1

Security Controls Assessor Jobs in Arizona (NOW HIRING)

Design and implement security controls supporting cloud-based environments, particularly AWS. * Assess cloud infrastructure configurations and implement security best practices. * Support endpoint ...

... assessments, and implementing robust security measures to protect Intel's critical assets, systems, and applications. The Cyber Defense team manages security controls spanning vulnerability scanning ...

SaaS Security Governance · Perform SaaS onboarding assessments and certification reviews. · Evaluate SaaS architectures, integrations, data flows, and security controls. · Conduct SaaS posture ...

Experience with security and privacy control selection, implementation, assessment, and authorization. * Strong knowledge of information security policies, risk management, internal controls, and ...

next page

Showing results 1-20

Security Controls Assessor information

See Arizona salary details

$8

$54

$72

How much do security controls assessor jobs pay per hour?

As of Aug 19, 2026, the average hourly pay for security controls assessor in Arizona is $54.76, according to ZipRecruiter salary data. Most workers in this role earn between $47.02 and $63.41 per hour, depending on experience, location, and employer.

What is a security controls assessor?

Security Controls Assessors are professionals responsible for evaluating and validating the effectiveness of security controls within an organization's information systems. They conduct assessments to ensure compliance with regulatory standards, such as NIST, FISMA, or other security frameworks. Their work helps organizations identify vulnerabilities, manage risks, and maintain the confidentiality, integrity, and availability of critical data. Security Controls Assessors often provide recommendations for remediation and support efforts to achieve or maintain security certifications.

What does a security controls assessor do?

A security controls assessor (SCA) evaluates the security controls within network systems to identify vulnerabilities and recommend actions to correct problems, working either alone or as part of a team. As a security controls assessor, your duties begin with conducting an in-depth assessment of the management, operations, and technical security controls. You must analyze information and prepare reports describing the vulnerability level of the network with specific detail as to what compromises data systems. You then develop a plan to address vulnerabilities and continue to monitor the security of network systems.

What are the key skills and qualifications needed to thrive as a security controls assessor, and why are they important?

To thrive as a Security Controls Assessor, you need expertise in information security frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in cybersecurity or related fields and certifications like CISSP, CISA, or CAP. Familiarity with tools such as vulnerability scanners, security assessment platforms, and compliance management systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and clearly report findings to stakeholders. These skills ensure that organizations maintain robust security postures and meet regulatory requirements to protect critical assets.

What are some common challenges security controls assessors face when evaluating compliance across multiple systems?

Security Controls Assessors often encounter challenges with inconsistent documentation, varying system configurations, and differing interpretations of compliance standards across departments. Coordinating with multiple teams to collect evidence and clarify control implementations can be time-consuming, especially in large organizations. Staying current with evolving regulations and ensuring all systems meet the latest requirements also demands continuous learning and adaptability. Building strong communication channels with system owners and IT staff helps overcome these hurdles and ensures thorough, accurate assessments.

What is the difference between Security Controls Assessor vs Security Analyst?

AspectSecurity Controls AssessorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, Security+
Work EnvironmentAssessing security controls, compliance auditsMonitoring security systems, incident response
Employer & IndustryGovernment agencies, compliance firmsCorporate IT, cybersecurity teams

The Security Controls Assessor primarily evaluates and verifies security controls for compliance, often in government or regulated environments. In contrast, a Security Analyst focuses on monitoring, analyzing, and responding to security threats within organizations. While both roles require security certifications and involve cybersecurity, their core responsibilities and work settings differ significantly.

What are popular job titles related to Security Controls Assessor jobs in Arizona?

For Security Controls Assessor jobs in Arizona, the most frequently searched job titles are:

What job categories do people searching Security Controls Assessor jobs in Arizona look for?

The top searched job categories for Security Controls Assessor jobs in Arizona are:

What cities in Arizona are hiring for Security Controls Assessor jobs?

