III
Madison, WI · On-site
The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor ... external audits, and / or control assessments. * Collaborate with other Enterprise Information ...
Cybersecurity Analyst III
Madison, WI · On-site
The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor ... external audits, and / or control assessments. * Collaborate with other Enterprise Information ...
Cybersecurity Senior Data Analyst
Long Island City, NY · Hybrid
$108K - $139K/yr
Audit Services plays a leading role in risk-based assessments of the Department's operational ... This position will report to the Cyber Security IT Audit Manager in the Bureau of Audit Services ...
Cybersecurity Senior Data Analyst
Long Island City, NY · Hybrid
$108K - $139K/yr
Audit Services plays a leading role in risk-based assessments of the Department's operational ... This position will report to the Cyber Security IT Audit Manager in the Bureau of Audit Services ...
Cybersecurity Analyst III
Madison, WI · On-site
The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor ... external audits, and / or control assessments. * Collaborate with other Enterprise Information ...
Cybersecurity Analyst III
Madison, WI · On-site
The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor ... external audits, and / or control assessments. * Collaborate with other Enterprise Information ...
Cybersecurity Risk Auditor
Seattle, WA · On-site
We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies ... Perform audit fieldwork aligned to defined objectives while applying professional skepticism and ...
Cybersecurity Risk Auditor
Seattle, WA · On-site
We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies ... Perform audit fieldwork aligned to defined objectives while applying professional skepticism and ...
Responsibilities : • Prepare audit reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions. • Analyze organization's cybersecurity ...
Responsibilities : • Prepare audit reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions. • Analyze organization's cybersecurity ...
General Motors Audit Services (GMAS) is seeking a Lead Auditor, Cybersecurity Assurance to lead risk-based cybersecurity assurance engagements across a complex global environment. This role is ...
General Motors Audit Services (GMAS) is seeking a Lead Auditor, Cybersecurity Assurance to lead risk-based cybersecurity assurance engagements across a complex global environment. This role is ...
We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies ... Perform audit fieldwork aligned to defined objectives while applying professional skepticism and ...
We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies ... Perform audit fieldwork aligned to defined objectives while applying professional skepticism and ...
General Motors Audit Services (GMAS) is seeking a Lead Auditor, Cybersecurity Assurance to lead risk-based cybersecurity assurance engagements across a complex global environment. This role is ...
General Motors Audit Services (GMAS) is seeking a Lead Auditor, Cybersecurity Assurance to lead risk-based cybersecurity assurance engagements across a complex global environment. This role is ...
Senior Manager, Internal Audit & Risk Advisory Services
New York, NY · On-site
$98K - $135K/yr
Expertise with cybersecurity frameworks * Prior experience conducting audits of industrial ... technology systems is a plus * Working knowledge of PCI DSS, HIPAA, and CCPA compliance frameworks ...
Senior Manager, Internal Audit & Risk Advisory Services
New York, NY · On-site
$98K - $135K/yr
Expertise with cybersecurity frameworks * Prior experience conducting audits of industrial ... technology systems is a plus * Working knowledge of PCI DSS, HIPAA, and CCPA compliance frameworks ...
Skills Risk assessment, Third party risk, Vendor Risk, ServiceNow GRC, GRC, cybersecurity, Audit, Risk management, Risk analysis, Information security Top Skills Details Risk assessment,Third party ...
Skills Risk assessment, Third party risk, Vendor Risk, ServiceNow GRC, GRC, cybersecurity, Audit, Risk management, Risk analysis, Information security Top Skills Details Risk assessment,Third party ...
Cyber Security Audit information
See salary details
$57K - $68.7K
1% of jobs
$68.7K - $80.5K
4% of jobs
$80.5K - $92.2K
5% of jobs
$92.2K - $103.9K
9% of jobs
$110.4K is the 25th percentile. Wages below this are outliers.
$103.9K - $115.6K
11% of jobs
$115.6K - $127.4K
10% of jobs
The median wage is $131.9K / yr.
$127.4K - $139.1K
28% of jobs
$145.9K is the 75th percentile. Wages above this are outliers.
$139.1K - $150.8K
14% of jobs
$150.8K - $162.5K
11% of jobs
$162.5K - $174.3K
4% of jobs
$174.3K - $186K
4% of jobs
$57K
$133K
$186K
How much do cyber security audit jobs pay per year?
