Lead Security Controls Assessor
3 weeks ago
Tyto Athene is searching for a Lead Security Controls Assessor to support our customer in Arlington, Virginia.
Responsibilities:
- Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security control assessments, supporting the system security authorization to operate process, and conducting annual assessments, respectively
- Produce quality security assessment deliverables, ensuring the content of each deliverable is specific to the subject systems, are complete, and accurate
- Develop and execute a security and privacy assessment plan for each security assessment project
- Create and maintain security assessment test plans
- Perform security testing at the control-requirement level for each unique component of each system (e.g., application, web application server, financial systems, database server/instance, operating systems, specialized appliances, network and infrastructure devices, and end-user devices (e.g., mobile phones, laptops, etc.)
- Conduct technical content review and analysis of technical reports from security vulnerability scan, penetration test, and configuration compliance scan tools with respect to the subject system’s context and environment to analyze the findings accurately and completely
- Analyze security tool reports and determine residual risk or false positives from technical reports and artifacts before assigning findings.
- Document and provide findings and recommendations that are concise, system-specific, and actionable.
- Perform and document client and system-specific risk analysis for each finding identified during each assessment in accordance with NIST SP 800-30, the client’s risk appetite, and the client’s security policies. The results of this risk analysis shall be documented in the Security Assessment Report (SAR) for assessed FISMA systems and a summary of the assessment results and risk shall be provided in the respective Assessment/Authorization Briefing.
Required:
- Bachelor’s degree in Computer Science, Information Technology, or related field
- 12 years of relevant experience
- Thorough understanding and knowledge of FISMA and SA&A process
- Core competencies in Information Assurance, Information System/Network Security, IT Assessment, Risk Management, System Testing and Evaluation, and Vulnerability Assessment
- Ability to provide an assessment of the severity of weaknesses or deficiencies discovered in the information system and its environment of operation, and the ability to recommend corrective actions to address identified vulnerabilities
- Knowledge of NIST SP 800-53 (Rev 4 & Rev 5) and NIST 800-137
- Proficiency in writing technical analysis reports
- Strong written and oral communication skills
- Certified Information Systems Security Professional (CISSP) (required)
Desired:
- Certified Information Security Manager (CISM) (optional but highly recommended)
- Certified Authorization Professional (CAP), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC)
- Experience with IT ticketing systems (Jira, ServiceNow, Remedy, etc.) and eGRC tools (eMASS, Xacta, etc.)
Clearance: Active TS/SCI clearance required
Certification: DoD 8570 IAM/IAT Level III certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.
Location: This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.
-
Security Control Assessor Team Lead
1 month ago
Arlington, United States The Newberry Group Inc Full timeWho We Are... Today's leading government agencies are putting their trust in Newberry Group, and for good reason. Newberry brings strength to our clients, from the inside out through: •client intimacy and superior quality, •presence and accountability in our relationships, and •integrity and innovation at the forefront of everything we do. Newberry...
-
Security Control Assessor
1 month ago
Arlington, United States Saliense Full timeWho is Saliense? Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our clients toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Assessor
2 months ago
Arlington, United States Saliense Full timeWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Assessor
1 month ago
Arlington, United States Saliense Full timeWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For more information, visit...
-
Security Control Assessor
1 month ago
Arlington, United States SecuriGence LLC Full timeJob Title: Security Control Assessor (SCA) Location: Arlington, Virginia Clearance Level: Top Secret Clearance Summary We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. SecuriGence is seeking a talented Security Control Assessor to help contribute to...
-
Senior Security Controls Assessor
1 month ago
Arlington, United States Tyto Athene, LLC Full timeJob Description Tyto Athene is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia. Responsibilities:Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security assessments, supporting the system security authorization to operate process, and conducting annual assessments,...
-
Senior Security Controls Assessor
1 month ago
Arlington, United States Tyto Athene, LLC Full timeTyto Athene is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia.Responsibilities:Support RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security assessments, supporting the system security authorization to operate process, and conducting annual assessments, respectivelyProduce...
-
Arlington, Virginia, United States Zermount, Inc Full timeAt Zermount, Inc., we are seeking a highly skilled IT Cybersecurity Risk Assessor to join our team. As an integral part of our organization, you will play a critical role in ensuring the security and integrity of our systems and data.About the RoleThe successful candidate will be responsible for conducting thorough risk assessments to identify potential...
-
Intake Assessor
4 weeks ago
Arlington, United States Universal Health Services, Inc. Full timeResponsibilities Who We Are Millwood Hospital (a UHS affiliated hospital) is a 134-bed mental health facility that provides inpatient and outpatient mental health and chemical dependency treatment. Millwood‘s caring, and multidisciplinary staff has successfully provided inpatient and outpatient mental health and chemical dependency care to children,...
