2

Remote Security Risk Assessment Jobs (NOW HIRING)

You are comfortable with the principles and methods of human health risk assessment and are eager ... This position may offer in-office, remote, or hybrid opportunities based on the candidate ...

Sr. Staff AI Security Architect

Horsham, PA ยท On-site +1

$95 - $110/hr

Remote Duration: Contract-to-Hire Compensation Range: $95-110/hour Benefits: Eligible for Health ... AI risk assessment frameworks, including NIST AI RMF and OWASP Top 10 for LLMs. โ€ข Expertise in ...

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

For candidates not in those locations, we would consider fully remote work for a highly qualified ... Knowledge of toxicology, statistics, human health risk assessment and regulatory compliance

Security Compliance Manager

OR ยท Remote

$140K - $170K/yr

Strong competency in gap analysis and risk assessment methodologies; able to translate results into ... This is a remote position with less than 10% travel requirements. Occasional planned travel may be ...

Security Architect Engineer

Manhattan, NY ยท On-site +1

$71.75 - $92.50/hr

Experience in conducting IT security reviews and risk assessments. Proficiency in risk analysis, management, and treatment. Ability to develop, analyze, and implement security features. Experience ...

You might be conducting ground assessments in a Medium or High Risk location; or creating a security solution for one of our teams traveling to a remote location. Description This role will lead on ...

next page

Showing results 1-20

Remote Security Risk Assessment information

See salary details

$10

$50

$69

How much do remote security risk assessment jobs pay per hour?

As of May 29, 2026, the average hourly pay for remote security risk assessment in the United States is $50.41, according to ZipRecruiter salary data. Most workers in this role earn between $40.87 and $60.10 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Security Risk Assessor, and why are they important?

To thrive as a Remote Security Risk Assessor, you need expertise in cybersecurity principles, risk analysis, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like vulnerability scanners, security information and event management (SIEM) systems, and risk assessment frameworks (e.g., NIST, ISO 27001) is essential. Strong analytical thinking, communication skills, and attention to detail help in accurately identifying and communicating risks to stakeholders. These skills and qualities are vital to ensure organizations can proactively mitigate threats and maintain robust security postures in remote or distributed environments.

What are some common challenges faced by professionals in remote security risk assessment roles?

Professionals in remote security risk assessment often encounter challenges such as limited on-site visibility, reliance on digital communication, and the need to assess complex IT environments from afar. Effective collaboration with on-site staff and stakeholders is essential to gather accurate information and implement recommendations. Additionally, staying up-to-date with evolving cybersecurity threats and maintaining clear documentation are vital for success in this role.

What is a Remote Security Risk Assessment?

A Remote Security Risk Assessment is a process where security professionals evaluate an organization's security risks, vulnerabilities, and threats without being physically present on-site. This assessment is typically conducted through virtual meetings, digital questionnaires, and remote access to systems and documentation. The goal is to identify potential security gaps and recommend improvements to protect sensitive data and systems from cyber threats. Remote assessments have become increasingly popular due to their flexibility, cost-effectiveness, and ability to serve organizations regardless of location.

What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?

AspectRemote Security Risk AssessmentCybersecurity Analyst
CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRemote or on-site, focusing on risk evaluationRemote or on-site, focusing on security monitoring and incident response
Industry UsageUsed in risk management, compliance, and audit contextsUsed in security operations, threat analysis, and incident handling

Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.

More about Remote Security Risk Assessment jobs
What cities are hiring for Remote Security Risk Assessment jobs? Cities with the most Remote Security Risk Assessment job openings:
What are the most commonly searched types of Security Risk Assessment jobs? The most popular types of Security Risk Assessment jobs are:
What states have the most Remote Security Risk Assessment jobs? States with the most job openings for Remote Security Risk Assessment jobs include:
Infographic showing various Remote Security Risk Assessment job openings in the United States as of May 2026, with employment types broken down into 69% Full Time, 28% Part Time, and 3% Contract. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution, with an average salary of $104,848 per year, or $50.4 per hour.
Senior Consultant - PCI Qualified Security Assessor

Senior Consultant - PCI Qualified Security Assessor

Bloom Equity Partners

Atlanta, GA โ€ข Remote

Full-time

This job post hasย expired today.ย Applications are no longer accepted.


