2

Remote Security Controls Assessor Jobs in California

Conduct application security assessments, code reviews, API testing, threat modeling, and ... controls. * Familiarity with Kubernetes security, container hardening, and runtime protection.

Senior IT Auditor

San Francisco, CA ยท On-site +1

$132K - $165K/yr

In this role, you'll perform hands-on IT and security audits, assess Mercury's technology risks and controls, and work cross-functionally to improve Mercury's control environment. *Mercury is a ...

Security Engineer (Blue Team)

Hawthorne, CA ยท On-site +1

$150K - $180K/yr

Familiarity with enterprise security controls and best practices for Windows, Linux, and/or macOS ... Remote or hybrid work will not be considered. COMPENSATION AND BENEFITS: Pay Range: Level 1: $130 ...

Network Security Engineer

San Francisco, CA ยท On-site +1

$123K - $168K/yr

... secure remote access solutions. * Evaluate and deploy new security technologies and controls ... Oversee vulnerability assessments, penetration testing, and security reviews. * Prioritize and ...

Showing results 21-40

Remote Security Controls Assessor information

See California salary details

$8

$57

$77

How much do remote security controls assessor jobs pay per hour?

As of Aug 24, 2026, the average hourly pay for remote security controls assessor in California is $58.00, according to ZipRecruiter salary data. Most workers in this role earn between $49.81 and $67.12 per hour, depending on experience, location, and employer.

What is a remote security controls assessor?

Remote Security Controls Assessors are professionals who evaluate and verify the effectiveness of an organization's security measures, policies, and procedures without being physically present on-site. They use a variety of tools and methods to assess compliance with security standards, identify vulnerabilities, and recommend improvements. Working remotely, these assessors often conduct interviews, review documentation, and perform technical tests to ensure that the organization's information systems are secure and meet regulatory requirements.

What skills and qualifications are needed to thrive as a remote security controls assessor?

To thrive as a Remote Security Controls Assessor, you need a solid understanding of information security frameworks, risk management practices, and compliance standards, often supported by a degree in cybersecurity or related certifications like CISSP, CISA, or Security+. Familiarity with security assessment tools, vulnerability scanners, and compliance management platforms is typically required. Strong analytical thinking, attention to detail, and effective written and verbal communication skills help you excel when evaluating controls and reporting findings remotely. These skills are essential to ensure accurate risk identification and maintain regulatory compliance while collaborating efficiently from a distance.

What challenges might I face as a remote security controls assessor, and how can I overcome them?

As a Remote Security Controls Assessor, one common challenge is effectively evaluating technical and administrative controls without being physically present at client sites. This often requires strong communication skills to coordinate with on-site staff, request and interpret evidence remotely, and clarify any ambiguities. Leveraging secure collaboration tools, maintaining clear documentation, and setting regular check-ins with clients can help address these challenges. Additionally, staying up to date with remote assessment methodologies and compliance frameworks will ensure thorough and accurate evaluations.

What is the difference between Remote Security Controls Assessor vs Security Analyst?

AspectRemote Security Controls AssessorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, Security+
Work EnvironmentRemote or on-site, focusing on compliance assessmentsTypically office-based, analyzing security data and incidents
Employer & IndustryGovernment agencies, consulting firms, large corporationsFinancial institutions, tech companies, healthcare

The Remote Security Controls Assessor primarily evaluates security controls for compliance, often working remotely, while the Security Analyst monitors and analyzes security threats and incidents. Both roles require security certifications, but the assessor focuses on audits and controls, whereas the analyst emphasizes threat detection and response.

What are the most commonly searched types of Security Controls Assessor jobs in California?

The most popular types of Security Controls Assessor jobs in California are:

What are popular job titles related to Remote Security Controls Assessor jobs in California?

For Remote Security Controls Assessor jobs in California, the most frequently searched job titles are:

What job categories do people searching Remote Security Controls Assessor jobs in California look for?

The top searched job categories for Remote Security Controls Assessor jobs in California are:

What cities in California are hiring for Remote Security Controls Assessor jobs?

Cities in California with the most Remote Security Controls Assessor job openings:

Infographic showing various Remote Security Controls Assessor job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution, with an average salary of $120,635 per year, or $58 per hour.

