Role: Cybersecurity GRC Consultant - NIST CSF 2.0 Location: San Francisco, CA (Onsite) Role Purpose Lead the delivery of a NIST CSF 2.0 cybersecurity gap and maturity assessment for a global ...
Role: Cybersecurity GRC Consultant - NIST CSF 2.0 Location: San Francisco, CA (Onsite) Role Purpose Lead the delivery of a NIST CSF 2.0 cybersecurity gap and maturity assessment for a global ...
... NIST 800-53 security controls. โข Develop, review, and maintain security documentation (SSPs, POA&Ms, Policies and procedures, etc.) โข Perform security control assessments and validation ...
... NIST 800-53 security controls. โข Develop, review, and maintain security documentation (SSPs, POA&Ms, Policies and procedures, etc.) โข Perform security control assessments and validation ...
Information Security Analsyt
Santa Clara, CA ยท On-site
... NIST CSF, NIST 800 800-53, NIST 800-171, NIST 800-82, Cloud Security Alliance Cloud Controls Matrix (CSA CCM), SOC2, PCI/DSS Ideally, also at least government / legislative security compliance ...
Information Security Analsyt
Santa Clara, CA ยท On-site
... NIST CSF, NIST 800 800-53, NIST 800-171, NIST 800-82, Cloud Security Alliance Cloud Controls Matrix (CSA CCM), SOC2, PCI/DSS Ideally, also at least government / legislative security compliance ...
Cyber Security Controls Assessor III : 26-02524
Oakland, CA ยท On-site
$60 - $65/hr
NIST CSF [advanced], NIST 800-53 [advanced], NERC CIP [intermediate], Risk Management [advanced], Control Validation [advanced] Contract Type: W2 Only Duration: 4+ Months Location: Oakland, CA (#LI ...
Cyber Security Controls Assessor III : 26-02524
Oakland, CA ยท On-site
$60 - $65/hr
NIST CSF [advanced], NIST 800-53 [advanced], NERC CIP [intermediate], Risk Management [advanced], Control Validation [advanced] Contract Type: W2 Only Duration: 4+ Months Location: Oakland, CA (#LI ...
Cyber Security Controls Assessor III : 26-02524
Oakland, CA ยท On-site
$60 - $65/hr
NIST CSF [advanced], NIST 800-53 [advanced], NERC CIP [intermediate], Risk Management [advanced], Control Validation [advanced] Contract Type: W2 Only Duration: 4+ Months Location: Oakland, CA ...
Cyber Security Controls Assessor III : 26-02524
Oakland, CA ยท On-site
$60 - $65/hr
NIST CSF [advanced], NIST 800-53 [advanced], NERC CIP [intermediate], Risk Management [advanced], Control Validation [advanced] Contract Type: W2 Only Duration: 4+ Months Location: Oakland, CA ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$120 - $180/hr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01. * Experience preparing SSP, SAR, and POA&M documents. * Proficiency with eMASS, SCAP tools (e ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$120 - $180/hr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01. * Experience preparing SSP, SAR, and POA&M documents. * Proficiency with eMASS, SCAP tools (e ...
AI Architect
Poway, CA ยท On-site
Damco Solutions is seeking an AI Architect to design air-gapped AI pipelines that comply with NIST SP 800-171 and CMMC Level 3. The role involves managing a bi-modal pod that includes US classified ...
AI Architect
Poway, CA ยท On-site
Damco Solutions is seeking an AI Architect to design air-gapped AI pipelines that comply with NIST SP 800-171 and CMMC Level 3. The role involves managing a bi-modal pod that includes US classified ...
Privacy Analyst
Sacramento, CA ยท On-site
$76K - $91K/yr
Experience analyzing and applying disclosure and privacy-related laws and requirements (e.g., Privacy Act, OMB, FISMA, or NIST) to evaluate the potential effects of such laws/requirements on business ...
Privacy Analyst
Sacramento, CA ยท On-site
$76K - $91K/yr
Experience analyzing and applying disclosure and privacy-related laws and requirements (e.g., Privacy Act, OMB, FISMA, or NIST) to evaluate the potential effects of such laws/requirements on business ...
Information Assurance Specialist II
Long Beach, CA ยท On-site
$91K - $130K/yr
NIST SP 800-171 Rev 2, NIST 800-53 Rev 5). This will be a full-time , exempt position located in our Long Beach location. Responsibilities: * Maintain compliance documentation across NIST 800-171r2 ...
