2

Remote Security Controls Assessor Jobs in California

Senior Software Engineer - ATO

San Diego, CA ยท On-site +1

$150K - $215K/yr

... meet security controls. * Implement strong change control: security impact analysis, testing ... Remote friendly with WeWork access * Unlimited PTO, shared downtime during the federal holiday ...

Senior GRC Lead

San Francisco, CA ยท On-site +1

$134K - $185K/yr

You'll evolve the technical foundation of our Trust program by automating security controls ... As a perk, we also have up to four weeks per year of fully remote work! Responsibilities * Manage ...

Senior DevSecOps Engineer

San Francisco, CA ยท Remote

$134K - $185K/yr

... security controls. * Mentor and raise the technical bar across engineering teams through ... A Take Home Assessment, which you will work on within GitHub. * Three 60-minute 1:1 interviews with ...

Senior Data Security Architect

San Francisco, CA ยท On-site +1

$181K - $217K/yr

Your goal is to translate our data governance requirements into technical controls that are built ... Assess and mitigate data-related risks in close partnership with the system and data owners who run ...

Sr DevSecOps Engineer

San Francisco, CA ยท On-site +1

$185K - $243K/yr

Implement network security controls, including firewalls, VPNs, and segmentation * Monitor systems ... Background in penetration testing or vulnerability assessment For this position we are targeting a ...

Security Specialist

Alameda, CA ยท On-site +1

$111K - $145K/yr

... controls. * Inspecting, analyzing, and evaluating security systems. * Studying and analyzing ... Requests for RA for the USA Hire Competency Based Assessments and appropriate supporting ...

Showing results 41-60

Remote Security Controls Assessor information

See California salary details

$8

$57

$77

How much do remote security controls assessor jobs pay per hour?

As of Aug 24, 2026, the average hourly pay for remote security controls assessor in California is $58.00, according to ZipRecruiter salary data. Most workers in this role earn between $49.81 and $67.12 per hour, depending on experience, location, and employer.

What is a remote security controls assessor?

Remote Security Controls Assessors are professionals who evaluate and verify the effectiveness of an organization's security measures, policies, and procedures without being physically present on-site. They use a variety of tools and methods to assess compliance with security standards, identify vulnerabilities, and recommend improvements. Working remotely, these assessors often conduct interviews, review documentation, and perform technical tests to ensure that the organization's information systems are secure and meet regulatory requirements.

What skills and qualifications are needed to thrive as a remote security controls assessor?

To thrive as a Remote Security Controls Assessor, you need a solid understanding of information security frameworks, risk management practices, and compliance standards, often supported by a degree in cybersecurity or related certifications like CISSP, CISA, or Security+. Familiarity with security assessment tools, vulnerability scanners, and compliance management platforms is typically required. Strong analytical thinking, attention to detail, and effective written and verbal communication skills help you excel when evaluating controls and reporting findings remotely. These skills are essential to ensure accurate risk identification and maintain regulatory compliance while collaborating efficiently from a distance.

What challenges might I face as a remote security controls assessor, and how can I overcome them?

As a Remote Security Controls Assessor, one common challenge is effectively evaluating technical and administrative controls without being physically present at client sites. This often requires strong communication skills to coordinate with on-site staff, request and interpret evidence remotely, and clarify any ambiguities. Leveraging secure collaboration tools, maintaining clear documentation, and setting regular check-ins with clients can help address these challenges. Additionally, staying up to date with remote assessment methodologies and compliance frameworks will ensure thorough and accurate evaluations.

What is the difference between Remote Security Controls Assessor vs Security Analyst?

AspectRemote Security Controls AssessorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, Security+
Work EnvironmentRemote or on-site, focusing on compliance assessmentsTypically office-based, analyzing security data and incidents
Employer & IndustryGovernment agencies, consulting firms, large corporationsFinancial institutions, tech companies, healthcare

The Remote Security Controls Assessor primarily evaluates security controls for compliance, often working remotely, while the Security Analyst monitors and analyzes security threats and incidents. Both roles require security certifications, but the assessor focuses on audits and controls, whereas the analyst emphasizes threat detection and response.

What are the most commonly searched types of Security Controls Assessor jobs in California?

The most popular types of Security Controls Assessor jobs in California are:

What are popular job titles related to Remote Security Controls Assessor jobs in California?

For Remote Security Controls Assessor jobs in California, the most frequently searched job titles are:

What job categories do people searching Remote Security Controls Assessor jobs in California look for?

The top searched job categories for Remote Security Controls Assessor jobs in California are:

What cities in California are hiring for Remote Security Controls Assessor jobs?

Cities in California with the most Remote Security Controls Assessor job openings:

Infographic showing various Remote Security Controls Assessor job openings in California as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution, with an average salary of $120,635 per year, or $58 per hour.

L2 Technical Support Engineer - CMMC Service Delivery

SugarShot

Los Angeles, CA โ€ข On-site, Remote

$80K - $95K/yr

Full-time

Posted 7 days ago


Job description

Department: Technical Services / Service Delivery

Reports To: Technical Services Manager - CMMC Service Delivery

Position Type: Full-Time

Location: Los Angeles, CA - Hybrid, U.S.-Based

Position Summary

SugarShot is a managed services provider (MSP) and part of Treeline, a technology services organization spanning managed IT, cybersecurity, compliance, and advisory services. As Treeline expands its compliance business, SugarShot is building a dedicated Technical Services pod to support clients with CMMC and other regulated technology requirements.

The L2 Technical Support Engineer - CMMC Service Delivery is a hands-on technical role within this dedicated pod, responsible for resolving technical issues across endpoint, identity, cloud, networking, and security environments while operating within established security and compliance requirements.

