Jobs › Georgia › Atlanta › Cyber Lead Auditor / Test Lead
Cyber Lead Auditor / Test Lead
ArdentMC is hiring for the job of Cyber Lead Auditor / Test Lead, Atlanta, GA (On-site). This is an Audit job in the governance, risk, and compliance field. Review the full details below and apply directly with ArdentMC.
Ardent is seeking a Cyber Lead Auditor / Test Lead to join our team.
This is a remote position with frequent travel expected to Tallahassee, FL - candidates from Florida and nearby states are preferred.
Position Description:
Ardent is seeking a Cyber Lead Auditor / Test Lead to provide independent technical and assurance leadership for a cybersecurity assurance program for the state of Florida. This role converts OCIG objectives into audit-defensible testing strategies and step-by-step procedures, supervises evidence collection and analysis, and verifies that factual findings are sufficiently supported and traceable to applicable criteria across a potentially broad multi-agency environment.
strong span underline; Responsibilities and Duties:
Lead ingestion and analysis of agency documentation, including risk assessments, remediation plans, prior findings, corrective actions, inventories, and strategic plans.
Direct development of the Agency Risk Understanding Memorandum, including environmental summaries, agency-specific risks, assumptions, documentation gaps, and impacts on testing priorities.
Design the Ground-Truth and Ad Hoc Testing Strategies and approve detailed procedures defining objectives, systems, controls, access points, tools, sampling, scripts, evidence, thresholds, stop conditions, and escalation paths.
Map procedures and results to NIST CSF DE.AE, DE.DP, PR.AC; Rule 60GG-2, F.A.C.; and the applicable approved criteria.
Ensure testing remains within written OCIG authorization, avoids duplication of operational testing, and complies with agency-specific Rules of Engagement.
Review evidence for relevance, reliability, sufficiency, attribution, timestamps, chain of custody, and reproducibility.
Validate that reports accurately state procedures performed and factual results without an audit opinion; ensure advisory recommendations are distinctly labeled.
Conduct independent QA reviews of technical deliverables not authored solely by the reviewer and document sign-off.
Lead technical briefings, workshops, job aids, and knowledge transfer so OCIG and OIG staff can understand and reuse procedures.
Support urgent analysis of logs, timelines, after-action reports, remediation evidence, and incident-specific control issues when directed.
span underline; Requirements:
Bachelor’s degree in cybersecurity, information assurance, audit, information systems, or related discipline.
span Proof of relevant professional certifications such as CISSP, CISA, PMP, CEH, or other relevant certifications.
10 years of progressive cybersecurity experience, including security operations, incident response, vulnerability management, intrusion analysis, adversary simulation, technical assessment, or audit support.
5 years supporting or conducting audits, compliance reviews, independent assessments, or assurance work in government or similarly regulated environments.
Demonstrated ability to design defensible test procedures, evaluate control performance, distinguish fact from opinion, and communicate technical results to senior stakeholders.
Working knowledge of professional auditing or assurance standards and evidence requirements.
span underline; Preferred Qualifications:
Purple-team or adversary-emulation leadership using MITRE ATT and CK and threat-informed kill chains.
Government incident-command experience.
CISA, CIA, or other audit credential.
Experience with Active Directory, cloud platforms, APIs, web applications, databases, endpoints, SIEM/EDR, vulnerability scanners, and evidence repositories.
Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process.
Ardent is an equal opportunity employer. We will not discriminate in employment, recruitment, advertisements for employment, compensation, termination, upgrading, promotions, and other conditions of employment against any employee or job applicant on the bases of race, color, gender, national origin, age, religion, creed, disability, veteran s status, sexual orientation, gender identity, gender expression, or any other basis protected by state, local, or federal law.
Certifications this role asks for
Studying for one of these? Try the free CISA practice questions in our academy. No signup, no cost.
Location and market context
This job is based in Atlanta on-site. Local candidates benefit from being close to ArdentMC's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.
About internal audit jobs
Internal audit gives independent assurance over controls and risk. Technology, data, and AI audit skills are in rising demand as programs modernize. Jobs like this one are typically evaluated against frameworks such as IIA standards, COSO, NIST AI RMF, and IT and data audit practices.
How to position yourself for this internal audit job
Strong candidates emphasize risk-based audit planning, control testing and evidence, clear findings and remediation tracking, and technology, data, or AI audit depth. In your resume and outreach, tie your experience to how ArdentMC would apply IIA standards, COSO, NIST AI RMF, and IT and data audit practices, and lead with concrete outcomes rather than duties.
Similar GRC jobs
- Internal Audit Intern · Coinbase · Hybrid - New York, NY
- Senior Manager Internal Audit - Business Process · IonQ · College Park, Maryland
- Head of Internal Audit · Capital One · Baku, Baku Ekonomic Zone, Azerbaijan
- Senior Manager, Internal Audit (Compliance) · Airwallex · Sydney, AU
- Group Head of Internal Audit · Capital One · London, England, United Kingdom
- Head of Internal Audit · Crusoe · San Francisco, CA
- Internal Audit Manager - German market · Qonto · Paris, France
- Senior IT Auditor - SOC · Align Technology · Gurgaon, India - In-Office Hybrid
More GRC jobs in Atlanta
- Risk Advisory - Senior Associate · Riveron · Atlanta, GA
- Senior Technology Governance, Risk & Compliance (GRC) Analyst · FanDuel · Atlanta, Georgia
- Manager, SAP AI & Agent Governance · KPMG · Atlanta, Georgia
- Product Marketing Manager, AI Governance · OneTrust · Atlanta, Georgia
- Security, Risk and Compliance Consultant · SEI · Atlanta, GA
- Senior Staff DevOps Engineer — Data Discovery & AI Governance · OneTrust · Atlanta, Georgia
Hiring for Audit?
Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.
Post a job Pricing from $99 · About GRC Careers · Hiring toolkit
Want to be next in a job like this?
Jobs like Cyber Lead Auditor / Test Lead in Atlanta, GA open regularly. Be first to know, privately. No current employer ever sees you looking.
Employer, or see something wrong with this posting? Report this posting and we will review it promptly.