Hire the Best Information Security Audit Freelancers in Texas

More than 3,000 reviews on G2
Rating is 4.5 out of 5.
4.5/5
of Upwork by G2 peer reviewers
Symone J.

Houston, Texas

$65/hr
4.4
10 jobs

NIST 800-53 NIST CSF NIST AI RMF Control Assessments ISSO ISO27001 FedRAMP Fraud Prevention GRC Assessments and Audits Technical writing Data Privacy Specialist and GRC consultant IT audit assessor CSAM OneTrust DATAGRAIL DSAR

  • Information Security Audit
  • Governance, Risk & Compliance Software
  • Privacy
  • Data Privacy
  • Resume Writing
  • Governance, Risk Management & Compliance
  • NIST SP 800-53
Luciana O.

Boerne, Texas

$150/hr
5.0
247 jobs

I am the founder of BetterCyber Consulting, a cybersecurity consulting and managed services firm specializing in startups, small businesses, and mid-sized companies. As an Upwork Expert-Vetted Cybersecurity Consultant, I help businesses identify risks, implement security controls, and meet compliance requirements without unnecessary costs or complexity. My experience in cybersecurity includes positions at Fortune 100 companies like PayPal and Marathon Petroleum. I hold several security certifications and earned a master’s degree in Information Security Engineering from The SANS Technology Institute. I offer the following cybersecurity services: ● Technical Security Assessments – Security reviews for AWS, Azure, Google Cloud, Microsoft 365, Google Workspace, Slack, and more. ● Penetration Testing – Web, cloud, mobile, and on-premises security testing. ● Compliance Assessments – NIST 800-171 & 800-53, FedRAMP, ISO 27001, CIS Controls, CMMC, HIPAA, and SOC 2. ● Security Strategy & Architecture – Build scalable security programs. ● Incident Response & Threat Mitigation – Detect and respond to threats. ● Managed Security Services – Ongoing security monitoring and advisory. ● Virtual CISO (vCISO) Services – Security leadership for businesses without a full-time CISO.

  • Information Security Audit
  • Information Security
  • Cybersecurity Management
  • Security Policies & Procedures Documentation
  • Penetration Testing
  • Email Security
  • Security Analysis
  • Security Engineering
  • Information Security Awareness
  • Internet Security
  • Cloud Security
  • Risk Assessment
  • CMMC
  • NIST SP 800-53
  • PCI DSS
Michael C.

Canyon, Texas

$150/hr
5.0
3 jobs

I help organizations build, strengthen, and mature cybersecurity governance, risk, and compliance (GRC) programs that stand up to real-world operational and audit scrutiny. As an Information Security professional with experience supporting defense contractors, manufacturers, federal environments, and commercial organizations, I specialize in translating complex security and compliance requirements into practical, sustainable business processes. Whether your organization is pursuing SOC 2, ISO/IEC 27001, NIST Cybersecurity Framework (CSF), NIST SP 800-53, NIST SP 800-171, or CMMC assessment readiness, my focus is helping you reduce risk while building programs that remain effective long after an assessment is complete. My expertise includes: • Governance, Risk, and Compliance (GRC) program development and maturation • SOC 2 and ISO/IEC 27001 readiness assessments • NIST Cybersecurity Framework (CSF) implementation • NIST SP 800-53 and NIST SP 800-171 compliance • CMMC Level 1 and Level 2 assessment readiness • Risk assessments and security gap analyses • Security policies, standards, procedures, SSPs, and POA&Ms • Control mapping and evidence development • Virtual CISO (vCISO) advisory services • Microsoft 365 Commercial and GCC High security governance Throughout my career, I've worked as a Business Information Security Officer (BISO), cybersecurity consultant, and assessor, partnering with executive leadership to improve security maturity, prepare organizations for external assessments, and implement governance processes aligned with business objectives. My approach is practical, execution-focused, and rooted in real-world operational experience. I don't recommend unnecessary complexity or expensive rebuilds when existing programs can be strengthened through sound governance, risk management, and well-designed security controls. I work collaboratively with leadership, IT, compliance, and operational teams to create solutions that are technically sound, operationally achievable, and auditor defensible. If your organization needs help with: • Preparing for a SOC 2, ISO 27001, NIST, or CMMC assessment • Performing a cybersecurity risk or gap assessment • Developing security documentation and governance processes • Building or improving an Information Security Program • Establishing a practical GRC roadmap • Aligning security controls with regulatory or contractual requirements • Executive cybersecurity strategy and vCISO guidance I'd welcome the opportunity to discuss your objectives and help you build a security and compliance program that delivers measurable business value.

