Data First Jobs

RegalSentry

Security Assessment Analyst

Contract · In Office · USA

Posted Aug 15, 2026

Work Options
Cloud Stack
Skills
Job Type
Position Group

RegalSentry is a cybersecurity and compliance firm. We are looking for Security Assessment Analysts for contract positions supporting our assessment and reporting programs. This is a hands-on role: you run the collection yourself, review what comes back, and turn it into findings someone can act on.

What you'll do:

  • Run configuration and hardening assessments against published baselines across workstations, servers, and directory services
  • Assess cloud environments (AWS, Azure, Google Cloud) for misconfiguration and security posture
  • Review productivity and identity tenant configuration against published security baselines
  • Enumerate directory environments and analyze users, groups, permissions, group policy, and trust relationships
  • Validate automated output by hand and clear false positives before anything ships
  • Build the findings register: severity, evidence, and recommended remediation for every finding, mapped to recognized attack and control references
  • Write executive summaries a non-technical reader can act on
  • Run quality checks on assessment packages before delivery

Requirements:

  • 3+ years in security assessment, vulnerability management, or systems administration with hands-on work
  • CompTIA Security+
  • Hands-on configuration and hardening assessment against published benchmarks (SCAP content, DISA STIG, CIS Benchmarks, or similar)
  • Hands-on security assessment of at least one major cloud platform (AWS, Azure, or Google Cloud). Tooling could include Prowler, ScoutSuite, Steampipe, or other provider.
  • Working knowledge of Active Directory: users, groups, group policy, permissions, and trust relationships
  • Scripting to collect and shape assessment data (PowerShell, Python, or similar)
  • Detailed note taker
  • Familiar using Frontier AI models, embedded or through chat assist

Nice to have:

  • CySA+, or a cloud fundamentals certification (AZ-900, AWS Cloud Practitioner)
  • Familiarity with recognized attack and control references (MITRE ATT&CK, OWASP, CIS Controls)
  • Experience assessing productivity and identity tenants against a published security baseline
  • Vulnerability scanning platform experience. Tooling could include Tenable, Rapid7, Qualys, or other provider.
  • Automation or tooling work that speeds up repeatable assessment tasks
  • Exposure to one or more compliance frameworks (SOC 2, ISO 27001, PCI DSS, HIPAA, NIST 800-171)
  • Bachelors or Master degree in IT, Cybersecurity, Development, or other technical field

Engagement:

  • Contract (1099), remote, US-based. Applicants must be authorized to work in the United States; we are unable to sponsor work visas for this role.
  • Competitive hourly rate with C2C opportunity available. The actual rate within this range depends on experience, qualifications, and certifications.
  • Hours vary by project

RegalSentry is an equal opportunity employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, national origin, age, disability, veteran status, or any other legally protected status.

Mention you found this on Data First Jobs — it helps us bring you more roles like this.

Security Assessment Analyst

RegalSentry

Like this role? Get carefully selected jobs like it, twice a week, straight to your inbox.

Free, no spam. Unsubscribe anytime.