Security Control Assessor

3 weeks ago


Washington DC United States IC-CAP Full time
Security Control Assessor (SCA) 1: Position Description: The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system)
SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities
Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility
Performance shall include:
• Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure
• Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG)
• Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security
• Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues
• Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization
• Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required
• Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system
• Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary
• Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR
• Evaluate security assessment documentation and provide written recommendations for security authorization to the Government
• Discuss recommendation for authorization and submit the security authorization package to the AO/DAO
• Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate.
• Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy
• Assist the Government compliance inspections
• Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken
• Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC)
• Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries
• Evaluate the effectiveness and implementation of Continuous Monitoring Plans
• Represent the customer on inspection teams, Education and Experience:
• Bachelor's degree
• 5-7 years related experience; 3+ years experience in SAP, SCI, or Collateral Information Systems (IS) and implementation of regulations; Prior performance in role of ISSO and ISSM; DESIRED: SAP Experience; TRAINING:
• IAM Level I (in lieu of IAT Level III)
• Combatting Trafficking in Persons (CTIP) Security Clearance:
• TS/SCI with willingness to take CI Poly (if required)
  • Security Assessor

    1 day ago


    Washington, United States Educology Solutions Full time

    ESI is seeking a security assessor to assist our customer in conducting independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine their effectiveness. **Duties & Responsibilities** - Develop methods to...


  • Washington, United States Bering Straits Native Corporation (BSNC) Full time

    Overview: **SUMMARY** Bering Global Solutions, LLC, a subsidiary of Bering Straits Native Corporation is currently seeking a qualified Security Control Assessor, Lead for a government client in Washington, DC. The selected individual will guide system owners, designated IT security personnel in the program offices, and other staff in fulfilling Federal...


  • Washington Highlands, Washington, D.C., United States Hummingbirds Innovations Full time

    The ideal candidate has experience performing internal penetration testing, vulnerability assessments and manual exploitation of servers, web applications/services and databases to identify vulnerabilities, misconfigurations, and compliance issues. In addition, the candidate will have extensive experience in performing FISMA technical controls assessments,...


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is seeking a Senior Vulnerability Assessor with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cultures and tribal communities, and supplies the energy to power our future....


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is seeking a Senior Vulnerability Assessor with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cultures and tribal communities, and supplies the energy to power our future....


  • Washington, United States Watershed Security Full time

    COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust and respect with our...


  • Washington, United States Watershed Security Full time

    COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust and respect with our...


  • Washington, United States Watershed Security Full time

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Washington, DC, United States Abacus Technology Corporation Full time

    OverviewAbacus Technology is seeking a Sr. Cyber Security Analyst to plan and implement security measures for IT systems in the DoE Office of Environment, Health, Safety, and Security (EHHS).  This is a full-time position.ResponsibilitiesAssist in developing the DoE EHSS security posture.Protect network and IT infrastructure and telecommunications systems...


  • Washington, DC, United States Technica Corporation Full time

    Overview At Technica Corporation, our goal is to provide exceptional professional services and innovative technology solutions that meet or exceed our customer’s expectations. We specialize in a wide range of advanced information technology solutions from Systems Engineering to Information Assurance, and from Software Development to Product Solutions....


  • Washington, DC, United States Comtech Full time

    Company DescriptionComtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have developed our methodologies and processes based on the IT...


  • Washington, United States Inter-Con Security Systems Full time

    **Overview** Founded in 1973, Inter-Con Security Systems, Inc. is a leading US-owned security company, providing integrated security solutions to government and commercial customers on four continents. Inter-Con remains under family ownership and control and operates as the industry leader in the field of customized, high-requirement security solutions....


  • Washington, Washington, D.C., United States Inter - Con Security Systems Inc Full time

    Job DetailsDescription OverviewFounded in 1973, Inter-Con Security Systems, Inc. is a leading US-owned security company, providing integrated security solutions to government and commercial customers on four continents.Inter-Con remains under family ownership and control and operates as the industry leader in the field of customized, high-requirement...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, United States Control Risks Full time

    Control Risks is seeking a Protective Design Engineer to help our client advance its protective design program, including the development and application of their physical security standards for all new construction projects globally. The successful candidate will possess strong knowledge in security risk management, security design, new construction...

  • Cyber SME

    1 week ago


    Washington, United States LMI Full time

    OverviewLMI seeks a skilled Cyber SME to support a Customs and Border Protection (CBP) PMO in the National Capital Region. Join our team of collaborative self-starters focused on delivering practical and efficient solutions to help our client keep U.S. borders safe and facilitate travel and trade. As part of our high-performing team, you will augment our...


  • Santa Clara, CA, United States Marksman Security Full time

    Overview:Marksman Security Corporation is hiring immediately for a Flex Security Command Center Operator.Santa Clara, CA$24.00hrThis position oversees the daily security operations of a 24/7 Central Command Center, safeguarding the assets of the facility, employees and guests. This position will be responsible for monitoring, directing and responding to...

  • PT Security Officer

    3 weeks ago


    Washington, United States Inter-Con Security Systems Inc Full time

    Job Details Description Overview Founded in 1973, Inter-Con Security Systems, Inc. is a leading US-owned security company, providing a full range of physical security services to government and commercial customers on four continents. Inter-Con (ICS) provides custom client solutions tailored to quality with the flexibility to operate in...

  • Courthouse Security

    2 days ago


    Aspen, CO, United States Citadel Security USA Full time

    We are currently looking for COURTHOUSE SECURITY OFFICERS IN ASPEN, COLORADO.PAY INFORMATION$26.00 per hourNon-exempt position (eligible for overtime when applicable under state law)LOCATIONThe town of Aspen was constructed in the 1870s, so the history adds to its charm. The opera house is one of the oldest buildings in town. Aspen remains a popular tourist...


  • Port Washington, United States Security USA Inc. Full time

    SECURITY USA INC. IS A GROWING COMPANY THROUGHOUT LONG ISLAND. Be part of the TEAM! We offer competitive salaries, weekly pay, on site training. We have a Part Time Overnight position available at North Shore Animal Shelter. Duties include access control, writing incident reports, excellent communication skills, paying attention to suspicious activity,...