Security Control Assessor

1 month ago


Shaw Heights, United States Oneida Technical Solutions Full time
Job DescriptionJob Description

Oneida Technical Solutions, LLC (OTS), was founded in 2014 and quickly established itself as a reliable partner capable of providing a variety of information technology and cyber solutions across highly complex, highly regulated and highly secure environments, including the U.S. Department of Defense (DoD), healthcare, higher education, law enforcement, retail, casino gaming and more.

Our innovative cyber capabilities and programs have made us trusted partners for IT modernization projects, implementing upgrades and accelerating the delivery of new solutions for the DoD and commercial industries with consumer-driven technology.

OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT at Shaw AFB in Sumter, SC.

In this role you will perform comprehensive IT security control assessments on AFCENT systems and software applications. Assessments shall require physical travel to various contractor and Government sites inside and outside the continental United States (CONUS and OCONUS). Assessments shall determine the condition of the management, operational, and technical security controls employed within or inherited by an information system or software to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system).

Duties for this role include, but are not limited to:

Perform initial and continual security control assessment and validation for AFCENT networks, systems, and software applications.
Utilize DOD approved tools such as, but not limited to - Assured Compliance Assessment Solution (ACAS), Nessus, Host Based Security Systems (HBSS), Continuous Monitoring Risk Scoring (CMRS), Online Compliance Reporting System (OCRS), and SolarWinds - to generate initial and continuous monitoring reports.
Complete reports to support risk decisions from the AO, both as required and as requested.
Provide an assessment on the severity of weaknesses or deficiencies discovered in the information system or software application and its environment of operation and recommend corrective actions to address identified vulnerabilities.
Review the System Security Plan (SSP), prior to initiating the security control assessment and ensure the plan provides a set of security controls for the information system or software application that meet the stated security requirements.
Advise the Information System Owner (ISO) concerning the impact values for confidentiality, integrity, and availability for the information on a system or software application.
Evaluate threats and vulnerabilities to information systems or software application to ascertain the need for additional safeguards.
Assist in creating, reviewing, and approving the information system or software application security assessment plan, which is comprised of the SSP, the Security Controls Traceability Matrix (SCTM), and the Security Control Assessment Procedure.
Ensure security control assessments are completed for each information system or software application and ensure controls are working as intended and these controls protect the confidentiality, integrity and availability of IT resources at the appropriate levels.
Assist with preparing the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity.
Ensure a Plan of Action and Milestones (POA&M) is initiated by the Information System Security Officer (ISSO) for the information system based on findings and recommendations from the SAR.
Evaluate security control assessment documentation and provide written recommendations for security authorization to the AO.
Provide expertise to execute vulnerability assessments on Platform IT systems.
Assist with assembling and submitting the security authorization artifacts to the AO (consisting of, at a minimum, the SSP, the SAR, the POA&M, and a Risk Assessment Report (RAR).
Assess the proposed changes to information systems or software application, their environment of operation, and mission needs to determine if they are security-relevant and could therefore affect system authorization.
Utilize the RMF methodology to successfully implement an information technology process which shall effectively protect the element's information assets and its ability to perform its mission.
Provide guidance to other assessors on the policies and procedures of the job; Provide detailed assessment findings using Government-specified processes and procedure.
Provide solutions and recommendations to remedy security vulnerabilities, threats, to ultimately improve the protection of IT resources and to execute the AFCENT mission.
Utilize assessment results to identify trends and to improve IA training, policies and processes.
Develop reports and trend analysis's to support risk assessment decisions.

Qualified candidates must meet the following mandatory requirements:

Must possess and maintain a Secret Clearance

Proof of IAT-III or IAM-III Certification

Senior (III) and higher positions (Preferred):

- MA/MS in related field AND 3 or more years' relevant experience; or

- BS in related field AND 5 or more years' relevant IT experience; or

- 7 or more years' relevant IT experience.

Mid-level (II) or lower positions:

- BS in related field AND 1 or more years' relevant experience; or

- Associates in related field and 3 or more years' relevant IT experience; or

- 5 or more years' of relevant IT experience.

Oneida Technical Solutions, LLC. is an equal opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, national origin, age, disability, marital status, veteran status, sexual orientation, gender identity, genetic information or any other protected characteristic under applicable law.

#CJ



Job Posted by ApplicantPro


  • Shaw Heights, United States Oneida Technical Solutions Full time

    Job OverviewOneida Technical Solutions, LLC (OTS) is a prominent provider of information technology and cybersecurity solutions, catering to a diverse range of sectors including defense, healthcare, education, and law enforcement.Position Summary:OTS is in search of a Security Control Assessor to deliver cybersecurity support to AFCENT. This role involves...


  • Shaw Heights, United States Oneida Technical Solutions Full time

    Job OverviewOneida Technical Solutions, LLC (OTS) is a prominent provider of information technology and cybersecurity solutions, dedicated to serving a diverse range of sectors including defense, healthcare, education, and law enforcement.Position Summary:OTS is currently seeking a Security Control Assessor to deliver cybersecurity support for AFCENT. This...

