**** PLEASE READ THIS POSTING IN ITS ENTIRETY BEFORE APPLYING ****
JLGOV, LLC is seeking a hands-on Cybersecurity Audit & Compliance Analyst for an anticipated State of Florida cybersecurity audit-enablement engagement. This role supports a senior cybersecurity assessment lead and requires practical experience translating cybersecurity requirements into audit procedures, evidence testing, workpapers, and defensible conclusions.
Location: Remote; preference for candidates within approximately 75 miles of Tallahassee, FL
Engagement: Project-Based / Variable Hours
Anticipated Period: September 2026–June 2027, subject to contract award
Estimated Effort: Approximately 550–650 total project hours; not a 40-hour workweek and hours are not guaranteed
Compensation: $58–$64/hour, based on qualifications and experience
Travel: Periodic travel to Tallahassee may be required when requested
Candidates must be legally authorized to work in the United States, perform contract work from within the United States, and satisfy applicable Government background-screening and customer-approval requirements. No sponsorship is available for this project.
Background Screening
Final assignment is contingent upon contract award and applicable Government requirements. Candidates must be willing and able to complete required background screening and fingerprinting, identity/employment/certification verification, confidentiality requirements, and required security/privacy training.
Responsibilities & Qualifications
- Develop cybersecurity audit procedures, workpapers, risk/control matrices, evidence requests, testing procedures, templates, and job aids.
- Apply NIST CSF, Rule 60GG-2, F.A.C., and applicable professional auditing standards.
- Evaluate technical evidence for relevance, reliability, and sufficiency; support control testing, risk assessments, findings, and recommendations.
- Support audit planning, cybersecurity training, research, reporting, metrics, and quality assurance.
- Possess 5+ years of relevant hands-on cybersecurity/IT audit, GRC, government compliance, security assessment, or control-testing experience.
- Demonstrate experience developing workpapers, testing controls, evaluating evidence, and documenting defensible conclusions.
- Possess strong analytical, technical-writing, Microsoft Word/Excel, and communication skills.
- Government/public-sector experience is strongly preferred; Florida government and Rule 60GG-2 experience are highly desirable.
Certification Requirement
Candidates must possess at least two (2) current, relevant professional certifications, such as CISA, CISSP, CISM, CRISC, CIA, CEH, Security+, PMP, or comparable cybersecurity/audit credentials. CISA or another IT audit/GRC-focused certification is strongly preferred.
Candidates should also highlight experience with audit training, technical writing, templates/job aids, Microsoft 365/SharePoint, risk assessments, audit planning, metrics/reporting, and executive communications.
Mandatory Virtual Technical Interview
A live, scenario-based virtual technical interview is REQUIRED to advance in the selection process.
Candidates will work through a realistic cybersecurity audit scenario demonstrating their ability to:
- Identify risks and controls;
- Develop appropriate testing procedures;
- Determine and evaluate required evidence; and
- Document a defensible workpaper conclusion or recommendation.
This assessment validates hands-on capability—not memorization of cybersecurity terminology.
Equal Employment Opportunity
JLGOV, LLC is an Equal Employment Opportunity employer. Employment decisions are made without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, disability, genetic information, veteran status, or any other status protected by applicable law. Reasonable accommodations are provided in accordance with applicable law.
JLGOV, LLC | Solutions for a Stronger Tomorrow