Skip to content
mimi

Cybersecurity Risk Assessment Consultant (NIST CSF / GRC)

Apptad Inc

Maryland City · On-site Full-time 1mo ago

About the role

Primary Skills (Mandatory)

Strong expertise in:

  • NIST Cybersecurity Framework (CSF 2.0)
  • NIST 800-53 & NIST 800-171 control mapping
  • Cybersecurity risk assessment methodologies
  • Security controls validation (evidence-based)
  • Gap analysis & maturity assessment
  • GRC frameworks and practices
  • Risk identification, scoring, and prioritization
  • Documentation review, interviews, and questionnaire-based assessments

Secondary Skills (Preferred)

  • Public sector / judiciary / government IT environments
  • SOC 2, ISO 27001, or similar frameworks
  • Security policy and compliance programs
  • Strong stakeholder communication (technical + executive level)
  • Report writing:
    • Executive summaries
    • Technical assessment reports
  • Project management exposure (Agile / Waterfall)
  • Tools:
    • GRC tools (Archer, ServiceNow GRC, etc.)
    • Excel-based assessment workbooks

Skills

AgileExcelGRCISO 27001NIST 800-171NIST 800-53NIST CSF 2.0Project ManagementServiceNow GRCSOC 2Waterfall

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free