Ardent MC
Cyber Lead Auditor / Test Lead
Part remote, part office, you need to live within commuting distance of a named location.
Hybrid · Atlanta, GA; Hybrid/Remote; Tallahassee, FL
Employer listed it 6 days ago · Added 6 days ago
First listed 6 days ago and still open.
Salary
Not stated
Location
Hybrid · Atlanta, GA; Hybrid/Remote; Tallahassee, FL
Timezone
Not stated
Contract
Full-time
Experience
Lead
Category
Other
This employer didn't state pay. Jobs like this usually pay around $170k–$250k a year, a typical range taken from 250 lead-level other roles on Nomaders that do state pay. It's a guide, not an offer.
Remote flexibility
Hybrid
This role is only partly remote, the employer expects time in the office around Atlanta, GA; Hybrid/Remote; Tallahassee, FL, Florida, so you need to live within commuting distance.
What the employer says
- Source listing states candidate location: "Atlanta, GA; Hybrid/Remote; Tallahassee, FL, Florida"
- Listing mentions "Hybrid"
What Nomaders makes of it
- Not suitable if you plan to move between countries
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
Ardent is seeking a Cyber Lead Auditor / Test Lead to join our team.
This is a remote position with frequent travel expected to Tallahassee, FL - candidates from Florida and nearby states are preferred.
Position Description:
Ardent is seeking a Cyber Lead Auditor / Test Lead to provide independent technical and assurance leadership for a cybersecurity assurance program for the state of Florida. This role converts OCIG objectives into audit-defensible testing strategies and step-by-step procedures, supervises evidence collection and analysis, and verifies that factual findings are sufficiently supported and traceable to applicable criteria across a potentially broad multi-agency environment.
Responsibilities and Duties:
Lead ingestion and analysis of agency documentation, including risk assessments, remediation plans, prior findings, corrective actions, inventories, and strategic plans.
Direct development of the Agency Risk Understanding Memorandum, including environmental summaries, agency-specific risks, assumptions, documentation gaps, and impacts on testing priorities.
Design the Ground-Truth and Ad Hoc Testing Strategies and approve detailed procedures defining objectives, systems, controls, access points, tools, sampling, scripts, evidence, thresholds, stop conditions, and escalation paths.
Map procedures and results to NIST CSF DE.AE, DE.DP, PR.AC; Rule 60GG-2, F.A.C.; and the applicable approved criteria.
Ensure testing remains within written OCIG authorization, avoids duplication of operational testing, and complies with agency-specific Rules of Engagement.
Review evidence for relevance, reliability, sufficiency, attribution, timestamps, chain of custody, and reproducibility.
Validate that reports accurately state procedures performed and factual results without an audit opinion; ensure advisory recommendations are distinctly labeled.
Conduct independent QA reviews of technical deliverables not authored solely by the reviewer and document sign-off.
Lead technical briefings, workshops, job aids, and knowledge transfer so OCIG and OIG staff can understand and reuse procedures.
Support urgent analysis of logs, timelines, after-action reports, remediation evidence, and incident-specific control issues when directed.
Requirements:
Bachelor’s degree in cybersecurity, information assurance, audit, information systems, or related discipline.
Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
10 years of progressive cybersecurity experience, including security operations, incident response, vulnerability management, intrusion analysis, adversary simulation, technical assessment, or audit support.
5 years supporting or conducting audits, compliance reviews, independent assessments, or assurance work in government or similarly regulated environments.
Demonstrated ability to design defensible test procedures, evaluate control performance, distinguish fact from opinion, and communicate technical results to senior stakeholders.
Working knowledge of professional auditing or assurance standards and evidence requirements.
Preferred Qualifications:
Purple-team or adversary-emulation leadership using MITRE ATT&CK and threat-informed kill chains.
Requirements
- ·Bachelor’s degree in cybersecurity, information assurance, audit, information systems, or related discipline.
- ·Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
- ·10 years of progressive cybersecurity experience, including security operations, incident response, vulnerability management, intrusion analysis, adversary simulation, technical assessment, or audit support.
- ·5 years supporting or conducting audits, compliance reviews, independent assessments, or assurance work in government or similarly regulated environments.
- ·Demonstrated ability to design defensible test procedures, evaluate control performance, distinguish fact from opinion, and communicate technical results to senior stakeholders.
Benefits
No benefits package published with this listing. Ask about it at first interview.
How to apply
- 1Check the flexibility label above, hybrid, matches where you plan to live and work.
- 2Tailor your CV to the role at Ardent MC, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 6d ago. Last checked 24 Sept. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open other roles with comparable remote rules.
Free to apply, no account needed.
Typically $170k to $250k per year · You'll be taken to the employer's careers page.