Cybersecurity Quality Assurance Analyst Independent Verification and Validation (IV&V)

Remote Full-time
This is a remote position. POSITION TITLE Cybersecurity Quality Assurance Analyst Independent Verification and Validation (IV&V) SummaryThe Cybersecurity Quality Assurance Analyst supports independent verification and validation activities and ensures that all cybersecurity assessment products meet technical, security, and quality standards before delivery. The analyst reviews evidence, validates compliance with federal frameworks, and confirms the accuracy and consistency of risk documentation.The goal is to ensure high quality, defensible assessment outputs that meet customer and regulatory requirements. Responsibilities • Review cybersecurity assessment documentation for accuracy, completeness, and compliance • Conduct independent verification and validation of technical findings and risk statements • Evaluate evidence against federal and industry standards • Assess vendor cybersecurity risk and review third party risk documentation • Validate compliance with ISO, SOC, and NIST standards • Identify deficiencies or deviations from required quality and security standards • Provide feedback and guidance to assessment teams to maintain quality consistency • Maintain documentation, audit trails, and quality records • Support internal audit activities and process improvement initiatives • Prepare reports for management review and quality control oversight • Recommend enhancements to assessment processes and methodologies Requirements • Senior level positions require seven or more years of relevant cybersecurity experience • Advanced degree in a cybersecurity or technical field preferred, with experience or directly relevant certifications substituting for academic credentials • At least five years of experience in Information Security Governance, Risk, and Compliance, demonstrating: • Expertise in writing technical and risk management reports • Strong analytical, problem solving, and organizational skills • Experience assessing and mitigating risks associated with vendor relationships and vendor control evaluations • Experience performing risk-based due diligence • Technical understanding of cybersecurity concepts and working knowledge of ISO 27001, SOC 1 and SOC 2, NIST SP 800-53, and NIST SP 800-171 • At least three years of experience in third party cybersecurity risk management, demonstrating: • Experience evaluating third party cyber risk • Experience developing and implementing sustainable third party cyber risk processes • Experience conducting assessments using NIST SP 800-53 within a federal agency • Strong verbal and written communication skills • Effective technical writing and documentation capabilities • Experience in cybersecurity control assessment environments • Ability to document cyber assessments and communicate results clearly • Understanding of the Systems Development Life Cycle and its application to secure systems MINIMUM EDUCATION • Advanced degree preferred • Experience and certifications may be substituted for formal education on a case by case basis CERTIFICATIONS Candidate must hold and provide proof of at least one of the following certifications: • Certified Information Systems SecurityProfessional (CISSP) • Certified Information Systems Auditor (CISA) • Certified Information Security Manager (CISM) • Certified Third Party RiskProfessional (CTPRP) • Certified Third Party Risk Assessor (CTPRA) Apply tot his job Apply tot his job
Apply Now

Similar Opportunities

Information Assurance/Security Engineer, Staff

Remote Full-time

IT Quality Assurance Analyst III (Cyber Security)

Remote Full-time

Senior Security Assurance Analyst

Remote Full-time

Manager, Detection Engineering and Security Automation

Remote Full-time

Senior Analyst, Security Compliance (SOX IT)

Remote Full-time

Automation Engineer II, Falcon Complete (Remote)

Remote Full-time

Sr System Security Info Assurance SME (Top Secret Required)

Remote Full-time

IA & SS Master(Information Assurance and Security Specialist)

Remote Full-time

[Remote] Senior Product Marketing Manager, Security Assurance (Remote)

Remote Full-time

Information Assurance Specialist – Mid Level

Remote Full-time

[Remote] QA Tester (Remote-Florida Only)

Remote Full-time

Data Products Analyst

Remote Full-time

Experienced Part Time Remote Data Entry Specialist – Customer Service Representative for arenaflex

Remote Full-time

[Remote] Business Intelligence & Data Visualization Specialist

Remote Full-time

Senior Claims Specialist

Remote Full-time

Experienced Full Stack Data Entry Specialist – Packaging Strategy and Data Management

Remote Full-time

Experienced Virtual Customer Care Professional – Remote Work Opportunity with arenaflex for Delivering Exceptional Service and Driving Customer Satisfaction

Remote Full-time

Seasonal Sales Associate-6345 Batesville, MS 38606

Remote Full-time

[Remote] Field Service Technician- Pleasanton California

Remote Full-time

Experienced Part-Time arenaflex Virtual Assistant and Data Entry Specialist – Remote Work Opportunity with Flexible Hours and Competitive Compensation

Remote Full-time
← Back to Home