This role requires strong technical troubleshooting skills, disciplined documentation, and the ability to work within defined security controls, access requirements, and change management processes. In regulated environments, how technical work is performed and documented is as important as resolving the issue itself.

The ideal candidate brings MSP experience, strong Microsoft and/or Google administration skills, experience supporting modern identity and endpoint environments, and an understanding of the security practices required when supporting regulated organizations.

Key Responsibilities

Technical Support & Service Delivery

Provide Level 2 technical support across assigned clients within the CMMC Service Delivery pod.

Troubleshoot and resolve technical issues across Microsoft 365 and/or Google Workspace, Windows and macOS endpoints, identity and access management, networking, cloud services, and security platforms.

Manage assigned tickets through resolution while meeting established response, resolution, communication, and SLA expectations.

Escalate complex, high-impact, or security-sensitive issues to the Technical Services Manager, L3, Engineering, or Security teams as appropriate.

Perform user administration, device configuration, application support, access changes, troubleshooting, and other day-to-day managed services activities.

Maintain clear, complete, and accurate ticket documentation, including troubleshooting performed, technical changes, approvals, and resolution details.

Follow established escalation, change management, and client communication procedures.

Identify recurring technical issues and contribute to root cause analysis and proactive remediation.

Collaborate with L1 technicians and provide technical guidance and escalation support when needed.

CMMC & Regulated Environment Support

Deliver technical support in accordance with client-specific CMMC, NIST SP 800-171, and other applicable security requirements.

Follow established procedures for handling Controlled Unclassified Information (CUI) and other sensitive information.

Adhere to client-specific access controls, authentication requirements, approved administrative tools, and secure support workflows.

Follow least-privilege and privileged-access requirements when performing administrative activities.

Ensure remote support, administrative access, technical changes, and troubleshooting activities are performed only through approved systems and processes.

Maintain ticket and technical documentation capable of supporting compliance evidence and assessment requirements.

Support remediation of vulnerabilities, technical findings, configuration issues, and control gaps as directed by the Technical Services Manager, Security, or Compliance teams.

Assist with technical validation and evidence collection activities related to CMMC readiness and assessments.

Immediately escalate activity, configurations, or service delivery practices that may introduce security or compliance risk.

Technical Responsibilities

Administer and support Microsoft 365 and/or Google Workspace environments.

Support identity and access management platforms including Entra ID and Okta.

Support endpoint management platforms including Intune and other MDM/RMM solutions across Windows and macOS environments.

Troubleshoot authentication, MFA, SSO, conditional access, permissions, and user access issues.

Support endpoint security, EDR/MDR, vulnerability management, application control, and secure remote access technologies.

Troubleshoot LAN/WAN, VPN, DNS, DHCP, wireless, and other common networking issues.

Perform approved software deployment, patching, endpoint configuration, and remediation activities.

Support onboarding, offboarding, access changes, and device lifecycle activities in accordance with documented security requirements.

Execute approved technical changes while following required testing, authorization, documentation, and change control procedures.

Participate in continuous improvement, standardization, automation, and proactive remediation initiatives.

Required Qualifications

3+ years of experience in IT support, managed services, systems administration, or a similar technical support environment.

Experience working within an MSP or other fast-paced, multi-client service environment.

Strong hands-on experience supporting Microsoft 365 and/or Google Workspace.

Experience with identity and access management platforms such as Entra ID and Okta.

Experience supporting Windows and macOS endpoints.

Experience with endpoint management platforms such as Intune and other MDM/RMM solutions.

Working knowledge of networking, endpoint security, EDR/MDR, vulnerability management, MFA, SSO, and secure remote access.

Strong troubleshooting skills across endpoint, identity, cloud, networking, and application environments.

Strong documentation and ticket management practices.

Ability to follow defined technical, security, access, and change management procedures consistently.

Strong written and verbal communication skills.

U.S.-based and able to meet client-specific personnel, access, or data-handling

requirements associated with regulated environments.

Preferred Qualifications

Experience supporting organizations operating under CMMC, NIST SP 800-171, DFARS, or comparable regulated security frameworks.

Experience supporting Department of Defense contractors or organizations handling CUI.

Experience working within CMMC Level 2 environments.

Familiarity with Microsoft GCC/GCC High and/or Google Workspace environments used by regulated organizations.

Experience with Entra ID, Okta, Intune, and enterprise identity and endpoint management platforms.

Experience with SIEM/MDR, EDR, SASE, vulnerability management, application control, and privileged access technologies.

Microsoft, Google, Okta, CompTIA, security, networking, or CMMC-related certifications.

Experience with ConnectWise or similar PSA platforms and modern RMM tooling.

Success Measures

Success in this role will be measured by:

SLA, response time, and resolution performance.

Ticket quality, accuracy, and completeness of documentation.

Technical quality and first-touch resolution where appropriate.

Consistent adherence to security and compliance procedures.

Appropriate handling of access, administrative privileges, and sensitive information.

Effective escalation of complex technical issues and security or compliance risks.

Client satisfaction and quality of communication.

Contribution to reducing recurring issues through documentation, root cause identification, and proactive remediation.

Readiness of service delivery records and technical evidence to support client compliance requirements.

Ability to deliver excellent technical support while operating within the security controls required by regulated client environments.

Role Expectations

The L2 Technical Support Engineer is expected to be a strong technical contributor who can independently own and resolve a broad range of support issues while recognizing when escalation is required.

This role requires someone who is comfortable troubleshooting complex technical issues, working across multiple client environments, collaborating with other technicians and technical teams, and operating within clearly defined security and compliance processes.

In a CMMC environment, how the work is performed matters as much as whether the issue is resolved. Successful technicians will demonstrate strong technical judgment, attention to detail, disciplined documentation, respect for access controls, and a commitment to both security and exceptional client service.

Employment Type: FULL_TIME