> Markdown version of [/jobs/ext/440037-senior-cybersecurity-assessment-engineer-lead-assessor](https://www.wearedevelopers.com/jobs/ext/440037-senior-cybersecurity-assessment-engineer-lead-assessor). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Assessment Engineer / Lead Assessor - **Company:** Guidehouse Inc. - **Location:** Boulder, CO, United States - **Experience:** Expert - **Salary:** $135,000.0 - $225,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing Security, Cyber Security, Identity and Access Management, Network Security, Zero Trust Network Access - **Published:** June 3, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c8821a26645528be ## About the Role Do you have experience in Security testing methodologies?, Do you have a Bachelor's degree?, * An ACTIVE and MAINTAIN Federal or DoD "Public Trust" or SUITABILITY * Must be a US Citizen due to contract requirements * Bachelor's degree * Ten (10+) plus years post-graduation cybersecurity experience with a strong foundation in security engineering or architecture * Experience leading cybersecurity assessments, A&A efforts, or enterprise security reviews * Deep expertise in multiple technical domains (e.g., IAM, network security, endpoint, cloud) * Strong command of NIST CSF, NIST SP 800 53, and risk based assessment practices * Proven ability to evaluate complex systems and environments holistically * Strong written and verbal communication skills for both technical and executive audiences * Ability to travel * Ability to work in a Guidehouse Office or Client Office location as needed What Would Be Nice To Have: * Preference will be given to candidates residing within 50 miles of a Guidehouse Office or Client Office location * Prior post-graduation work experience as: + Security engineer + Security architect + SSO with hands on technical responsibilities * Experience supporting multi agency or federated environments * Experience aligning assessments to modernization or Zero Trust initiatives * One or more of the following certifications: + CISSP + CISM + Cloud security certifications ## Description The Senior Cybersecurity Assessment Engineer serves as the technical lead for cybersecurity assessments, ensuring rigor, consistency, and engineering credibility across engagements. This role is responsible not only for conducting assessments, but for setting the technical bar, validating complex architectures, and translating findings into decision ready insights for leadership., * Lead complex cybersecurity assessments across enterprise IT, cloud, and hybrid environments * Serve as technical authority for control interpretation, testing approaches, and severity determination * Review and validate assessment findings, risk ratings, and remediation recommendations * Evaluate how controls are architected and operated across agencies, not just whether they exist * Mentor assessment engineers and review their technical analysis * Identify enterprise level patterns, trends, and systemic risk drivers * Support executive level reporting by translating technical issues into impact focused narratives * Advise clients on practical remediation approaches that align with their operating reality * Ensure consistency and quality across multiple assessment teams and agencies ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [A Computer Is All You Need](https://www.wearedevelopers.com/videos/100142-a-computer-is-all-you-need) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Should senior developers refuse interview coding challenges?](https://www.wearedevelopers.com/magazine/29-should-senior-developers-refuse-interview-coding-challenges) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)