  • Information Security
  • Risk Management
  • Risk Assessment
  • Cybersecurity Management
  • Compliance
  • NIST Cybersecurity Framework
  • NIST SP 800-53
  • CMMC
  • SOC 2
  • ISO 27001
  • Security Policies & Procedures Documentation
  • Internal Auditing
  • Microsoft Intune
  • Microsoft Endpoint Manager
Zechariah A.

Arlington, Texas

$80/hr
5.0
6 jobs

SKILLS SUMMARY Over 15 years' experience in information security engineering, Information Security Governance, Information Security Program Development, Information Risk Management, Security Incident Management, Forensic Analysis, Threat Hunting, Network Security, Application Security, Mobile Security, Cloud Security, Devsecops, Database Security, Security Architecture, DevSecOps, Cloud Security, Red Team Operation, Penetration testing and Vulnerability Management in Fintech, Technology and Financial sector.

  • Information Security Audit
  • Information Security
  • Application Security
  • Penetration Testing
  • Information Security Consultation
  • OWASP
  • PCI DSS
  • ISO 27001
  • Cyber Threat Intelligence
  • Ethical Hacking
  • SOC 1
  • SOC 2
  • PCI
  • Information Security Governance
Steven S.

Harleton, Texas

$125/hr
4.2
1 jobs

vCISO, security architect, and technical writer with 15+ years delivering enterprise infrastructure and cybersecurity solutions for commercial and federal customers. Elite credential stack: CISSP, VCDX #262 (one of fewer than 300 worldwide), and 9 GIAC certifications (GSEC, GCIH, GCIA, GPEN, GDSA, GRTP, GWAPT, GSLC, GSTRT) spanning security operations, incident response, intrusion analysis, penetration testing, defensible architecture, red team ops, web application security, and security leadership. I help organizations achieve compliance, secure their cloud environments, and produce audit-ready documentation. What clients hire me for: ◆ Compliance & Audit Documentation: CMMC Level 1-2 readiness (SSP/POA&M), SOC 2 Type I/II gap assessments, NIST 800-171/800-53 alignment, ISO 27001 policy suites, HIPAA compliance packages ◆ Cloud Security Architecture: Azure and OCI infrastructure design, security posture assessments, IAM architecture, network segmentation, encryption strategy, cost optimization ◆ Technical Documentation: IT security policies, SOPs, disaster recovery plans, incident response plans, architecture documentation, runbooks, training content ◆ Infrastructure & Operations: Data center design ($30M+ in prior expenditures), VMware SDDC/NSX/VSAN, server and storage solutions, Active Directory, Microsoft 365 administration ◆ Digital Marketing & SEO: SEO audit reports, Google Ads/PPC campaign management, content marketing strategy, performance analytics Background: Former Chief Infrastructure Architect at CSRA Inc. (now General Dynamics IT), Enterprise Architect at US Steel, and Engagement Architect at Trace3. Led $20M+ infrastructure programs and managed mission-critical data centers. I deliver audit-ready, professional documentation backed by hands-on enterprise experience. Available for both project-based engagements and ongoing advisory.