Information Assurance Specialist II
Long Beach, CA ยท On-site
$91K - $130K/yr
NIST SP 800-171 Rev 2, NIST 800-53 Rev 5). This will be a full-time , exempt position located in our Long Beach location. Responsibilities: * Maintain compliance documentation across NIST 800-171r2 ...
Build compliance approaches for NIST SP 800-171, CMMC, DFARS, ITAR, EAR, and other defense industry information security requirements * Develop and maintain security policies, procedures, and ...
Build compliance approaches for NIST SP 800-171, CMMC, DFARS, ITAR, EAR, and other defense industry information security requirements * Develop and maintain security policies, procedures, and ...
Evaluate security controls against industry standards and regulatory requirements, including NIST Cybersecurity Framework (CSF), NIST 800-53, NERC CIP, CIS Controls, and security policies. * Identify ...
New
Evaluate security controls against industry standards and regulatory requirements, including NIST Cybersecurity Framework (CSF), NIST 800-53, NERC CIP, CIS Controls, and security policies. * Identify ...
New
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
GRC Analyst
San Francisco, CA ยท On-site
$110 - $160/hr
About the Role As a Cybersecurity Analyst will work closely with customers to help them implement and fully leverage Atomus' cybersecurity products, maintain compliance with NIST 800-171 and CMMC ...
GRC Analyst
San Francisco, CA ยท On-site
$110 - $160/hr
About the Role As a Cybersecurity Analyst will work closely with customers to help them implement and fully leverage Atomus' cybersecurity products, maintain compliance with NIST 800-171 and CMMC ...
Sr. DevSecOps Engineer (US)
San Francisco, CA ยท On-site
$153 - $187/hr
Translate NIST 800-53 Rev. 5 controls into concrete, auditable, and continuously enforced technical implementations -- not just documentation. * Build and maintain compliance automation tooling to ...
Sr. DevSecOps Engineer (US)
San Francisco, CA ยท On-site
$153 - $187/hr
Translate NIST 800-53 Rev. 5 controls into concrete, auditable, and continuously enforced technical implementations -- not just documentation. * Build and maintain compliance automation tooling to ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$131K - $237K/yr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01 (DIARMF). * Security Assessment & Authorization (SA&A): * Experience preparing System Security ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$131K - $237K/yr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01 (DIARMF). * Security Assessment & Authorization (SA&A): * Experience preparing System Security ...
Senior Information Security Manager
Sunnyvale, CA ยท On-site
$167 - $204/hr
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Senior Information Security Manager
Sunnyvale, CA ยท On-site
$167 - $204/hr
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$131K - $237K/yr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01 (DIARMF). * Security Assessment & Authorization (SA&A): * Experience preparing System Security ...
Sr. RMF Security Engineer
San Diego, CA ยท On-site
$131K - $237K/yr
Deep knowledge of NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FedRAMP, and DoD Instruction 8510.01 (DIARMF). * Security Assessment & Authorization (SA&A): * Experience preparing System Security ...
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
Perform gap analysis based on NIST SP800-53 and other compliance framework, create mitigation/action plans. * Determine the applicability and apply the information security and privacy requirements ...
System Engineer- Cyber Security Engineering Focus
Redlands, CA ยท On-site
$57.50 - $70.75/hr
Implement and validate security controls aligned with NIST 800-53, CNSSI 1253, and related DoD guidance * Support system hardening, patching, and configuration management in compliance with STIGs for ...
System Engineer- Cyber Security Engineering Focus
Redlands, CA ยท On-site
$57.50 - $70.75/hr
Implement and validate security controls aligned with NIST 800-53, CNSSI 1253, and related DoD guidance * Support system hardening, patching, and configuration management in compliance with STIGs for ...
Nist information
See California salary details
$42.4K - $52K
1% of jobs
$52K - $61.6K
6% of jobs
$61.6K - $71.2K
10% of jobs
$77.8K is the 25th percentile. Wages below this are outliers.
$71.2K - $80.8K
12% of jobs
$80.8K - $90.4K
15% of jobs
The median wage is $94.6K / yr.
$90.4K - $100K
15% of jobs
$100K - $109.6K
10% of jobs
$113.8K is the 75th percentile. Wages above this are outliers.
$109.6K - $119.2K
16% of jobs
$119.2K - $128.8K
7% of jobs
$128.8K - $138.4K
5% of jobs
$138.4K - $148K
3% of jobs
$42.4K
$98.1K
$148K
How much do nist jobs pay per year?
What is a NIST professional?
What are the key skills and qualifications needed to thrive as a NIST professional?