What is a Cyber Security Audit job?
A Cyber Security Audit job involves evaluating an organization's IT systems, networks, and processes to identify security risks and ensure compliance with industry standards. Professionals in this role assess vulnerabilities, review security policies, and recommend improvements to protect against cyber threats. They may also test controls, analyze logs, and prepare reports for management. The goal is to ensure data integrity, confidentiality, and resilience against cyber attacks.
What are the typical daily responsibilities of someone working in Cyber Security Audit?
Professionals in Cyber Security Audit typically review and assess an organization’s IT systems, policies, and controls to identify potential security gaps and ensure regulatory compliance. Daily tasks may include analyzing system logs, conducting vulnerability assessments, preparing audit reports, and collaborating with IT and security teams to recommend remediation steps. You'll often be involved in interviewing staff, documenting findings, and presenting results to both technical leadership and management. This role requires a balance of technical analysis and clear communication to drive improvements in organizational security posture.
What are the key skills and qualifications needed to thrive in the Cyber Security Audit position, and why are they important?
To thrive in Cyber Security Audit, you need expertise in IT security frameworks, risk assessment, and audit methodologies, usually supported by a degree in information security or a related field. Familiarity with tools like Nessus, Wireshark, SIEM platforms, and certifications such as CISA, CISSP, or CEH are highly valued. Strong analytical thinking, attention to detail, and effective communication skills set top candidates apart. These abilities are essential for identifying vulnerabilities, ensuring compliance, and clearly communicating risks and recommendations to both technical and non-technical stakeholders.

Full-time
Posted 19 days ago
Job description
This position supports the U.S. Department of Energy Office of Scientific and Technical Information (DOE OSTI) in its mission to ensure the long-term preservation and accessibility of DOE scientific and technical information. The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring compliance with federal cybersecurity frameworks and OSTI's internal policies. This is onsite in Oak Ridge, TN.
Responsibilities
Essential Duties & Responsibilities:
Responsibilities include, but are not limited to the following:
- Evaluate and document the effectiveness of cybersecurity controls across OSTI's network and systems.
- Support internal and external audits, including evidence collection, control mapping, and remediation tracking.
- Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity requirements.
- Collaborate with system owners and technical teams to ensure security controls are implemented and maintained.
- Monitor compliance with OSTI's cybersecurity policies, procedures, and standards.
- Maintain and update system security plans (SSPs), risk registers, and control documentation.
- Assist in the development and refinement of cybersecurity governance processes.
- Analyze security event data to identify control weaknesses and recommend improvements.
- Support the implementation of continuous monitoring strategies and reporting mechanisms.
- Coordinate with third-party cybersecurity teams and federal oversight bodies as needed.
- Prepare technical documentation and compliance reports for internal and external stakeholders.
- Stay current on cybersecurity regulations, audit trends, and best practices.
- Assist with installation, configuration, and maintenance of security tools used for compliance monitoring.
- Perform other duties as assigned.
Qualifications
Education, Training, Experience
- High school diploma required.
- Prefer degree or coursework in cybersecurity, information assurance, audit, or related field.
- Minimum of 3 years' experience in cybersecurity, audit, or compliance roles.
Knowledge, Skills, Abilities
- Possesses a strong understanding of cybersecurity frameworks (e.g., NIST SP 800-53, FISMA, RMF), implementing and adapting them to specific organizational needs.
- Performs risk assessments, identifies control gaps, and recommends strategic remediation efforts based on organizational risk appetite.
- Supports audits, leads audit responses and compliance assessments, coordinates evidence collection, and develops corrective action plans in a federal or regulated environment.
- Leverages SIEM tools (e.g., Splunk), vulnerability management, and control monitoring platforms.
- Works independently and collaboratively across technical and non-technical teams.
- Exhibits excellent analytical, documentation, and communication skills.
- Detail-oriented with a commitment to quality assurance and continuous improvement.
- Manages multiple projects and deadlines in a fast-paced environment.
- Maintains a high level of initiative, customer service, and professional growth mindset.
Ability to provide proof of US Citizenship on your first day of employment to obtain a DOE HSPD-12 Badge in accordance with the terms of the contract. Department of Energy OSTI's policy direction requires all employees employed on this contract to be citizens of the United States.
About Us:
Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2025.
It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law. #LISW
About Edgewater Federal Solutions
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Ijamsville, MD, US
Year founded
2002