Security Control Assessor Ii

3 weeks ago


Washington, United States Goldbelt, Inc. Full time

Overview:
Goldbelt Hawk designs, develops, and implements comprehensive solutions for problem spaces, including computer security, scalable architectures, advanced analytics, artificial intelligence, and network/data center operations. Specializing in local and enterprise-level incident response and forensic analysis, Hawk's personnel deliver threat analysis and reporting while implementing solutions based on mature planning and development practices.

**Summary**:
The Security Control Assessor Representative will perform a risk-based review and evaluation A&A process for classified systems to evaluate System Security Plans (SSPs) leading to an authorization decision.

**Responsibilities**:
**Essential Job Functions**:

- Maintain expert-level knowledge of all National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 Security Controls
- Maintain working knowledge of Department of Defense (DoD), Defense Counterintelligence Security Agency (DCSA), and NIST Risk Management Framework (RMF) guidance and policies
- Perform SSP reviews in accordance with the plan
- Use critical thinking to aid decision-making and highlight paths that will help achieve desired outcomes during risk-based analysis
- Assess SSPs, document the findings, and make recommendations.
- Review and evaluate Assessment and Authorization (A&A) artifacts in submission documentation
- Provide information security services such as system security documentation evaluation and other support activities connected with the implementation of the Risk Management Framework (RMF)
- Evaluate system security package submissions for authorization of classified systems against defined DCSA and Government technical standards
- Acquire and maintain National Industrial Security Program (NISP) Enterprise Mission Assurance Support Service (eMASS) account for daily use
- Attend and participate in training on the NISP eMASS tool
- Use NISP eMASS as an approved repository for artifacts and Plans of Action and Milestones (POA&M)
- Provide written documentation for each SSP review that includes:

- A summary of actions taken as part of the review, including dates and names when applicable
- Quantitative measurements that capture and evaluate communications and information technology support, identify trends and measure performance relative to SSP reviews
- Analysis of the review
- A clear rationale for outcomes and defensible recommendations
- Sufficient information to enable the Government to assess and authorize decisions

Qualifications:
**Necessary Skills and Knowledge**:

- Be familiar with the NIST RMF and be able to process and track packages through the NISP eMASS
- Proficiency in Microsoft Office Suite
- Solid client service, time management, and leadership skills as well as written and verbal communication skills

**Minimum Qualifications**:

- Minimum 2 years of Cybersecurity experience
- Must be a U.S. Citizen
- Pass an employer background check
- Active Secret clearance

**Preferred Qualifications**:

- Bachelor's degree in Information Technology or Engineering preferred
- Certified at IAT Level II (CCNA Security, CSA+, GICSP, GSEC, Security+ CE, SSCP)

The salary range for this position is $110,000 to $140,000 per year, based on experience and skill.

**Pay and Benefits**

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.



  • Washington, United States Modern Technology Solutions, Inc. Full time

    Own Your Future. Modern Technology Solutions, Inc. (MTSI) is seeking a **Security Control Assessor (SCA) II** to join our team. **Why is MTSI known as a Great Place to Work?** - ** Interesting Work**: Our co-workers support some of the most important and critical programs to our national defense and security. - ** Values**: Our first core value is that...

  • Security Assessor

    4 weeks ago


    Washington, United States Educology Solutions Full time

    ESI is seeking a security assessor to assist our customer in conducting independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine their effectiveness. **Duties & Responsibilities** - Develop methods to...


  • Washington, United States Bering Straits Native Corporation (BSNC) Full time

    Overview: **SUMMARY** Bering Global Solutions, LLC, a subsidiary of Bering Straits Native Corporation is currently seeking a qualified Security Control Assessor, Lead for a government client in Washington, DC. The selected individual will guide system owners, designated IT security personnel in the program offices, and other staff in fulfilling Federal...


  • Washington, United States Alpha Omega Integration Full time

    **Alpha Omega** is an award-winning Federal IT Solutions provider. Since its inception in September 2016, we have grown from a start-up to a $100m/year business. Alpha Omega’s growth stems from our mission focus**:to make the US Government the best in the world**. We achieve that via advanced capabilities in the areas of Design & Product Management,...


  • Washington, United States Global Resource Solutions, Inc. Full time

    Global Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Security Control Assessor I. **Job Descriptio**n**: **Summary**: The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or...

