- Develop methods to monitor and measure risk, compliance, and assurance efforts.
- Develop specifications to ensure risk, compliance, and assurance efforts conform with security, resilience, and dependability requirements at the software application, system, and network environment level.
- Draft statements of preliminary or residual security risks for system operation.
- Maintain information systems assurance and accreditation materials.
- Monitor and evaluate a system's compliance with information technology (IT) security, resilience, and dependability requirements.
- Assess the effectiveness of security controls.
- Perform security reviews, identify gaps in security architecture, and develop a security risk management plan.
- Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy.
- Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
- Plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks.
- Verify that application software/network/system security postures are implemented as stated, document deviations, and recommend required actions to correct those deviations.
- Knowledge of current industry methods for evaluating, implementing, and disseminating information technology (IT) security assessment, monitoring, detection, and remediation tools and procedures utilizing standards-based concepts and capabilities.
- Knowledge of the Security Assessment and Authorization process.
- Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- Skill in discerning the protection needs (i.e., security controls) of information systems and networks.
- Skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes.
- Knowledge of relevant laws, policies, procedures, or governance related to critical infrastructure.
- Knowledge of Risk Management Framework (RMF) requirements.
- Knowledge of organization's evaluation and validation requirements.
- Knowledge of cyber defense and vulnerability assessment tools, including open source tools, and their capabilities.
- Knowledge of known vulnerabilities from alerts, advisories, errata, and bulletins.
- Knowledge of penetration testing principles, tools, and techniques.
- Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
- DOD Secret Clearance Required
- 5-7 Years Experience as a Security Assessor
- BA in Computer Science or Related Field.
-
Cloud Security Assessor
3 weeks ago
Chickasaw Nation Industries, Inc. Washington, United States Full timeIt's fun to work in a company where people truly BELIEVE in what they're doing · We're committed to bringing passion and customer focus to the business. · ****** Required DOD Secret or Top-Secret Clearance ******* · SUMMARY · The Cloud Security Assessor / Information Assurance ...
-
Security Control Assessor
4 days ago
NES Associates Washington, United StatesType of Requisition: · Regular · Clearance Level Must Currently Possess: · Top Secret/SCI · Clearance Level Must Be Able to Obtain: · Top Secret SCI + Polygraph · Suitability: · Public Trust/Other Required: · Job Family: · Information Security · Job Qualifications: · Skills: · In ...
-
Security Control Assessor
3 weeks ago
General Dynamics Washington, United StatesResponsibilities for this Position · Location: USA DC Washington - Customer Proprietary (DCC206) · Full Part/Time: Full time · Job Req: RQ168280 · Type of Requisition: · Regular · Clearance Level Must Currently Possess: · Top Secret/SCI · Clearance Level Must Be Able to Obtain: · ...
-
Security Control Assessor
3 weeks ago
General Dynamics Information Technology Washington, United StatesREQ#: RQ168280 Requisition Type: Regular Your Impact Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of Defense's mission to keep our country safe and secure. Job Description The SCA is responsible for cond ...
-
Lead Security Control Assessor
1 day ago
Graham Technologies Washington, United StatesJob Overview: · Graham Technologies (GTECH) is seeking a Lead Security Control Assessor whose primary duties will be to ensure that all requirements for assessment in compliance with NIST are being met. · You will be happy to know that this is a hybrid position. The work locatio ...
-
Security Control Assessor
3 weeks ago
Maximus, Inc. Arlington, United StatesMaximus is searching for a Security Control Assessor (SCA) to join a DoD program in Arlington, VA. The Security Control Assessor is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls Assessor, Control, Information ...
-
Security Control Assessor
3 weeks ago
MAXIMUS, Inc. Arlington, United States& Requirements · Maximus is searching for a Security Control Assessor (SCA) to join a DoD program in Arlington, VA. · The Security Control Assessor is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed wi ...
-
Security Control Assessor
4 days ago
MAXIMUS, Inc. Arlington, United States& Requirements · Maximus is searching for a Security Control Assessor (SCA) to join a DoD program in Arlington, VA. · The Security Control Assessor is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed wi ...
