1

Nist Consulting Jobs (NOW HIRING)

NIST Security Architect

Albany, NY · On-site

$64.50 - $83.50/hr

... consulting and transaction advisory services for customers in the public and private sectors ... A firm knowledge of security compliance controls i.e NIST 800-53r4, HIPAA, HITECH, ISO27001 and ...

NIST Security Architect

Albany, NY

$64.50 - $83.50/hr

... consulting and transaction advisory services for customers in the public and private sectors ... A firm knowledge of security compliance controls i.e NIST 800-53r4, HIPAA, HITECH, ISO27001 and ...

ISA/IEC 62443, NIST 800 82, NERC CIP, TSA Pipeline Security Guidelines. Extensive knowledge of ... Prior consulting experience with oil & gas operators or energy utilities. 10 years of experience in ...

Director Consulting Services Category: Leadership and Management Roles Main location: United States ... ISA/IEC 62443, NIST 800 82, NERC CIP, TSA Pipeline Security Guidelines. • Extensive knowledge of ...

next page

Showing results 1-20

Nist Consulting information

See salary details

$29

$63

$93

How much do nist consulting jobs pay per hour?

As of Jul 20, 2026, the average hourly pay for nist consulting in the United States is $63.41, according to ZipRecruiter salary data. Most workers in this role earn between $47.84 and $76.44 per hour, depending on experience, location, and employer.

Can you make $500,000 a year in cyber security?

NIST consulting roles in cybersecurity can potentially reach high salaries, especially for senior positions with specialized skills, certifications like CISSP or CISA, and extensive experience. Achieving a $500,000 annual income typically requires advanced expertise, leadership responsibilities, or consulting for large organizations, often involving strategic advisory or executive-level roles.

What is the highest paying consulting job?

In consulting, executive-level roles such as management consultants, strategy consultants, and specialized advisory positions tend to have the highest salaries, often exceeding six figures annually. Senior consultants with advanced certifications, industry expertise, and experience in high-demand sectors can earn the most, especially in finance, technology, or healthcare consulting firms.

What is the difference between Nist Consulting vs Cybersecurity Analyst?

AspectNist ConsultingCybersecurity Analyst
CertificationsOften requires CISSP, CISM, or NIST-specific trainingTypically holds CompTIA Security+, CISSP, or CEH
Work EnvironmentConsulting firms, corporate security teams, government agenciesIn-house security teams, government agencies, private companies
Industry UsageUsed for compliance, risk management, and security framework implementationFocuses on threat detection, incident response, and security monitoring

While Nist Consulting involves advising organizations on NIST standards and frameworks, Cybersecurity Analysts focus on monitoring and responding to security threats. Both roles require security certifications and work in similar environments, but Nist Consulting emphasizes compliance and framework implementation, whereas Cybersecurity Analysts are more involved in active threat management.

Can I make $200,000 a year in cyber security?

Cyber security professionals, including NIST consultants, can earn $200,000 or more annually with extensive experience, advanced certifications like CISSP or CISA, and specialized skills in areas such as threat analysis or security architecture. High salaries are often found in senior roles, management, or consulting positions within large organizations or government agencies. Salary levels depend on location, industry, and individual expertise.

Is NIST a good place to work?

NIST offers a stable work environment with opportunities for research, collaboration, and professional development in science and technology fields. Employees often work on impactful projects related to standards, cybersecurity, and measurement, with a focus on public service and innovation.
More about Nist Consulting jobs
What cities are hiring for Nist Consulting jobs? Cities with the most Nist Consulting job openings:
What states have the most Nist Consulting jobs? States with the most job openings for Nist Consulting jobs include:
What job categories do people searching Nist Consulting jobs look for? The top searched job categories for Nist Consulting jobs are:
Infographic showing various Nist Consulting job openings in the United States as of July 2026, with employment types broken down into 93% Full Time, 4% Part Time, and 3% Contract. Highlights an 84% Physical, 4% Hybrid, and 12% Remote job distribution, with an average salary of $131,892 per year, or $63.4 per hour.
CMMC / NIST Consultant / Analyst