  • Information Security
  • System Hardening
  • Microsoft Active Directory
  • ISO 27001
  • SOC 2
  • NIST SP 800-53
  • HIPAA
  • CMMC
  • Cloud Security
  • Microsoft Azure
  • Technical Writing
  • Technical Documentation
  • Penetration Testing
  • Incident Response Plan
  • Vulnerability Assessment
  • Cybersecurity Management
  • Disaster Recovery
  • Microsoft 365 Copilot
  • Security Infrastructure
  • Web Application Security
  • Computer Network
  • Cisco Certified Network Associate
  • VMware NSX
  • Network Penetration Testing
  • Network Monitoring
  • Network Administration
Geraldine Nagain N.

San Antonio, Texas

$75/hr
5.0
1 jobs

I am the founder of GainTech Consulting, a cybersecurity consulting and managed services firm specializing in startups, small businesses, and mid-sized companies. As an Expert Cybersecurity Consultant, I help businesses identify risks, implement security controls, and meet compliance requirements without unnecessary cost or complexity. My background includes security roles at Fortune 70 companies for , including lululemon and Caesars Entertainment. I hold several professional certifications in AWS Security and Computer Security. ### Core Cybersecurity Services: - Technical Security Assessments: Comprehensive reviews for AWS, Azure, Google Cloud, Microsoft 365, Google Workspace, and Slack. - Penetration Testing: Specialized testing for web, cloud, mobile, and on-premises environments. - Compliance Assessments: Expert guidance for NIST 800-171 & 800-53, FedRAMP, ISO 27001, CIS Controls, CMMC, HIPAA, and SOC 2. - Security Strategy & Architecture: Building scalable security programs from the ground up. - Incident Response & Threat Mitigation: Rapid detection and response to active threats. - Managed Security Services: Continuous security monitoring and ongoing advisory. - Virtual CISO (vCISO) Services: Executive security leadership for businesses without a full-time CISO. - DevSecOps & Automation: Developing custom security tools and automation using Go, Python, C#, and C++. - Code Review: Secure code analysis for web, Android, and iOS applications. - Reverse Engineering: Advanced malware analysis and assembly-level debugging. - Cyber Defense Implementation: Architecture and deployment of WAFs, Firewalls, EDR/XDR, VPNs, and SOC solutions. - Specialized Consulting: Strategic advisory in IT security and the emerging field of AI security. Contact me today to discuss how I can help secure your organization’s future.

  • Information Security
  • Compliance
  • Computing & Networking
  • Network Engineering
  • Red Team Assessment
  • Cloud Computing
  • Security Assessment & Testing
  • Security Engineering
  • Security Analysis
  • Secure SDLC
  • Penetration Testing
  • Network Penetration Testing
  • Web App Penetration Testing
  • AI Agent Development
  • Vulnerability Assessment

How it works

Post a job for freePost a job

Tell us what you need. Create your own job post or generate one with AI then filter talent matches.

Hire top talent fast

Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.

Collaborate easily

Use Upwork to chat or video call, share files, and track project progress right from the app.

Payment simplified

Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.

Don't just take our word for it

How do I hire a Information Security Audit Freelancer in Texas on Upwork?

You can hire a Information Security Audit Freelancer in Texas on Upwork in four simple steps:

  • Create a job post tailored to your Information Security Audit Freelancer project scope. We'll walk you through the process step by step.
  • Browse top Information Security Audit Freelancer talent on Upwork and invite them to your project.
  • Once the proposals start flowing in, create a shortlist of top Information Security Audit Freelancer profiles and interview.
  • Hire the right Information Security Audit Freelancer for your project from Upwork, the world's largest work marketplace.

At Upwork, we believe talent staffing should be easy.

How much does it cost to hire a Information Security Audit Freelancer?

Rates charged by Information Security Audit Freelancers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.

Why hire a Information Security Audit Freelancer in Texas on Upwork?

As the world's work marketplace, we connect highly-skilled freelance Information Security Audit Freelancers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Information Security Audit Freelancer team you need to succeed.

Can I hire a Information Security Audit Freelancer in Texas within 24 hours on Upwork?

Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Information Security Audit Freelancer proposals within 24 hours of posting a job description.