Hire the Best Information Security Audit Freelancers in Florida

More than 3,000 reviews on G2
Rating is 4.5 out of 5.
4.5/5
of Upwork by G2 peer reviewers
Justin H.

Longwood, Florida

$25/hr
5.0
18 jobs

About Me - I'm a versatile freelancer with a proven track record of delivering quality work across multiple platforms and industries. With experience spanning real estate, customer service, and extensive freelance work, I bring a unique combination of business acumen and hands-on problem-solving skills to every project. - Professional Experience - * Freelance Professional | Self-Employed • Successfully built and managed a thriving freelance business across multiple platforms including TaskRabbit, Thumbtack, and Nextdoor • Consistently ranked as a top performer on TaskRabbit, generating substantial revenue through dedicated service • Developed strong client relationships leading to consistent word-of-mouth referrals and repeat business • Managed all aspects of business operations including scheduling, client communications, and financial management * Data Annotation & AI Training Data Specialist | 2+ Years - Extensive experience across the full spectrum of data annotation work, including image annotation, video annotation, bounding boxes, text classification, and tool-use/agentic task evaluation - Outlier (top-rated): completed high volume of projects spanning photo, video, text, and multi-modal AI training tasks - Appen: specialized in audio transcription work, ensuring accurate and detail-oriented output for training datasets - Alignerr: professional voice recording and audio data collection for AI model training - Skilled in RLHF (Reinforcement Learning from Human Feedback), data labeling for LLM fine-tuning, and quality assurance review of annotated datasets - Detail-oriented and consistent, with strong ability to follow complex, evolving labeling guidelines and rubrics - Comfortable with fast platform/tool switching. I'm experienced across multiple annotation interfaces and internal tooling - QA Lead & Founder, Inner House Data — Data Annotation Team. Currently leading a small remote annotation team, overseeing quality assurance, task calibration, and client deliverables for AI training data projects. Experience setting up annotation workflows (Label Studio), managing pricing/scoping based on task complexity, and ensuring consistent output quality across a distributed team. * Independent Security Research & Web Application Testing - Independent security researcher specializing in web application vulnerability assessment - Experienced with OWASP Top 10 (2025) vulnerability identification and documentation - Proficient with Burp Suite, ffuf, and manual penetration testing methodology - Delivered professional security disclosure reports to funded startups - Completed OWASP Top 10 certification via TryHackMe * Real Estate Professional | 2+ Years • Gained valuable experience in client relationship management and negotiation • Developed strong communication and precise organizational skills in a fast-paced environment * Additional Experience • Top Dasher at DoorDash, demonstrating reliability and excellence in service delivery • Past customer service experience at Honda dealership and Universal Studios • Proven ability to excel in diverse work environments - Why Choose Me - ✓ Fast Learner: I quickly adapt to new skills and technologies - from picking up new languages (currently I'm studying Indonesian daily) to picking up guitar, coding, and networking fundamentals ✓ Self-Motivated: I handle my own scheduling and project management ✓ Flexible Availability: Available most days of the week to accommodate your project needs ✓ Proven Track Record: Success across multiple freelance platforms with satisfied clients. (Upwork is the next one on the list!) ✓ Business-Minded: Real estate and entrepreneurial background brings strategic thinking to projects ✓ Reliable: Consistent top performance ratings across all platforms I've worked on - Let's Connect - I'm always expanding my skill set, whether it be diving into coding, mastering networking concepts, or picking up instruments, most recently, guitar. I'm always excited to take on new challenges and help bring your projects to life. Helping you, in turn, helps me learn more skills! Feel free to reach out to discuss how I can contribute to your success.

  • Information Security Audit
  • General Transcription
  • Market Research
  • Voice-Over
  • Voice Acting
  • Voice Recording
  • Male Voice
  • Audio Recording
  • Data Entry
  • Penetration Testing
  • Web Application Audit
  • Web Application Security
  • Cybersecurity Tool
  • Application Audit
  • Network Security
  • Vulnerability Assessment
  • Security Testing
  • Website Security
  • Ethical Hacking
Tim B.

