Data First Jobs

ClifyX

Data Security Assessor

Full Time · In Office · Phoenix, Arizona (USA)

Posted Aug 5, 2026

Work Options
Skills
Job Type
Position Group
  • Job Title: Data Security Assessor
  • Location: Phoenix, AZ Onsite
  • Duration: Fulltime/Permanent

We are seeking a highly skilled Security Assessment Consultant with strong expertise in Google Cloud Platform (GCP) Data Security to conduct security assessments for enterprise applications supporting Finance, Supply Chain, and HCM business functions. The ideal candidate will have hands-on experience implementing and assessing encryption, Data Loss Prevention (DLP), Database Activity Monitoring (DAM), IAM controls, and cloud security architectures. Experience with Oracle Cloud security assessments is preferred but not mandatory.

  • Must Have Technical/Functional Skills
  • Strong hands-on experience with GCP Data Security
  • Experience implementing and assessing:
  • Encryption controls (data at rest and in transit)
  • Data Loss Prevention (DLP)
  • Database Activity Monitoring (DAM)
  • Data classification and protection controls
  • Experience performing Application Security Reviews and Security Architecture Assessments
  • Strong understanding of Identity & Access Management (IAM), RBAC, privileged access management, and authentication/authorization
  • Experience with cloud security frameworks and risk assessment methodologies
  • Hands-on scripting/automation experience using Python or Java
  • Experience reviewing APIs, integrations, and enterprise application data flows
  • Strong documentation, analytical, stakeholder management, and communication skills
  • Preferred Skills
  • Experience conducting security assessments of Oracle Cloud applications, especially Oracle Fusion ERP, SCM, Finance, and HCM
  • Knowledge of Oracle security models, roles, and Segregation of Duties (SoD)
  • Experience with Oracle HSM integrations and key management solutions
  • Exposure to AWS and Azure security controls
  • Experience supporting compliance, audit, and governance initiatives
  • Roles & Responsibilities
  • Conduct security assessments of cloud-hosted Finance, Supply Chain, ERP, and HCM applications.
  • Perform detailed reviews of application architecture, APIs, integrations, and data flows to identify security risks.
  • Evaluate implementation of:
  • Encryption controls
  • DLP solutions
  • DAM controls
  • IAM and privileged access controls
  • Assess handling of sensitive data including PII, financial, payroll, supplier, and employee information.
  • Review cloud-native security controls within GCP environments.
  • Evaluate role-based access controls, Segregation of Duties (SoD), and user provisioning processes.
  • Conduct risk assessments and provide remediation recommendations.
  • Partner with Cybersecurity, Enterprise Architecture, Infrastructure, and Application teams throughout project lifecycles.
  • Assess third-party vendors and SaaS platforms against security and compliance standards.
  • Track remediation efforts and validate security control implementation.
  • Prepare security assessment reports, risk registers, executive summaries, and audit documentation.
  • Support internal and external audits and regulatory reviews.
  • Generic Managerial Skills, If any
  • The Cyber Threat Remediation Analyst serves as the operational coordinator for enterprise threat remediation activities. This role focuses on managing remediation processes, tracking cyber threat findings, facilitating stakeholder engagement, supporting threat applicability assessments, and improving remediation workflows.
  • Unlike traditional Vulnerability Management roles focused primarily on patching activities, this position supports a broader Threat Remediation Program that incorporates insights from Cyber Threat Intelligence, Incident Response, Red Team assessments, penetration testing, security assessments, and other cybersecurity initiatives.
  • This role is ideal for someone who enjoys combining cybersecurity knowledge, stakeholder engagement, process improvement, and program execution to help drive meaningful risk reduction across the enterprise. It goes beyond program tracking by helping evaluate threat applicability, assess organizational exposure, and influence remediation decisions in partnership with cybersecurity subject matter experts.

Mention you found this on Data First Jobs — it helps us bring you more roles like this.

Data Security Assessor

ClifyX

Like this role? Get carefully selected jobs like it, twice a week, straight to your inbox.

Free, no spam. Unsubscribe anytime.