Cybersecurity Assessor
Job Description
About Apollo Apollo Information Systems is a cybersecurity services company delivering comprehensive security and compliance programs to organizations that need measurable protection without the burden of building it alone. Backed by a Series A investment led by Syn Ventures, Apollo is pioneering a cybersecurity-as-a-service model that replaces fragmented tools and episodic engagements with unified, outcome-driven security programs. Through Apollo Aegis - a subscription-based cybersecurity and compliance platform - and a full portfolio of managed security, advisory, assessment, incident response, and offensive security services, Apollo helps organizations reduce risk, simplify operations, and maintain continuous compliance. Apollo's primary markets include state and local government, K-12 and higher education, and mid-market enterprises, with deep specialization in election security. Our Culture We are growing rapidly and have significant expansion plans and growth capital. We foster a collaborative environment where deep cybersecurity expertise meets business acumen, enabling our professionals to solve complex security challenges while building lasting client partnerships. We pride ourselves on our integrity and ethics. You’ll find smart, professional, mission-driven, hardworking, genuinely kind and good colleagues here. We primarily work remotely but have a hub in Denver. Position Overview: The Technical Assessor conducts in-depth technical and program-level cybersecurity assessments of client environments, identifying risk, measuring control maturity, and producing clear, actionable guidance that advances each client’s security posture. This is an experienced assessor role: the individual will independently leads assessments end to end, evaluate complex environments against multiple frameworks, and is a trusted voice in front of both technical teams and executives. This position requires the ability to travel up to 85% around Texas to conduct assessments in person. The role is full-time W2 and funded by a 12-month contract with the State that is renewed annually. In the event the state does not renew, we are confident that there will be other work available, but it is not guaranteed. Key Responsibilities: Independently conduct hands-on cybersecurity assessments of election infrastructure and the county, city, and state level Evaluate the design and operating effectiveness of technical controls spanning identity and access management, endpoint protection, patch and vulnerability management, secure configuration, network segmentation, data protection, logging/monitoring, and incident response. Review and interpret technical configurations and artifacts to validate control implementation. Conduct stakeholder interviews and documentation reviews to understand policy, process, and control maturity. Assess client environments against established frameworks and standards including NIST CSF 2.0, CIS Controls, ISO 27001, CMMC, CJIS, HIPAA, and PCI DSS. Produce detailed assessment reports with prioritized risk findings, maturity ratings, and pragmatic, business-aware recommendations. Map findings to client risk and business context, translating technical gaps into clear remediation roadmaps. Present findings and recommendations to client stakeholders ranging from technical practitioners to executive leadership. Drive continuous improvement of Apollo’s assessment methodologies, workbooks, tooling, and report templates. Mentor junior assessors and perform peer review of assessment deliverables. Collaborate with consultants, engineers, advisors, and project managers to deliver high-quality engagements. Stay current with emerging threats, technologies, and regulatory developments. Qualifications Required Experience in cybersecurity, with demonstrable experience leading or performing security assessments Direct, hands-on experience assessing environments against one or more recognized frameworks (NIST CSF, CIS Controls, ISO 27001, CMMC, C