1

Security Controls Assessor Jobs in Arizona (NOW HIRING)

Data classification and protection controls * Strong experience conducting Application Security Reviews and Security Architecture Assessments. * Strong understanding of IAM, RBAC, privileged access ...

Posted today

Design and implement security controls supporting cloud-based environments, particularly AWS. * Assess cloud infrastructure configurations and implement security best practices. * Support endpoint ...

... assessments, and implementing robust security measures to protect Intel's critical assets, systems, and applications. The Cyber Defense team manages security controls spanning vulnerability scanning ...

Experience with security and privacy control selection, implementation, assessment, and authorization. * Strong knowledge of information security policies, risk management, internal controls, and ...

Showing results 21-40

Security Controls Assessor information

See Arizona salary details

$8

$54

$72

How much do security controls assessor jobs pay per hour?

As of Aug 19, 2026, the average hourly pay for security controls assessor in Arizona is $54.76, according to ZipRecruiter salary data. Most workers in this role earn between $47.02 and $63.41 per hour, depending on experience, location, and employer.

What is a security controls assessor?

Security Controls Assessors are professionals responsible for evaluating and validating the effectiveness of security controls within an organization's information systems. They conduct assessments to ensure compliance with regulatory standards, such as NIST, FISMA, or other security frameworks. Their work helps organizations identify vulnerabilities, manage risks, and maintain the confidentiality, integrity, and availability of critical data. Security Controls Assessors often provide recommendations for remediation and support efforts to achieve or maintain security certifications.

What does a security controls assessor do?

A security controls assessor (SCA) evaluates the security controls within network systems to identify vulnerabilities and recommend actions to correct problems, working either alone or as part of a team. As a security controls assessor, your duties begin with conducting an in-depth assessment of the management, operations, and technical security controls. You must analyze information and prepare reports describing the vulnerability level of the network with specific detail as to what compromises data systems. You then develop a plan to address vulnerabilities and continue to monitor the security of network systems.

What are the key skills and qualifications needed to thrive as a security controls assessor, and why are they important?

To thrive as a Security Controls Assessor, you need expertise in information security frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in cybersecurity or related fields and certifications like CISSP, CISA, or CAP. Familiarity with tools such as vulnerability scanners, security assessment platforms, and compliance management systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and clearly report findings to stakeholders. These skills ensure that organizations maintain robust security postures and meet regulatory requirements to protect critical assets.

What are some common challenges security controls assessors face when evaluating compliance across multiple systems?

Security Controls Assessors often encounter challenges with inconsistent documentation, varying system configurations, and differing interpretations of compliance standards across departments. Coordinating with multiple teams to collect evidence and clarify control implementations can be time-consuming, especially in large organizations. Staying current with evolving regulations and ensuring all systems meet the latest requirements also demands continuous learning and adaptability. Building strong communication channels with system owners and IT staff helps overcome these hurdles and ensures thorough, accurate assessments.

What is the difference between Security Controls Assessor vs Security Analyst?

AspectSecurity Controls AssessorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, Security+
Work EnvironmentAssessing security controls, compliance auditsMonitoring security systems, incident response
Employer & IndustryGovernment agencies, compliance firmsCorporate IT, cybersecurity teams

The Security Controls Assessor primarily evaluates and verifies security controls for compliance, often in government or regulated environments. In contrast, a Security Analyst focuses on monitoring, analyzing, and responding to security threats within organizations. While both roles require security certifications and involve cybersecurity, their core responsibilities and work settings differ significantly.

What are popular job titles related to Security Controls Assessor jobs in Arizona?

For Security Controls Assessor jobs in Arizona, the most frequently searched job titles are:

What job categories do people searching Security Controls Assessor jobs in Arizona look for?

The top searched job categories for Security Controls Assessor jobs in Arizona are:

What cities in Arizona are hiring for Security Controls Assessor jobs?

Cities in Arizona with the most Security Controls Assessor job openings:

What are popular job titles related to Security Controls Assessor jobs in AZ?

For Security Controls Assessor jobs in AZ, the most frequently searched job titles are:

Infographic showing various Security Controls Assessor job openings in Arizona as of August 2026, with employment types broken down into 86% Full Time, 10% Part Time, 2% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $113,910 per year, or $54.8 per hour.

Cloud Data Security Assessment Consultant

Neshent Technologies

Full-time

Posted 8 hours ago

Posted today


Job description

We are seeking an experienced Cloud Data Security Assessment Consultant with strong expertise in Google Cloud Platform (GCP) security, data protection, application security, and security architecture assessments. The role will focus on evaluating enterprise cloud applications, data flows, integrations, and security controls across Finance, Supply Chain, ERP, and HCM environments.

The ideal candidate will have hands-on experience assessing encryption, Data Loss Prevention (DLP), Database Activity Monitoring (DAM), IAM, RBAC, privileged access, and cloud security controls. Experience with Oracle Cloud security assessments is preferred.

Required Technical Skills
  • 6+ years of experience in cybersecurity, cloud security, application security, or security assessments.

  • Strong hands-on experience with GCP Cloud and Data Security.

  • Experience implementing or assessing:

    • Encryption for data at rest and in transit

    • Data Loss Prevention (DLP)

    • Database Activity Monitoring (DAM)

    • Data classification and protection controls

  • Strong experience conducting Application Security Reviews and Security Architecture Assessments.

  • Strong understanding of IAM, RBAC, privileged access management, authentication, and authorization.

  • Experience with cloud security frameworks, security controls, and risk assessment methodologies.

  • Hands-on scripting or automation experience using Python or Java.

  • Experience reviewing APIs, integrations, application architectures, and enterprise data flows.

  • Strong analytical, documentation, stakeholder management, and communication skills.

Preferred Skills
  • Experience assessing Oracle Cloud applications, including Oracle Fusion ERP, SCM, Finance, or HCM.

  • Knowledge of Oracle security models, roles, and Segregation of Duties (SoD).

  • Experience with Oracle HSM, encryption, and key management solutions.

  • Exposure to AWS and Azure security controls.

  • Experience supporting security compliance, audits, governance, and regulatory requirements.

Roles & Responsibilities
  • Conduct security assessments of cloud-hosted Finance, Supply Chain, ERP, and HCM applications.

  • Review application architectures, APIs, integrations, and data flows to identify security risks.

  • Assess implementation and effectiveness of encryption, DLP, DAM, IAM, and privileged access controls.

  • Evaluate the protection of sensitive data, including PII, financial, payroll, supplier, and employee information.

  • Review cloud-native security controls within GCP environments.

  • Evaluate RBAC, SoD, user provisioning, authentication, and authorization processes.

  • Perform security and risk assessments and provide actionable remediation recommendations.

  • Partner with Cybersecurity, Enterprise Architecture, Infrastructure, and Application teams throughout the application lifecycle.

  • Assess third-party vendors and SaaS platforms against applicable security and compliance requirements.

  • Track remediation activities and validate implementation of security controls.

  • Prepare security assessment reports, risk registers, executive summaries, and audit documentation.

  • Support internal and external audits and regulatory reviews.

  • Contribute to continuous improvement of security assessment methodologies, processes, and controls.