2

Full Time Cyber Security Audit Jobs (NOW HIRING)

Florence is a beautiful small town about 50 miles from Huntsville, AL Duration- Fulltime Visa- USC ... Participation in Penetration Tests and Cyber Security Audits * Participation in Security Campaigns ...

Internal Audit Manager - Technology

Louisville, KY · On-site +1

$97K - $128K/yr

You will apply advanced cybersecurity expertise to assess control effectiveness across areas such ... full time (40 hours per week) employment at the time of posting. The pay range may be higher or ...

Internal Audit Manager - Technology

Louisville, KY · On-site +1

$97K - $128K/yr

You will apply advanced cybersecurity expertise to assess control effectiveness across areas such ... full time (40 hours per week) employment at the time of posting. The pay range may be higher or ...

Internal Audit Manager - Technology

Louisville, KY · On-site +1

$97K - $128K/yr

You will apply advanced cybersecurity expertise to assess control effectiveness across areas such ... full time (40 hours per week) employment at the time of posting. The pay range may be higher or ...

Platform, middleware, application, and cybersecurity audit experience including the various levels ... Full time FLSA Status:Non-Exempt Freddie Mac offers a comprehensive total rewards package to ...

next page

Showing results 1-20

Full Time Cyber Security Audit information

See salary details

$57K

$133K

$186K

How much do full time cyber security audit jobs pay per year?

As of Jun 14, 2026, the average yearly pay for full time cyber security audit in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Full Time Cyber Security Auditor, and why are they important?

To thrive as a Full Time Cyber Security Auditor, you need a strong understanding of information security principles, risk management, and auditing standards, often supported by a degree in information technology or a related field. Familiarity with audit tools, security frameworks (such as NIST or ISO 27001), and certifications like CISA or CISSP is typically required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for identifying vulnerabilities and presenting findings. These competencies ensure thorough assessments, regulatory compliance, and the protection of organizational assets from cyber threats.

What is the difference between Full Time Cyber Security Audit vs Cyber Security Analyst?

AspectFull Time Cyber Security AuditCyber Security Analyst
CertificationsCISA, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentAudit teams, compliance departments, client sitesSecurity operations centers, IT departments, monitoring systems
Employer & Industry UsageAuditing firms, large corporations, government agenciesTech companies, financial institutions, healthcare providers
Primary FocusAssessing security controls, compliance, risk managementMonitoring security threats, incident response, vulnerability management

While both roles focus on cybersecurity, a Full Time Cyber Security Audit primarily evaluates an organization’s security controls and compliance, whereas a Cyber Security Analyst actively monitors and responds to security threats. The audit role emphasizes assessment and reporting, while the analyst role involves real-time security management.

What are some common challenges faced by professionals in a full-time Cyber Security Audit role?

One common challenge in a full-time Cyber Security Audit role is keeping up with rapidly evolving security threats and compliance requirements while ensuring all audit processes remain thorough and up to date. Auditors often need to balance attention to detail with tight deadlines, especially during audit season or when responding to incidents. Additionally, collaborating with cross-functional teams—such as IT, compliance, and management—can require strong communication skills to both explain findings and help implement improvements. Staying updated on new regulations and technologies is also essential for long-term success and career growth in this field.

What is a Full Time Cyber Security Audit job?

A Full Time Cyber Security Audit job involves evaluating and assessing an organization's information systems, networks, and policies to ensure they comply with industry standards and are protected against cyber threats. Professionals in this role identify vulnerabilities, test security measures, and recommend improvements to minimize risks. They often work closely with IT teams, management, and regulatory bodies to ensure the organization's data and assets remain secure. This full-time position typically requires strong analytical skills, knowledge of security frameworks, and attention to detail.
What cities are hiring for Full Time Cyber Security Audit jobs? Cities with the most Full Time Cyber Security Audit job openings:
What are the most commonly searched types of Cyber Security Audit jobs? The most popular types of Cyber Security Audit jobs are:
What states have the most Full Time Cyber Security Audit jobs? States with the most job openings for Full Time Cyber Security Audit jobs include:
Cybersecurity Controls & Compliance Analyst

Cybersecurity Controls & Compliance Analyst

Edgewater Federal Solutions, Inc.

Oak Ridge, TN

Full-time

Posted 10 days ago


Job description

Overview

This position supports the U.S. Department of Energy Office of Scientific and Technical Information (DOE OSTI) in its mission to ensure the long-term preservation and accessibility of DOE scientific and technical information. The role focuses on assessing cybersecurity controls, supporting audit readiness, and ensuring compliance with federal cybersecurity frameworks and OSTI's internal policies. This is onsite in Oak Ridge, TN.

Responsibilities

Essential Duties & Responsibilities:

Responsibilities include, but are not limited to the following:

  • Evaluate and document the effectiveness of cybersecurity controls across OSTI's network and systems.
  • Support internal and external audits, including evidence collection, control mapping, and remediation tracking.
  • Conduct risk assessments and gap analyses aligned with NIST, FISMA, and DOE cybersecurity requirements.
  • Collaborate with system owners and technical teams to ensure security controls are implemented and maintained.
  • Monitor compliance with OSTI's cybersecurity policies, procedures, and standards.
  • Maintain and update system security plans (SSPs), risk registers, and control documentation.
  • Assist in the development and refinement of cybersecurity governance processes.
  • Analyze security event data to identify control weaknesses and recommend improvements.
  • Support the implementation of continuous monitoring strategies and reporting mechanisms.
  • Coordinate with third-party cybersecurity teams and federal oversight bodies as needed.
  • Prepare technical documentation and compliance reports for internal and external stakeholders.
  • Stay current on cybersecurity regulations, audit trends, and best practices.
  • Assist with installation, configuration, and maintenance of security tools used for compliance monitoring.
  • Perform other duties as assigned.
Qualifications

Education, Training, Experience

  • High school diploma required.
  • Prefer degree or coursework in cybersecurity, information assurance, audit, or related field.
  • Minimum of 3 years' experience in cybersecurity, audit, or compliance roles.

Knowledge, Skills, Abilities

  • Possesses a strong understanding of cybersecurity frameworks (e.g., NIST SP 800-53, FISMA, RMF), implementing and adapting them to specific organizational needs.
  • Performs risk assessments, identifies control gaps, and recommends strategic remediation efforts based on organizational risk appetite.
  • Supports audits, leads audit responses and compliance assessments, coordinates evidence collection, and develops corrective action plans in a federal or regulated environment.
  • Leverages SIEM tools (e.g., Splunk), vulnerability management, and control monitoring platforms.
  • Works independently and collaboratively across technical and non-technical teams.
  • Exhibits excellent analytical, documentation, and communication skills.
  • Detail-oriented with a commitment to quality assurance and continuous improvement.
  • Manages multiple projects and deadlines in a fast-paced environment.
  • Maintains a high level of initiative, customer service, and professional growth mindset.

Ability to provide proof of US Citizenship on your first day of employment to obtain a DOE HSPD-12 Badge in accordance with the terms of the contract. Department of Energy OSTI's policy direction requires all employees employed on this contract to be citizens of the United States.

 

About Us: 

Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2025.

It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law. #LISW

Employment Type: FULL_TIME