Orlando, Florida

$60/hr
5.0
2 jobs

Most organizations don't fail audits because they lack security. They fail because their controls don't hold up under real scrutiny. I've spent 10+ years making sure that doesn't happen. As a CISSP-certified security professional, I spent six years as the sole security practitioner for an enterprise healthcare organization, owning every assessment, every audit, and every remediation from end to end. 24 security assessments. Zero failures. HITRUST certification achieved and maintained. That's not a team result. That's mine. That same discipline, map the process, define the controls, build something that holds up without babysitting, is what I bring to AI automation work. I design and run scheduled automation pipelines using Claude that handle multi-step workflows end to end: research and filtering logic, document generation, notifications, and audit trails, running unattended with built-in error handling. If you need a manual process turned into a system you can trust, that's the same skill as building a control that survives an audit. What I deliver: ✔ Audit readiness that actually holds – HITRUST, HIPAA, PCI-DSS, NIST CSF ✔ Control gap analysis and mapping (NIST, ISO 27001, HITRUST CSF) ✔ Risk assessments with prioritized, defensible findings ✔ POA&Ms and remediation roadmaps that move the needle ✔ SIEM tuning and threat validation (Splunk, Rapid7, Alert Logic) ✔ AI-powered workflow automation – scheduled, self-monitoring, built to run without oversight ✔ Security policies built to survive auditor scrutiny, not just satisfy it By the numbers: 24 consecutive assessments with zero audit failures ~30% vulnerability reduction through structured remediation programs Sole security POC across cloud and hybrid enterprise environments with constrained budgets and no margin for error I don't just help organizations get compliant, or automate a process. I build systems that hold up when someone is actually looking. If that's the standard you need, let's talk.

  • Information Security Audit
  • Information Security
  • Certified Information Systems Security Professional
  • Certified Information Security Manager
  • Information Security Awareness
  • Information Security Skills
  • Information Security Consultation
  • Information Security Governance
  • Information Security Threat Mitigation
  • Security Engineering
  • System Administration
  • Compliance
Dasha D.

Tampa, Florida

$120/hr
5.0
3 jobs

Are you looking for someone: - to roll up her sleeves and get straight into solving the challenge you are having? - who is works efficient and quick, and delivers quality work on time? - solve your cyber, risk and compliance issues without interrupting your business flow? - who understands budgets, business and operations and finds the best approach and solutions? - who lives by people, process and technology last and will deliver a solution and not another tool? - that you can trust to get the best advise aligned with your business, budget, staff and time? - who speaks and does tech but easily translates that into executive language? - who can do the technical work but also the non-so technical pieces (policies etc)? - who is flexible when plans change and still deliver? - who understands priorities and deadlines and will deliver against those? If the answers are yes, then you have found the right person here. Hello, I am Dasha and been a technology professional for over 25 years including 20 years of Information Security, Governance, Risk, Compliance and Assurance. Over the years I have led key cyber security initiatives within the commercial, government and civilian sectors as well as multiple global commercial clients (from start ups, small businessed to Fortune 100 clients). My specialty is in security engineering and regulatory compliance, SOC operations, policies, procedures, audits, remediation and have also worked in, managed and set up blue and red teams. With my extensive hand on experience in 24/7 security operations I review internal processes, logs, SIEM configurations, hardware settings and business/risk alignment. My expertise with tools ranges from open source, to small business and all the way to expensive enterprise solution. And I also have been working and have the certification as Project Manager and all my work follows good strategy and deadlines to avoid delays and unnecessary costs due to lack of planning. I am your security and virtual CISO which a long list of certifications (CISSP, CGEIT, HIPAA, CISO, PCIP, PCI-QSA and many more) and will make sure you get the management, security strategy and remediation in place to be secure and compliant. I believe in delivering quality work to my clients, communicating and making sure business operations and security are aligned. Past projects: - Penetration Testing, vulnerability management and security processes for global sporting event - Set up and management of Global Security Operations Center for one of largest Managed IT Service Providers (100K+ staff) - AI/ML security and Risk Management and Audits - PCI DSS for over 100 Tier 1 and 2 Merchants - Over NIST 800-53, 50 FedRamp/FISMA audits for government agencies and defense contractors (including pre assessments for CMMC) - 20+ HIPAA audits for large hospitals and small walk in clinics - Incident Response and Forensic Analysis for over 80 large and global breaches (most were publicly announced) - Review or creation of of security policies, procedures, standards and Disaster Recovery/Business Continuity for over 300 clients (including large Casinos and Hotels in Las Vegas and Caribbean and global Banks) - Led several Security & Risk Get Well Program which included regulatory compliance, cyber security, vulnerability management and training. - Designed and implemented security operations centers, incident response teams, delivered security consulting and regulatory compliance/ISO audits (in the Americas, Europe, Middle East and Asia). I served in the US NAVY and attended TUI and Trident University where I obtained her MBA and MSc. in Information Technology and Management. Looking forward hearing from you and feel free to check out my profile on LinkedIn. Dasha Davies Industry Experience • Government, Military and National Security • Utilities and Critical Infrastructure • Financial (Banking and Credit Card processing) • Gaming & Hospitality • Transportation • Consulting • Telecommunication/ISP • Oil and Gas

