Seeking a fully remote senior cybersecurity assessment, assurance, GRC, or security compliance role. I excel at evaluating controls, vulnerability findings, policies, technical evidence, and system architecture; identifying gaps; and turning complex findings into defensible risk decisions and practical remediation. Open to U.S.-remote and genuinely global opportunities.

Laureen Gum
@laureengum
Cybersecurity assessment and assurance leader translating complex technical evidence into defensible risk decisions and remediation priorities.
What I'm looking for
I am a CISSP- and CGRC-certified cybersecurity assessment and assurance professional with an M.S. in Cybersecurity and 27+ years of experience across security engineering, risk management, control assessment, vulnerability analysis, and IT operations. A retired U.S. Navy veteran, I now serve as a Project Security Engineer III at Deloitte and previously supported Navy cybersecurity programs as a qualified validator with Booz Allen Hamilton.
My strength is examining complex technical evidence and determining what it actually proves. I assess security controls; analyze vulnerability scans, STIG and SCAP results, policies, system inventories, architecture diagrams, and authorization artifacts; identify unsupported claims and control gaps; validate remediation; and translate findings into defensible risk decisions. From October 2025 through May 2026, I completed nine Security Assessment Plans and ten Risk Assessments while supporting mission-critical systems in secure environments.
I am known for pursuing difficult issues beyond the obvious answer. My vulnerability research, vendor coordination, false-positive analysis, and mitigation work helped reverse a potential high-risk determination and produced reusable guidance for future Navy assessments. I also develop policy, train analysts and stakeholders, and communicate complex cybersecurity issues clearly to technical teams and senior decision-makers.
I am seeking a fully remote commercial cybersecurity assessment, assurance, technical GRC, security compliance, or risk-assessment role where disciplined analysis, sound judgment, and evidence—not checkbox compliance—drive better security outcomes.
Experience
Work history, roles, and key accomplishments
Supports Navy cybersecurity assurance mission, completing security assessments and risk assessments. Reviews security controls and evidence in eMASS, translates findings into clear risk conclusions, and researches vulnerability applicability.
Education
Degrees, certifications, and relevant coursework
Excelsior University
Master of Science, Cybersecurity
Master of Science in Cybersecurity, Information Assurance from Excelsior University, completed in 2024.
Excelsior University
Bachelor of Science, Information Technology
Bachelor of Science in Information Technology from Excelsior University, completed in 2018.
Excelsior University
Associate of Applied Science, Computer Technology
Associate of Applied Science in Technical Studies, Computer Technology from Excelsior University, completed in 2009.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Salary expectations
Social media
Job categories
Interested in hiring Laureen?
You can contact Laureen and 90k+ other talented remote workers on Himalayas.
Message LaureenGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
