Senior Security Controls Assessor
1 month ago
Tyto Athene is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia.
Responsibilities:
- Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security assessments, supporting the system security authorization to operate process, and conducting annual assessments, respectively
- Produce quality security assessment deliverables, ensuring the content of each deliverable is specific to the subject systems, complete, and accurate
- Develop and execute a security and privacy assessment plan for each security assessment project
- Create and maintain test cases for security assessment testing
- Perform security testing at the control-requirement level for each unique component of each system (e.g., application, web application server, financial systems, database server/instance, operating systems, specialized appliances, network and infrastructure devices, and end-user devices (e.g., mobile phones, laptops, etc.)
- Conduct technical content review and analysis of technical reports from security vulnerability scan, penetration test, and configuration compliance scan tools with respect to the subject system’s context and environment in order to analyze the findings accurately and completely
- Analyze security tool reports and determine residual risk or false positives from technical reports and artifacts before assigning findings.
- Document and provide findings and recommendations that are concise, system-specific, and actionable.
- Perform and document client and system-specific risk analysis for each finding identified during each assessment in accordance with NIST SP 800-30, the client’s risk appetite, and the client’s security policies. The results of this risk analysis shall be documented in the Security Assessment Report (SAR) for each assessed FISMA system and a summary of the assessment results and risk shall be provided in the respective Assessment/Authorization Briefing.
Required:
- Bachelor's Degree or 8 additional years of relevant equivalent experience
- Minimum eight (8) years of general experience and six (6) years of relevant experience in functional responsibility
- Thorough understanding and knowledge of FISMA and SA&A process
- Core competencies in Information Assurance, Information System/Network Security, IT Assessment, Risk Management, System Testing and Evaluation, and Vulnerability Assessment
- Ability to provide an assessment of the severity of weaknesses or deficiencies discovered in the information system and its environment of operation, and the ability to recommend corrective actions to address identified vulnerabilities
- Knowledge of NIST SP 800-53 (Rev 4 & Rev 5) and NIST 800-137
- Proficiency in writing technical analysis reports
- Strong written and oral communication skills
Desired:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM) (optional but highly recommended)
- Certified Authorization Professional (CAP), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC)
- Experience with IT ticketing systems (Jira, ServiceNow, Remedy, etc.) and eGRC tools (Archer, CSAM, eMASS, etc.)
Clearance: Secret Clearance required, Top Secret with SCI eligibility preferred
Certification Requirement: DoD 8570 IAM/IAT Level II certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.
Location: This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.
-
Senior Security Controls Assessor
1 month ago
Arlington, United States Tyto Athene, LLC Full timeJob Description Tyto Athene is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia. Responsibilities:Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security assessments, supporting the system security authorization to operate process, and conducting annual assessments,...
-
Security Control Assessor
1 month ago
Arlington, United States Saliense Full timeWho is Saliense? Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our clients toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Assessor
2 months ago
Arlington, United States Saliense Full timeWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Assessor
2 months ago
Arlington, United States Saliense Full timeWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Specialist
6 hours ago
Arlington, Virginia, United States SecuriGence LLC Full timeWe are seeking a seasoned Senior Security Control Assessor to join our team at SecuriGence LLC. Based in Arlington, Virginia, this role requires strong expertise in Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137.The estimated salary for this position is $120,000 - $180,000 per year, depending on experience.This Senior Security...
-
Security Control Assessor
1 month ago
Arlington, United States SecuriGence LLC Full timeJob Title: Security Control Assessor (SCA) Location: Arlington, Virginia Clearance Level: Top Secret Clearance Summary We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. SecuriGence is seeking a talented Security Control Assessor to help contribute to...
-
Security Control Assessor Team Lead
1 month ago
Arlington, United States The Newberry Group Inc Full timeWho We Are... Today's leading government agencies are putting their trust in Newberry Group, and for good reason. Newberry brings strength to our clients, from the inside out through: •client intimacy and superior quality, •presence and accountability in our relationships, and •integrity and innovation at the forefront of everything we do. Newberry...
-
Security Controls Assessor
3 weeks ago
Arlington, United States Tyto Athene, LLC Full timeTyto Athene is searching for a Security Controls Assessor Manager to support our customer in Arlington, Virginia.Responsibilities:Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security control assessments, supporting the system security authorization to operate process, and conducting annual assessments,...