  • Information Security Audit
  • Information Security
  • Security Infrastructure
  • Security Operation Center
  • HIPAA
  • PCI
  • Internet Security
  • Certified Information Systems Security Professional
  • Security Analysis
Nicolas T.

Miami, Florida

$100/hr
5.0
5 jobs

Your Partner for Risk-Based Security, Audit Readiness & Operational Resilience | $65/hr 🗽 U.S. 🌍 Global & willing to travel Proven Track Record in Regulated & Enterprise Environments I’m a Security Engineer from the United States with 10+ years of experience helping regulated organizations strengthen their security posture through risk-based decision making, audit readiness, and operational security. I work directly with leaders, auditors, penetration testers, vendors, and engineering teams to ensure security programs are not just compliant, but effective, prioritized, and aligned to real business risk. Why I Stand Out 🔹 Risk-Based Security Approach I help organizations prioritize security investments and remediation efforts based on real risk, reducing noise and focusing on what materially impacts the business. 🔹 Engineer-First Execution I translate compliance requirements (SOC 2, PCI-DSS, NIST, HIPAA, CMMC) into practical, implementable solutions that work in real environments. 🔹 Audit & Compliance Expertise Experienced in control implementation, remediation tracking, evidence preparation, and working directly with auditors to ensure successful outcomes. 🔹 Real-World Risk Reduction Focused on vulnerability management, DevSecOps integration, and IAM governance to reduce exploitable attack surface, not just produce reports. Core Services 🔹 Audit Readiness & Remediation Control implementation, gap assessments, remediation tracking, audit support, and evidence preparation. 🔹 Risk-Based Vulnerability Management Threat-informed prioritization, CI/CD integration, SAST/DAST, dependency scanning, and actionable remediation strategies. 🔹 DevSecOps & Cloud Security IAM, secrets management, container security, encryption, logging, and secure CI/CD pipeline implementation. 🔹 Identity & Access Governance (IAM) Access reviews, RBAC enforcement, onboarding/offboarding processes, and policy alignment. 🔹 Security Assessments Cloud, network, application, and API security assessments aligned to real-world risk. Who I Work With 🔹 Regulated organizations preparing for audits 🔹 Enterprise teams building or maturing security programs 🔹 SaaS & cloud-native companies implementing DevSecOps 🔹 Organizations needing risk-based prioritization, not just tooling and reports I help teams execute, remediate, and operationalize security in a way that is sustainable long-term. 📞 Let’s connect for a 30-minute discovery call to build a risk-informed, audit-ready, and operationally effective security program.

  • Cybersecurity Management
  • Cyber Threat Intelligence
  • Business
  • Cybersecurity Monitoring
  • Security Engineering
  • Risk Management
  • Vulnerability Assessment
  • Compliance
  • DevOps
  • Privacy
  • SOC 2
  • NIST Cybersecurity Framework
  • PCI DSS
  • Application Security
  • Governance, Risk Management & Compliance
  • Information Security Governance
  • Cloud Security
  • ISO 27001
Samantha R.