-
Security Control Assessor
2 weeks ago
Zermount, Inc Arlington, United StatesJob Description · Job Description Security Control Assessor Team Lead MILITARY FRIENDLY & PREFERRED - HOH SPONSORSummary · Zermount Inc. is seeking a Security Control Assessor Team Lead who will play a vital role in leading multiple teams on large projects. The System Security As ...
-
Security Assessor
3 weeks ago
Zermount, Inc Arlington, United StatesJob Description · Job DescriptionSecurity Assessor - SR · MILITARY FRIENDLY & PREFERRED - HOH SPONSOR · Zermount Inc. is seeking a Senior Security Assessor who plays a critical role in evaluating and providing recommendations to enhance the security posture of the organization. T ...
-
security control assessor
1 week ago
VetJobs Arlington, United StatesJob Description · At General Infomatics, Inc. we pride ourselves on providing program support, healthcare services, strategic technology solutions, and knowledge management to US government agencies worldwide, under standards of integrity, trust, and a commitment to excellence. ...
-
Security Control Assessor
1 week ago
MAXIMUS Arlington, United StatesJob Description Summary · Maximus is searching for a Security Control Assessor (SCA) to join a DoD program in Arlington, VA. The Security Control Assessor is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls emp ...
-
Security Assessor
3 weeks ago
Zermount, Inc Arlington, United StatesJob Description · Job DescriptionSECURITY ASSESSOR - MID-LEVEL · MILITARY FRIENDLY & PREFERRED - HOH SPONSOR · As a Mid Security Control Assessor, you will design, develop, engineer, and implement solutions. You will perform complex risk analyses which also include risk assessmen ...
-
Junior Security Control Assessor
2 weeks ago
Protek Consulting Washington, United StatesJob Description · Job DescriptionTo be considered for this role, you must have an active Top Secret clearance and be willing to work on-site in Washington, D.C. 4 days per week while working 1 day remotely. · Responsibilities · Execute assessment support according to plans and g ...
-
Security Control Assessor
3 days ago
McIntire Solutions, LLC Bethesda, United StatesTitle: Security Control Assessor · Location: Bethesda, MD · McIntire Solutions is seeking a Security Control Assessor to support our Bethesda Customer. · Responsibilities include, but are not limited to: Three (3) years of cybersecurity experience with at least one year of exp ...
-
Security Control Assessor
3 weeks ago
Delviom LLC Washington D.c., United StatesJob Title: Security Control Assessor (SCA) · Location: Washington, D.C ( Hybrid) · Fulltime · Clearance: Top Secret Clearance · Job Description: We are seeking a highly skilled Security Control Assessor to join our team. The SCA will be responsible for conducting comprehensive se ...
-
Security Control Assessor
3 weeks ago
Delviom LLC Washington D.c., United StatesJob Title: Security Control Assessor (SCA) · Location: Washington, D.C (Hybrid) · Duration: 4 years · Clearance: Top Secret · Qualifications: · Bachelor s degree in computer science, Information Technology, or related field. · Minimum of 8+ years of experience in security control ...
-
Security Control Assessor
4 weeks ago
Modern Technology Solutions, Inc. Washington, United StatesOwn Your Future. · Modern Technology Solutions, Inc. (MTSI) is seeking a **Security Control Assessor (SCA) II** to join our team. · **Why is MTSI known as a Great Place to Work?** · - ** Interesting Work**: Our co-workers support some of the most important and critical programs t ...
-
OneZero Solutions, LLC San Francisco, United States PermanentWe are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically c ...
-
Security Control Assessor
3 weeks ago
Integrated Intel Solutions Bethesda, United StatesJob Description · Job DescriptionSecurity Control Assessor Senior · Position Description: Bachelors degree in computer engineering, Computer Science, Electrical Engineering, Information systems, Information Technology, Cybersecurity, or a closely related discipline. · Four years ...
Security Assessor - Washington, United States - Educology Solutions
![Default job background](https://contents.bebee.com/public/img/bg-user-ex-1.jpg)
Description
Job Description
Job DescriptionSalary:ESI is seeking a security assessor to assist our customer in conducting independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine their effectiveness.
Duties & Responsibilities
Qualifications