  • Senior Risk Assessor

    3 weeks ago


    Maryland Heights, United States SPECTRUM Full time

    Spectrum's Information Security strategy aligns talented employees, innovative IT processes, and leading technology to safeguard information systems and protect critical business data. Our teams use proven methodology, emerging technologies, and industry best practices to quickly identify and remediate security vulnerabilities. We offer exciting...


  • Linthicum Heights, Maryland, United States Jacobs Full time

    About the Role:We are seeking a highly skilled Security Controls Assessor to join our team at Jacobs, a leading provider of technical, professional, and technical services. In this role, you will play a critical part in supporting challenging, mission-critical projects that make a direct impact on the nation's security and intelligence mission.Key...

  • Senior Risk Assessor

    3 weeks ago


    Maryland Heights, United States Spectrum Full time

    Spectrums Information Security strategy aligns talented employees, innovative IT processes, and leading technology to safeguard information systems and protect critical business data. Our teams use proven methodology, emerging technologies, and indu Risk, Assessor, Technical, Senior, Communications, Technology


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job OverviewgTANGIBLE Corporation (gTC) is a distinguished C corporation and a registered Government contractor specializing in:National Security InitiativesAdministrative and Management Support ServicesMission and Warfighter AssistanceAs a Service Disabled Veteran Owned Small Business (SDVOSB), our founder brings extensive experience in the Government...


  • Shaw Heights, United States Armada Ltd Full time

    Job DescriptionJob DescriptionType: Full TimeLocation: Sumter, SCOvertime Exempt: YesReports To: ARMADA HQSecurity Clearance Required: Active TS/SCIDuties & Responsibilities:Provide Special Security Advisor support to the United States Air Force Central Command (USAFCENT) in the Air Force Service Component of United States Central Command (USCENTCOM)....


  • Maryland Heights, Missouri, United States SPECTRUM Full time

    Spectrum's commitment to Information Security is rooted in a blend of skilled personnel, innovative IT methodologies, and cutting-edge technology aimed at safeguarding information systems and protecting vital business data. Our teams employ established methodologies, the latest technologies, and industry best practices to swiftly identify and address...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Maryland Heights, Missouri, United States SPECTRUM Full time

    Spectrum's commitment to Information Security integrates skilled professionals, innovative IT methodologies, and cutting-edge technology to protect information systems and secure vital business data. Our teams utilize established methodologies, emerging technologies, and industry-leading practices to swiftly identify and address security vulnerabilities. We...


  • Maryland Heights, Missouri, United States SPECTRUM Full time

    Spectrum's commitment to Information Security integrates skilled professionals, innovative IT methodologies, and cutting-edge technology to protect information systems and secure vital business data. Our teams employ established methodologies, emerging technologies, and industry-leading practices to swiftly identify and address security vulnerabilities. We...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Maryland Heights, Missouri, United States Wave Full time

    ABOUT WAVEAt Wave, we prioritize a robust Information Security framework that integrates skilled professionals, innovative IT methodologies, and cutting-edge technology to protect our information systems and safeguard essential business data. Our teams employ established methodologies, emerging technologies, and industry-leading practices to swiftly identify...

  • Armed Security Officer

    21 hours ago


    Sterling Heights, Michigan, United States DK Security Full time

    Job SummaryDK Security is seeking a highly skilled and experienced Armed Security Officer to join our team at a military base in Sterling Heights, MI. As a key member of our security team, you will be responsible for protecting the site's building, grounds, assets, employees, tenants, and visitors against criminal activity, accidents, and fires.Key...


  • Sterling Heights, Michigan, United States First Coast Security Full time

    OverviewFirst Coast Security has been a trusted provider of security services for over two decades, and we are currently expanding our operations in Virginia. We are looking for dedicated individuals who embody our core values of excellence, courage, integrity, and professionalism to join our esteemed team.Job Skills / RequirementsBegin your career as a...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job OverviewgTANGIBLE Corporation (gTC) is a recognized C corporation and a registered Government contractor dedicated to delivering exceptional services and solutions in:National Security InitiativesProfessional, Administrative, and Management AssistanceMission and Warfighter OperationsAs a Service Disabled Veteran Owned Small Business (SDVOSB), our founder...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job OverviewgTANGIBLE Corporation (gTC) is a distinguished C corporation and a recognized Government contractor dedicated to delivering comprehensive services and solutions in:National Security InitiativesProfessional, Administrative, and Management AssistanceMission and Warfighter SupportAs a Service Disabled Veteran Owned Small Business (SDVOSB), our...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job OverviewgTANGIBLE Corporation (gTC) is a distinguished C corporation and a recognized Government contractor, delivering a range of services and solutions in:National Security InitiativesProfessional, Administrative, and Management AssistanceMission and Warfighter OperationsAs a Service Disabled Veteran Owned Small Business (SDVOSB), our founder brings...


  • Shaw Heights, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Maryland Heights, Missouri, United States Wave Full time

    BE PART OF THE SOLUTIONAs a Senior Risk Assessor within the Information Security division, you will utilize your technical acumen to support leadership in effectively managing enterprise security challenges. Your role will involve conducting thorough risk evaluations through various methodologies, including questionnaires, interviews, and key control...