Tampa, Florida

$80/hr
5.0
8 jobs

Director of Cyber Operations and cybersecurity consultant specializing in SOC 2, ISO 27001, HIPAA, and NIST-based security and compliance for SaaS and healthcare organizations. I’ve led end-to-end SOC 2 and ISO 27001 readiness and certification efforts (with zero exceptions), built and matured risk management programs, and implemented third-party/vendor risk management for cloud-native environments. My background includes experience as an external SOC auditor, internal cyber risk and compliance leader, and co-founder of a cybersecurity consulting firm, where I help clients translate complex framework requirements into practical controls, policies, and evidence that withstand customer and auditor scrutiny. I can support you with audit readiness, gap assessments, policy and procedure development, control implementation, and customer security questionnaire support. I can help you with: - SOC 2 (Type I & II) and ISO 27001 readiness, gap assessments, and audit preparation - Designing and implementing security controls aligned to SOC 2, ISO 27001, HIPAA, NIST, and PCI DSS - Building and maturing cyber risk management programs, including risk registers and reporting - Third-party/vendor risk management, including due diligence, questionnaires, and data flow mapping - Developing and formalizing security policies, standards, and procedures tailored to your environment - Preparing evidence and documentation for external audits and customer security reviews - Responding to security questionnaires (SIG Lite, CAIQ, custom DDQs) and RFP security sections - BCP/DRP/IRP planning, documentation, tabletop exercises, and testing - Designing and delivering targeted security awareness training programs I specialize in: - SOC 1 - SOC 2 - NIST 800 Series - ISO 27001 - SIG Core/ SIG Lite - CSA Star - HIPAA - HITRUST - PCI DSS - GDPR

  • Incident Response Plan
  • Business Continuity Plan
  • Microsoft Azure
  • NIST SP 800-53
  • Disaster Recovery Plan
  • HIPAA
  • Vendor Management
  • SOC 2
  • HITRUST Common Security Framework
  • ISO 27001
  • CIS Control Assessment
  • Risk Management
  • Splunk
  • Cloud Security
Hailey W.

Perry, Florida

$25/hr
5.0
5 jobs

Dedicated GRC Analyst and Technical Writer specializing in building "Audit-Ready" documentation and internal control frameworks. I help organizations navigate the complexities of compliance by translating technical security requirements into clear, actionable policies and Standard Operating Procedures (SOPs). With a background in high-volume compliance auditing and current studies in Cybersecurity and Information Assurance at WGU, I bridge the gap between technical controls and business operations. My Core Expertise Includes: SOP Development: Authoring comprehensive, step-by-step procedures that meet the "re-performance standard" for external auditors. Compliance Gap Analysis: Experience identifying 50+ control deficiencies and providing actionable remediation paths. Framework Alignment: Developing documentation mapped to NIST CSF, SOC 2, and ISO 27001 standards. Risk Documentation: Creating risk prioritization frameworks and maintaining evidence trackers for internal audits. Data Privacy Support: Managing documentation for privacy regulations, including DSAR intake and processing workflows. Why Work With Me? I don't just write—I audit. My goal is to ensure your documentation isn't just a "check-the-box" exercise, but a functional asset that reduces risk and simplifies your next audit engagement. Education & Certifications: B.S. Cybersecurity and Information Assurance (In Progress) – Western Governors University ISC2 Certified in Cybersecurity (CC) Google Cybersecurity Professional Certificate CompTIA Tech+ Certificate

  • Microsoft Word
  • Microsoft PowerPoint
  • Microsoft Office
  • Microsoft Excel
  • PowerPoint Presentation
  • WordPress
  • Web Design
  • Usability Testing
  • QA Testing
  • Manual Testing
  • Research Methods
  • Category Management

How it works

Post a job for freePost a job

Tell us what you need. Create your own job post or generate one with AI then filter talent matches.

Hire top talent fast

Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.

Collaborate easily

Use Upwork to chat or video call, share files, and track project progress right from the app.

Payment simplified

Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.

Don't just take our word for it

How do I hire a Information Security Audit Freelancer in Florida on Upwork?

You can hire a Information Security Audit Freelancer in Florida on Upwork in four simple steps:

  • Create a job post tailored to your Information Security Audit Freelancer project scope. We'll walk you through the process step by step.
  • Browse top Information Security Audit Freelancer talent on Upwork and invite them to your project.
  • Once the proposals start flowing in, create a shortlist of top Information Security Audit Freelancer profiles and interview.
  • Hire the right Information Security Audit Freelancer for your project from Upwork, the world's largest work marketplace.

At Upwork, we believe talent staffing should be easy.

How much does it cost to hire a Information Security Audit Freelancer?

Rates charged by Information Security Audit Freelancers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.

Why hire a Information Security Audit Freelancer in Florida on Upwork?

As the world's work marketplace, we connect highly-skilled freelance Information Security Audit Freelancers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Information Security Audit Freelancer team you need to succeed.

Can I hire a Information Security Audit Freelancer in Florida within 24 hours on Upwork?

Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Information Security Audit Freelancer proposals within 24 hours of posting a job description.