CMMC / NIST Consultant / Analyst

Hotman Group LLC

Fort Worth, TX • On-site, Remote

Contractor

Re-posted 27 days ago


Job description

About the Role
Hotman Group is a boutique cybersecurity and GRC consulting firm doing meaningful work for clients who need GRC done right across the Defense Industrial Base navigating CMMC, NIST 800-171, and federal compliance requirements. We are looking for a mid-level CMMC and NIST practitioner who can step into active client delivery work, produce strong documentation, and help move projects forward without a lot of hand-holding.
This is a contract role that may be structured as part-time or full-time based on project needs and candidate availability.
What You Will Do
As a CMMC / NIST Consultant Analyst at Hotman Group you will contribute directly to active client engagements involving federal compliance frameworks. You will:
  • Support client engagements related to CMMC readiness, implementation, and documentation
  • Develop, update, and maintain System Security Plans
  • Assist with NIST SP 800-171, NIST SP 800-53, and FedRAMP documentation, control mapping, and related deliverables
  • Gather, organize, and review evidence supporting control implementation
  • Support CUI scoping discussions, boundary definition, and enclave design
  • Draft and refine control narratives, policies, procedures, and related compliance documentation
  • Identify gaps and support development of POA&Ms and remediation tracking
  • Work directly with client stakeholders to collect information, validate details, and keep deliverables moving
  • Contribute to readiness efforts tied to assessments, documentation, and ongoing compliance activities
  • Participate in peer review of deliverables before they go to clients - your work will be reviewed and you will review others

This is hands-on delivery work in a remote consulting environment. You will be expected to step into active projects and contribute from day one.
What You Bring
  • 3 to 5 years of relevant experience in GRC, cybersecurity compliance, or related consulting work
  • Hands-on experience with CMMC-related work -- this is required, not a nice to have
  • Direct experience developing or contributing to System Security Plans, evidence collection, remediation documentation, and compliance policies -- also required
  • Familiarity with NIST SP 800-171, NIST SP 800-53, and FedRAMP
  • Strong writing and documentation skills -- your deliverables are clear, accurate, and do not require heavy editing before they go to a client
  • The ability to work directly with client stakeholders, gather information, manage follow-through, and keep work moving
  • Strong organization and professionalism in a client-facing environment
  • Comfort stepping into projects that are already in motion and contributing independently with minimal ramp-up time
  • A default toward communication - you keep the team informed, you acknowledge quickly, and you do not go dark on a deliverable or a client

Experience supporting CMMC Level 2 efforts, CUI scoping, enclaves, or boundary discussions is a strong plus. Familiarity with POA&Ms, assessment readiness, and control crosswalks is also valued.
Active certifications such as CCP, CCA, CISSP, CISM, or CISA are preferred. If you do not currently hold a relevant certification, we expect you to be actively pursuing one.
This role requires direct accountability for work product and outcomes. If your CMMC or NIST experience has been primarily observational or in a support capacity without ownership of documentation or deliverables, this role will be a significant adjustment.
Requirements
  • Permanent authorization to work in the U.S. -- no sponsorship of any kind now or in the future
  • Able to pass a background check
  • Reliable high-speed internet and a secure, private remote workspace

Our Hiring Process
Our process is designed to be straightforward but rigorous. In addition to a written questionnaire and video responses, finalists will complete a practical skills assessment before advancing to a panel interview with our delivery team. The assessment reflects the type of work you will do on active client engagements. If you are confident in your CMMC and NIST expertise, this is your opportunity to show it.
Why Hotman Group
At Hotman Group we are not just another consulting firm. You will work alongside people who care about the craft and push each other to do better. No politics, no silos, no hierarchy between you and the people making decisions.
You will touch more GRC frameworks, more industries, and more client situations in one year here than most practitioners see in five. You will grow because the work demands it.
The clients you serve will actually notice your work. You are not a number on a headcount. Your name is on the deliverable.
If you want to do real GRC work, get better at it every day, and work with a team that holds itself to a high standard - this is the place.
No phone calls or emails please.