-
Lead Security Controls Assessor
3 weeks ago
Arlington, United States Tyto Athene, LLC Full timeTyto Athene is searching for a Lead Security Controls Assessor to support our customer in Arlington, Virginia.Responsibilities:Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security control assessments, supporting the system security authorization to operate process, and conducting annual assessments,...
-
Arlington, Virginia, United States Zermount, Inc Full timeAt Zermount, Inc., we are seeking a highly skilled IT Cybersecurity Risk Assessor to join our team. As an integral part of our organization, you will play a critical role in ensuring the security and integrity of our systems and data.About the RoleThe successful candidate will be responsible for conducting thorough risk assessments to identify potential...
-
Intake Assessor
4 weeks ago
Arlington, United States Universal Health Services, Inc. Full timeResponsibilities Who We Are Millwood Hospital (a UHS affiliated hospital) is a 134-bed mental health facility that provides inpatient and outpatient mental health and chemical dependency treatment. Millwood‘s caring, and multidisciplinary staff has successfully provided inpatient and outpatient mental health and chemical dependency care to children,...
-
Experienced Security Professional Wanted
3 weeks ago
Arlington, Texas, United States NextGen Security LLC Full timeAt NextGen Security LLC, we are seeking a skilled Senior Technician to join our team. This full-time position offers a competitive salary of $80,000 - $120,000 per year, based on experience.About the RoleThis senior-level role involves overseeing projects in the field, system programming, project activation and commissioning, installation of field devices,...
-
HVAC Controls Specialist
4 weeks ago
Arlington Heights, Illinois, United States Johnson Controls Full timeJob OverviewWe are seeking a skilled HVAC Controls Specialist - Senior Technician to join our team at Johnson Controls.
-
Risk Assessment Specialist
1 week ago
Arlington, Virginia, United States Zermount, Inc Full timeRisk Assessment SpecialistEstimated Salary: $120,000 - $180,000 per year.Zermount Inc. is seeking a highly skilled Risk Assessment Specialist to join our team. As a Senior Risk Assessor, you will be responsible for conducting risk assessments (RA) to identify potential security threats and vulnerabilities in our systems and technologies. Your expertise will...
-
Information Assurance Consultant
4 weeks ago
Arlington, Virginia, United States Tyto Athene, LLC Full timeAbout the OpportunityTyto Athene, LLC is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia. This is an exciting opportunity to join a dynamic team and contribute to the success of our client.Key ResponsibilitiesSupport RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security...
-
HVAC Truck Based Senior Controls Tech
4 weeks ago
Arlington Heights, United States Johnson Controls Full timeHVAC Truck Based Senior Controls TechnicianWhat you will doPerform HVAC Control systems programming, troubleshooting, installation, commissioning and preventative maintenance as it is related to mechanical, electrical, and low voltage controls components.Respond to service and warranty calls using Johnson Controls configuration and commissioning tools as...
-
Senior IT Security Analyst
5 days ago
Arlington, Virginia, United States Goldbelt Full timeThe role of a Senior Information Assurance Analyst at Goldbelt Nighthawk involves working closely with the team to deliver high-quality cybersecurity solutions. The ideal candidate should have excellent communication and interpersonal skills, allowing them to effectively collaborate with colleagues and stakeholders. Strong analytical and problem-solving...
-
Cybersecurity Specialist
4 weeks ago
Arlington, Virginia, United States Tyto Athene, LLC Full timeAbout the RoleWe are seeking a highly skilled Senior Security Controls Assessor to join our team at Tyto Athene, LLC. This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.Job DescriptionSupport RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security assessments, supporting...
-
Electronic Security Systems Specialist
3 weeks ago
Arlington, Virginia, United States Johnson Controls Full timeJob OverviewWe are seeking a skilled Electronic Security Systems Specialist to join our team at Johnson Controls in Arlington. This role involves conducting preventative maintenance, troubleshooting, and commissioning of integrated electronic security systems.Key Responsibilities:Conduct preventative maintenance, troubleshooting, and commissioning of...
-
HVAC Controls Specialist
3 weeks ago
Arlington Heights, Illinois, United States Johnson Controls Full timeHVAC TB Sr Controls Tech II Job Description The HVAC Truck Based Senior Controls Technician role at Johnson Controls involves programming, troubleshooting, and maintaining HVAC control systems while providing technical support to customers. To be successful in this position, you should have proficiency in both mechanical and electrical systems, along with...