-
Electronic Security Systems Specialist
3 weeks ago
Arlington, Virginia, United States Johnson Controls Full timeJob OverviewWe are seeking a skilled Electronic Security Systems Specialist to join our team at Johnson Controls in Arlington. This role involves conducting preventative maintenance, troubleshooting, and commissioning of integrated electronic security systems.Key Responsibilities:Conduct preventative maintenance, troubleshooting, and commissioning of...
-
Experienced Security Professional Wanted
3 weeks ago
Arlington, Texas, United States NextGen Security LLC Full timeAt NextGen Security LLC, we are seeking a skilled Senior Technician to join our team. This full-time position offers a competitive salary of $80,000 - $120,000 per year, based on experience.About the RoleThis senior-level role involves overseeing projects in the field, system programming, project activation and commissioning, installation of field devices,...
-
Aerospace Control Systems Engineer
3 days ago
Arlington, Virginia, United States Kratos Defense & Security Solutions Full timeAbout the RoleKratos Defense & Security Solutions is a leading provider of advanced technology solutions for national security, defense, and space exploration. We are seeking an experienced Guidance Navigation and Control (GNC) Software Engineer to join our team.Job DescriptionThe successful candidate will be responsible for designing and developing software...
-
Secure Software Engineering Lead
2 weeks ago
Arlington, Virginia, United States Department of Homeland Security Full timeJob OverviewA secure software engineer position is available at the Department of Homeland Security (DHS) Cybersecurity Service. The successful candidate will contribute to designing, building, and maintaining secure custom software critical to support and safeguard Departmental or Component mission spaces.About UsThe DHS Cybersecurity Service is a dedicated...
-
Security Operations Specialist
3 days ago
Arlington, Virginia, United States P-11 Security Inc Full timeJob DescriptionP-11 Security Inc, a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB), is seeking a highly skilled Activity Security Representative III to provide multi-disciplined security support to our clients' facilities and organizations. The ideal candidate will possess 5-7 years of related experience and a Bachelor's degree or...
-
Arlington, Virginia, United States Concurrent Technologies Corporation Full timeAt Concurrent Technologies Corporation, we are seeking a seasoned cybersecurity expert to lead our efforts in industrial control systems. This is a critical role that requires exceptional leadership and technical skills.The ideal candidate will serve as the subject matter expert for our defense cybersecurity program, providing technical support and guidance...
-
Controls Systems Engineer
2 weeks ago
Arlington Heights, United States Johnson Controls Full timeControls Systems Engineer at Johnson Controls summary: As a Controls Systems Engineer, I design and configure sophisticated building control systems for projects, ensuring adherence to project requirements. I am responsible for creating software programs, flow diagrams, and schematics while coordinating with field teams to guarantee efficient and timely...
-
Information Systems Security Manager
1 month ago
Arlington, United States Credence company Full timeInformation Systems Security ManagerJob Locations US-VA-RosslynID 2024-8250Category OtherType Regular Full-TimeOverviewThe Information Systems Security Manager (ISSM) is responsible for implementing and overseeing cyber hygiene for all refugee operational activities within the Refugee Processing Center (RPC). Reporting directly to the Project Manager and...
-
Compliance Security Specialist
3 weeks ago
Arlington, Virginia, United States Zermount, Inc Full timeAbout the RoleWe are seeking a highly skilled Compliance Security Specialist to join our team at Zermount, Inc. This is a remote position with occasional on-site work required in Springfield, VA and Arlington, VA.Job SummaryThe Compliance Security Specialist will perform complex risk analyses, ensure systems and technologies satisfy Information Assurance...
-
Arlington Heights, Illinois, United States Johnson Controls Full timeJob Description:Johnson Controls is seeking an experienced Strategic Sales Director to lead our sales team in driving growth, expanding customer relationships, and increasing bookings across our HVAC and Security lines of business.About the Role:This senior leadership position will be responsible for developing and executing sales strategies, coaching and...
-
Information Assurance Consultant
3 weeks ago
Arlington, Virginia, United States Tyto Athene, LLC Full timeAbout the OpportunityTyto Athene, LLC is searching for a Senior Security Controls Assessor to support our customer in Arlington, Virginia. This is an exciting opportunity to join a dynamic team and contribute to the success of our client.Key ResponsibilitiesSupport RMF steps 4 - assess, 5 - authorize, step 6 - monitor controls: conducting system security...