Future Opening: Embedded Studio Content Security Engineer HYBRID

Independent Security Evaluators

Los Angeles, CA โ€ข On-site, Remote

$90K - $130K/yr

Full-time

Medical, Life, PTO

Re-posted 3 days ago


Job description

ISE is anticipating the future need for an Embedded Studio Content Security Engineer to assist with a major security project for a large media and entertainment client. You'll serve on a team of trusted advisors on vendor security, emerging media tech, and platform risk-working closely with the studio, third-party vendors, and internal teams.
The term "embedded" refers to the collaborative, integrated nature of the work, not embedded systems or IoT devices.
What you'll do at ISE:
  • Assist with conducting vendor and platform security assessments using MPA Best Practices, ISO, and NIST standards
  • Help with remediation efforts and track risk across hybrid and cloud environments (AWS, Azure, GCP)
  • Aid in advising clients on secure workflows, content protection (DRM, watermarking), and emerging technologies (e.g., AI-integrated platforms)
  • Communicate security risks clearly to business and technical stakeholders
  • Participate in cloud/application security reviews throughout project lifecycles
  • Maintain policies, standards, and compliance documentation
  • Dedicate 50%-100% of time per week to one large client

Must Haves:
  • 3+ years of experience in cybersecurity across application, infrastructure, and/or consulting domains
  • 3+ years of experience in public cloud security (AWS, Azure, GCP), including VPCs, IAM, encryption, and network security controls
  • Previous experience conducting risk assessments and communicating vulnerabilities, risk posture, and remediation strategies
  • Reside in the Los Angeles, CA metro area with the willingness to work on site as often as requested by the client

Nice to haves:
  • Experience with DRM systems, watermarking technologies, or AI-integrated media platforms
  • Capability of doing hands-on application assessments for other clients
  • Experience performing media and entertainment cloud assessments
  • Certification(s) to complete media and entertainment industry cloud assessments, such as AWS, Azure, GCP Professional, BSI, CompTIA Cloud+, CSA, EC-Council, GIAC, ISC2, PECB, and CCZT

Salary:
$90K-$130K (according to experience)
If you don't think you meet all the criteria above but are still interested in the job, please apply. Nobody checks every box, and we're looking for someone excited to join the team.
What we bring to the table:
  • Check out joinise.io for full details
  • Work that matters; projects that impact people's everyday life and wellbeing
  • Quality, integrity, dedication, and education: our core values
  • Life balance: flexible schedule, work from home options, unlimited vacation
  • $0 health premium plan option, including spouse and family
  • Opportunities to research and publish, speak at major security events and conferences
  • Leadership and peers that support and mentor you: your growth is our growth, your success is our success
  • Relaxed and fun environment: ditch the suit and tie, sit or stand at your desk or find a sofa

How you'll learn at ISE:
Everyone has a mentor, or two or three sometimes. We hold you and ourselves accountable for your advancement. You'll learn directly from your mentor, your colleagues, resources vetted by the team, and at regular firetalk lunches by your peers - oh, and lunch is on us once a week in the office. You also have access to paid training, workshops, university courses, certification courses, and we'll pay for the certs too. Want to learn a new skill that you aren't currently using but want to? Great! Innovation is key-new technology is important.
About ISE:
ISE is an independent security consulting and software firm headquartered in Baltimore, Maryland, dedicated to securing high value assets for global enterprises and performing groundbreaking security research. Using an adversary-centric perspective driven by our elite team of analysts and developers, we improve our clients' overall security posture, protect digital assets, harden existing technologies, secure infrastructures, and work with development teams to ensure product security prior to deployment. Our team enjoys working in a creative, educational, and comfortable environment where they can thrive professionally.
Building a Better Community:
We value different viewpoints and fresh perspectives. We embrace people who challenge our thinking and question the status quo. We are opposed to narrow minded, exclusionary, and discriminatory viewpoints or practices that inherently undermine our creative process, hinder growth, and impede innovation.
Need more info?
Be sure you spend some time at www.ise.io. Make sure you look through all the perks on the Careers page, then check out our Research and Blog, our events page for the IoT Village, and About page. Follow us on Twitter @ISEsecurity and @IoTvillage