  • Security Assessor

    2 weeks ago


    Washington, United States Swingtech Consulting Full time

    Location:Washington DC About Swingtech Consulting, Inc. Swingtech Consulting, Inc. provides technology and management consulting services for the federal, state, and local government. Our team is comprised of skilled, certified consultants that help clients achieve success with effective, created, and rapidly executed solutions. We are rapidly growing and...


  • Washington, Washington, D.C., United States Graham Technologies Full time

    Job Overview:Graham Technologies (GTECH) is seeking a Lead Security Control Assessor whose primary duties will be to ensure that all requirements for assessment in compliance with NIST are being met. You will be happy to know that this is a hybrid position. The work location is Washington, DC. Responsibilities:Validate all work provided by the team.Ensure...


  • Washington, United States Graham Technologies Full time

    Job Overview:Graham Technologies (GTECH) is seeking a Lead Security Control Assessor whose primary duties will be to ensure that all requirements for assessment in compliance with NIST are being met. You will be happy to know that this is a hybrid position. The work location is Washington, DC. Responsibilities:Validate all work provided by the team.Ensure...


  • Washington, United States Dhara Consulting Group Full time

    Today - Top Secret/SCI - Unspecified - Polygraph - Security - Jbab, DC** (ON-SITE/OFFICE)** **Security Control Assessor (SCA) 1**: **Position Description**: The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall...


  • Washington, United States Missing Link Security Full time

    :  We are seeking a highly skilled Functional Area Expert II with expertise to join our Veterans Affairs Digital Transformation Center (DTC) OMEGA opportunity. In this role, you will have specialized knowledge and skills in Platform Security requirements and NIST security requirements. You will provide guidance, solve complex problems, drive innovation,...


  • Washington, United States Maania Consultancy Services Full time

    Job DescriptionJob DescriptionOur federal client is looking for Cyber Risk Assessor. If you are interested, please send me your updated resume along with your expected salary range.Position: Cyber Risk AssessorJob Type: Full-timeLocation: Remote (Local to the DC area – onsite occasionally)Clearance: Active Top Secret ClearanceRequired Skills and...


  • Washington, United States Maania Consultancy Services Full time

    Job DescriptionJob DescriptionOur federal client is looking for Cyber Risk Assessor. If you are interested, please send me your updated resume along with your expected salary range.Position: Cyber Risk AssessorJob Type: Full-timeLocation: Remote (Local to the DC area – onsite occasionally)Clearance: Active Top Secret ClearanceRequired Skills and...

  • Assessor Staff

    1 month ago


    Washington, United States Ampcus Incorporated Full time

    Location: Washington, DC (2 days a week onsite)Description:Assessor Staff must hold in good standing at least one (1) of the following IT Professional Certifications (or equivalent):o GIAC Systems and Network Auditor (“GSNA”)o ISC2 Certified Authorization Professional (“CAP”)o ISC2 Certified Information System Security Professional (“CISSP”)o...


  • Washington, United States Gray Tier Technologies Full time

    Gray Tier Technologies is seeking a Senior Vulnerability Assessor with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. The Department of the Interior (DOI) protects America's natural resources and heritage, honors our cultures and tribal communities, and supplies the energy to power...

  • Cyber Assessor

    3 weeks ago


    Washington, United States VMD Corp Full time

    Job DescriptionJob Description About the Mission You Will Join:   The Cyber Assessor role will play a vital role on a contract supporting the government customer's OCIO, conducting comprehensive cyber security assessments to ensure the overall security posture of the organization.      Your Impact to the Mission:As a Cyber Assessor you will...

  • Cyber Assessor

    2 weeks ago


    Washington, United States VMD Corp Full time

    Job DescriptionJob DescriptionAbout the Mission You Will Join:The Cyber Assessor role will play a vital role on a contract supporting the government customer's OCIO, conducting comprehensive cyber security assessments to ensure the overall security posture of the organization.Your Impact to the Mission:As a Cyber Assessor you will work alongside a team...

  • Cyber Assessor

    3 weeks ago


    Washington, United States VMD Corp Full time

    Job DescriptionJob DescriptionAbout the Mission You Will Join:The Cyber Assessor role will play a vital role on a contract supporting the government customer's OCIO, conducting comprehensive cyber security assessments to ensure the overall security posture of the organization.Your Impact to the Mission:As a Cyber Assessor you will work alongside a team...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, United States Booz Allen Hamilton Full time

    Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government agencies. In all of this cyber noise, how can these organizations understand their risks and how to mitigate them? The answer is youan information security risk spe cia list who will break down complex threats into...