What are some common challenges faced by NIST cybersecurity professionals when implementing new security frameworks in an organization?
What is the difference between Nist vs Cybersecurity Analyst?
| Aspect | Nist | Cybersecurity Analyst |
|---|---|---|
| Certifications | Typically no specific certifications required, but familiarity with NIST frameworks is essential | Often requires certifications like CompTIA Security+, CISSP, or CEH |
| Work Environment | Develops and maintains cybersecurity standards and frameworks for organizations | Monitors, analyzes, and responds to security threats within organizations |
| Industry Usage | Used across industries for cybersecurity best practices and compliance | Employed in various sectors to protect information systems |
| Primary Focus | Creating and implementing cybersecurity standards based on NIST guidelines | Detecting and mitigating security incidents and vulnerabilities |
While NIST focuses on developing cybersecurity standards and frameworks, a Cybersecurity Analyst applies these standards in practical security operations. Both roles are essential in maintaining organizational cybersecurity, with NIST providing the foundational guidelines and the analyst executing security measures based on those guidelines.
What are popular job titles related to Nist jobs in California?
For Nist jobs in California, the most frequently searched job titles are:
What job categories do people searching Nist jobs in California look for?
The top searched job categories for Nist jobs in California are:
What cities in California are hiring for Nist jobs?
Cities in California with the most Nist job openings:

Other
Posted 24 days ago
Job description
Role: Cybersecurity GRC Consultant โ NIST CSF 2.0
Location: San Francisco, CA (Onsite)
Role Purpose
Lead the delivery of a NIST CSF 2.0 cybersecurity gap and maturity assessment for a global enterprise program, covering assessment planning, stakeholder engagement, evidence review, maturity scoring, risk-based gap prioritization, executive reporting, and development of a practical improvement roadmap.
Key Responsibilities
- Own end to end engagement governance, project planning, milestones, risks, dependencies, status reporting, and stakeholder communications.
- Conduct NIST CSF 2.0 maturity assessment across functions, categories, subcategories, implementation tiers, and profiles.
- Review policies, standards, procedures, controls, risk registers, asset inventories, KPIs/KRIs, and supporting evidence.
- Facilitate interviews and workshops with cybersecurity, risk, compliance, technology, and business stakeholders.
- Define defensible maturity scoring, identify control gaps, assess business risk, and prioritize remediation actions.
- Develop executive ready assessment reports, maturity dashboards, prioritized recommendations, and near/mid/long term roadmap.
Required Experience
Area
Requirement
Total Experience
10 to 15 years in cybersecurity, GRC, risk management, audit, security consulting, or cybersecurity program assessment.
NIST CSF Expertise
Strong hands on experience with NIST CSF, preferably NIST CSF 2.0 maturity assessments.
Framework Mapping
Experience mapping controls across NIST CSF, ISO 27001, NIST 800 53, CIS Controls, SOC 2, or similar frameworks.
Assessment Delivery
Proven experience conducting enterprise wide cybersecurity maturity, gap, risk, or control assessments.
Stakeholder Management
Ability to conduct interviews/workshops with senior security, risk, compliance, technology, and business stakeholders.
Executive Reporting
Strong experience creating leadership ready cybersecurity reports, maturity dashboards, and roadmap presentations.
Consulting Delivery
Experience working in consulting/advisory environments with structured methodology, governance, and client facing deliverables.
Risk Prioritization
Ability to convert control gaps into risk ranked remediation recommendations and practical roadmaps.
Required Skills
- Strong expertise in NIST CSF 2.0, cybersecurity governance, risk management, compliance, control maturity models, and ISO 27001 / ISMS.
- Ability to map controls across NIST CSF, ISO 27001, NIST 800 53, CIS Controls, SOC 2, and similar frameworks.
- Experience in evidence-based assessment, maturity scoring, risk-based gap prioritization, and remediation roadmap development.
- Excellent consulting delivery, workshop facilitation, stakeholder management, executive reporting, and written/verbal communication skills.
Preferred Certifications
CISSP, CISM, CISA, CRISC, ISO 27001 Lead Auditor / Lead Implementer, NIST CSF training/certification, PMP / Prince2 / Agile certification preferred.
Tools / Platforms Knowledge Preferred
- GRC and evidence management platforms such as Archer, ServiceNow GRC, OneTrust, MetricStream, SharePoint, Teams, Excel, PowerPoint, Visio, Power BI, and cybersecurity KPI/KRI dashboarding tools.
About Mergen IT
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Houston, TX, US
Year founded
2014