Cities in Arizona with the most Security Controls Assessor job openings:

What are popular job titles related to Security Controls Assessor jobs in AZ?

For Security Controls Assessor jobs in AZ, the most frequently searched job titles are:

Infographic showing various Security Controls Assessor job openings in Arizona as of August 2026, with employment types broken down into 86% Full Time, 10% Part Time, 2% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $113,910 per year, or $54.8 per hour.

$90K - $110K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 25 days ago


Job description

Role - Data Security Assessor
Experience Required -6+ Years
We are seeking a highly skilled Security Assessment Consultant with strong expertise in Google Cloud Platform (GCP) Data Security to conduct security assessments for enterprise applications supporting Finance, Supply Chain, and HCM business functions. The ideal candidate will have hands-on experience implementing and assessing encryption, Data Loss Prevention (DLP), Database Activity Monitoring (DAM), IAM controls, and cloud security architectures. Experience with Oracle Cloud security assessments is preferred but not mandatory.
Must Have Technical/Functional Skills
Strong hands-on experience with GCP Data Security
Experience implementing and assessing:
Encryption controls (data at rest and in transit)
Data Loss Prevention (DLP)
Database Activity Monitoring (DAM)
Data classification and protection controls
Experience performing Application Security Reviews and Security Architecture Assessments
Strong understanding of Identity & Access Management (IAM), RBAC, privileged access management, and authentication/authorization
Experience with cloud security frameworks and risk assessment methodologies
Hands-on scripting/automation experience using Python or Java
Experience reviewing APIs, integrations, and enterprise application data flows
Strong documentation, analytical, stakeholder management, and communication skills
Preferred Skills
Experience conducting security assessments of Oracle Cloud applications, especially Oracle Fusion ERP, SCM, Finance, and HCM
Knowledge of Oracle security models, roles, and Segregation of Duties (SoD)
Experience with Oracle HSM integrations and key management solutions
Exposure to AWS and Azure security controls
Experience supporting compliance, audit, and governance initiatives
Roles & Responsibilities
Conduct security assessments of cloud-hosted Finance, Supply Chain, ERP, and HCM applications.
Perform detailed reviews of application architecture, APIs, integrations, and data flows to identify security risks.
Evaluate implementation of:
Encryption controls
DLP solutions
DAM controls
IAM and privileged access controls
Assess handling of sensitive data including PII, financial, payroll, supplier, and employee information.
Review cloud-native security controls within GCP environments.
Evaluate role-based access controls, Segregation of Duties (SoD), and user provisioning processes.
Conduct risk assessments and provide remediation recommendations.
Partner with Cybersecurity, Enterprise Architecture, Infrastructure, and Application teams throughout project lifecycles.
Assess third-party vendors and SaaS platforms against security and compliance standards.
Track remediation efforts and validate security control implementation.
Prepare security assessment reports, risk registers, executive summaries, and audit documentation.
Support internal and external audits and regulatory reviews.
Generic Managerial Skills, If any
The Cyber Threat Remediation Analyst serves as the operational coordinator for enterprise threat remediation activities. This role focuses on managing remediation processes, tracking cyber threat findings, facilitating stakeholder engagement, supporting threat applicability assessments, and improving remediation workflows.
Unlike traditional Vulnerability Management roles focused primarily on patching activities, this position supports a broader Threat Remediation Program that incorporates insights from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, security assessments, and other cybersecurity initiatives.
This role is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to help drive meaningful risk reduction across the enterprise. It goes beyond program tracking by helping evaluate threat applicability, assess organizational exposure, and influence remediation decisions in partnership with cybersecurity subject matter experts.
Base Salary Range : $90,000 to $110,000 Per Annum
TCS Employee Benefits Summary:
Discretionary Annual Incentive.
Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
Family Support: Maternal & Parental Leaves.
Insurance Options: Auto & Home Insurance, Identity Theft Protection.
Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
Time Off: Vacation, Time Off, Sick Leave & Holidays.
Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.