Job description

Remote Roleย 
Role Purpose
The Senior Consultant โ€“ Cyber Security & PCI Qualified Security Assessor (QSA) is a senior delivery and trusted-advisor role within our GRC Advisory practice, accountable for leading high-quality cyber security and compliance engagements with a primary focus on PCI DSS, supplemented by broader cyber risk, governance, and assurance services.
The role leads client engagements end-to-endโ€”planning, execution, quality assurance, stakeholder management, and close-outโ€”working independently or leading small project teams. The Senior Consultant contributes actively to the growth, capability, and reputation of the practice.
Key Responsibilities & Accountabilities
Client Delivery & Engagement Leadership
  • Lead cyber security and PCI DSS client engagements from initiation through delivery and closure.
  • Act as primary client point of contact, ensuring clear communication, scope control, and expectation management.
  • Deliver high-quality, concise, and actionable reports suitable for technical teams, senior management, and executive stakeholders.
  • Apply judgement and experience to complex risk and compliance issues, ensuring pragmatic, proportionate recommendations.
PCI DSS & QSA Responsibilities
  • Perform PCI DSS assessments in line with PCI SSC requirements, including:
    • Scoping and gap assessments
    • On-site and remote assessments
    • Completion of SAQs, Reports on Compliance (ROC), and Attestations of Compliance (AOC)
  • Provide expert advice on PCI DSS control implementation, compensating controls, and remediation planning.
  • Support clients in achieving and maintaining PCI DSS compliance across complex environments.
  • Stay current with PCI DSS standard updates, guidance, and assessor program requirements.
Cyber Security & Risk Advisory
  • Deliver broader cyber security advisory services, including:
    • Information security risk assessments and business impact analysis
    • Governance, risk, and compliance (GRC) assessments
    • Framework-based assessments (e.g. ISO/IEC 27001, ISO/IEC 42001, NIST CSF, NIST 800-53, SOC 2, HIPAA, SABSA, COBIT)
    • Cyber supply chain security and third-party risk assessments
  • Advise clients on the design and improvement of cyber security strategies, policies, and control environments.
  • Investigate significant security incidents or control failures and recommend control improvements.
Quality, Assurance & Professional Practice
  • Take responsibility for quality assurance of own work and contributions from junior team members.
  • Ensure delivery is compliant with internal methodologies, standards, and contractual requirements.
  • Participate in peer reviews, knowledge sharing, and continuous improvement of consulting practices and assets.
Commercial & Practice Contribution
  • Identify and nurture commercial opportunities during engagements and contribute to account growth.
  • Support pre-sales activities including proposal writing, tender responses, and client presentations.
  • Mentor consultants and junior team members, supporting their professional and technical development.
  • Contribute to internal training, capability development, and thought leadership activities.
Key Performance Indicators
  • Successful delivery of cyber security and PCI DSS engagements to time, quality, and budget.
  • Client satisfaction and trusted-advisor status.
  • Identification and support of new commercial opportunities.
  • Effective stakeholder engagement and team leadership.
  • Contribution to practice capability, knowledge sharing, and mentoring.
Person Specification
Knowledge & Experience (Essential)
  • Minimum 2+ years' experience as a PCI DSS Qualified Security Assessor (QSA) delivering PCI DSS engagements.
  • Proven experience leading or independently delivering consulting engagements in cyber security or information risk.
  • Strong experience completing PCI DSS deliverables including SAQs, ROCs, and AOCs.
  • Experience advising clients on scoping, remediation, and ongoing compliance strategies.
  • Demonstrable experience working with at least two major security frameworks (e.g. PCI DSS, ISO/IEC 27001, ISO/IEC 42001, NIST CSF, NIST 800-53, SABSA, COBIT).
  • Experience communicating complex cyber security concepts to both technical and non-technical stakeholders, including senior management and boards.
Skills & Abilities
Information Security & Assurance
  • Conducts cyber security risk assessments, vulnerability analysis, and business impact assessments.
  • Interprets and applies security and assurance policies, standards, and regulatory requirements.
  • Investigates significant security control failures or incidents and recommends improvements.
Stakeholder & Relationship Management
  • Builds and maintains strong, long-term client relationships.
  • Leads stakeholder engagement strategies and manages complex client environments.
  • Acts confidently as a trusted advisor.
Project Management
  • Leads medium-scale consulting projects with direct business impact.
  • Manages scope, resources, risks, and quality to achieve successful outcomes.
  • Uses appropriate delivery approaches (predictive or agile).
Commercial Awareness
  • Identifies sales opportunities and contributes to pipeline development.
  • Supports pre-sales and proposal activities.
  • Understands client business drivers and market context.
Qualifications & Certifications
EssentialDesirable
  • PCI DSS Qualified Security Assessor (QSA) โ€“ current and in good standing
  • ISO/IEC 27001 Lead Auditor or Lead Implementer
  • NIST CSF / NIST 800-53 working knowledge or certification
  • One or more of: CISSP, CISM, or CISA
  • Bachelor's degree, or equivalent professional experience
  • ISO/IEC 42001 Lead Implementer
  • SOC 2 audit experience
  • HIPAA experience
  • CRISC
  • Security+ / Network+
Travel & Language Requirements
  • Willingness to travel nationally and internationally.
  • Business-level fluency in English.
  • Additional languages desirable.
Personal Qualities & Behaviours
  • Client-centric and committed to excellence in service delivery.
  • Confident, professional, and credible under pressure.
  • Strong integrity, impartiality, and ethical standards.
  • Results-focused with strong problem-solving skills.
  • Adaptable, collaborative, and open to change.
  • Proactive self-manager and mentor to others.
  • Strategic thinker who connects long-term objectives with day-to-day delivery.

Powered by JazzHR

eei7SwhWG6