Security Control Assessor

2 days ago


Washington, United States Mayvin® Full time
Job Details

Job Location
Washington, DC

Remote Type
Hybrid

Position Type
Full Time

Education Level
4 Year Degree

Travel Percentage
Up to 25%

Job Shift
Day

Job Category
Professional Services

Mayvin is currently seeking a Security Control Assessor to provide support to the Cybersecurity and Compliance initiative in the Department Homeland Security's Countering Weapons of Mass Destruction Office (DHS CWMD). The scope of this initiative encompasses a variety of information security expertise: Security Control Assessors as described here, as well as Penetration Testers, Software Security analysis, CDM / vulnerability management, and IT Governance work in Data Management, Enterprise Architecture, and IT Investment. Support will primarily benefit CWMD's Systems Support Directorate (SSD). The agency's main work is to develop and/or acquire CBRN detection equipment through the DHS acquisition process and deploy that equipment to DHS's front-line operators to alert them of the presence of chemical, biological, radiological, or nuclear weapons or materials present in the people, vehicles, or cargo entering the country.

Must be a U.S. Citizen.

Active SECRET clearance, ability to pass DHS background investigation.

Responsibilities:
  • Conduct information system security control assessments in order to evaluate the design, implementation and operational effectiveness of security controls for CWMD information systems in accordance with NIST SP 800-53.
  • Create assessment plans outlining the scope, objectives, schedule and methods used for assessing information system security controls, ensuring compliance with NIST, DHS, CISA and CWMD frameworks.
  • Analyze findings from assessments to determine the overall risk posture of systems and recommend remediation actions to mitigate identified vulnerabilities. Collaborate with stakeholders to prioritize and provide actionable recommendations.
  • Document the assessment using the DHS CSAM or other appropriate tools. Ensure documentation supports federal audit readiness.
  • Prepare security assessment reports that detail the status and effectiveness of security controls and deviations from baseline requirements, and provide actionable insights to system owners, stakeholders, and CWMD leadership.
  • Work closely with system owners, system security personnel, and other stakeholders to provide guidance on security control implementation, continuous monitoring, and the development of risk-based plans of action and milestones (POA&Ms).
  • Provide cybersecurity expertise throughout the RMF lifecycle and represent CWMD cybersecurity leadership where necessary.
  • Ensure that systems comply with applicable guidance as part of the overall system authorization process (e.g., RMF), helping to maintain an authority to operate (ATO).
  • Correspondence with program management office to correct deficiencies.
Qualifications:
  • Minimum of 12 years of directly related experience with a Bachelor's degree (or 10 with a Master's degree)
  • Highly skilled cybersecurity professional with a keen understanding of technology including but not limited to application, databases, networking, containerization, cloud architecture, and artificial intelligence to support adequate security and remediation planning activities.
  • Experience in vulnerability Application and database security assessment, scanning and results interpretation.
  • Deep understanding of cloud security principles, including identity and access management, data protection, and incident response and proficiency in AWS services such as EC2, S3, RDS, Lambda, and IAM.
  • CISA High Value Asset Assessment Lead certified within 6 months.
  • Strong working knowledge of CIS 2.0 and the AWS Well Architected Framework (Security Pillar).
  • Experience using DHS (DOJ) Cyber Security Assessment and Management (CSAM) or other federal government GRC tools (e.g., DoD Enterprise Mission Assurance Support Service (eMASS), Xacta) to manage the assessment and authorization (A&A) lifecycle.
  • Understanding of CI/CD tools and processes, including tools such as Jenkins, GitLab CI, and CircleCI.
  • Skills in monitoring and ensuring compliance with security standards and regulations within CI/CD and DevSecOps environments.
  • Knowledge of specific security controls for AI systems, including data protection, model integrity, and algorithm security.
  • Strong communication, organizational, analytical, and problem-solving skills
  • Ability to support and manage multiple concurrent projects with shifting priorities in a fast-paced, deadline driven environment
  • Strong organizational skills
  • Ability to work with a variety of colleagues with varying levels of experience
  • Ability to work in a team environment
  • Mastery in use of personal computers with extensive experience using Microsoft Office Suite; familiarity with web-based applications including Microsoft Teams a plus


About Mayvin:

Mayvin offers our employees an innovative culture, excellent benefits and amenities, an inclusive work environment, ongoing career development, and recognition and rewards to honor hard work. Most importantly, our employees have a voice and are heard; we treat our employees with unwavering dignity and respect. Mayvin is dedicated to protecting the interests of the United States. We made a commitment to deliver unparalleled service to serve the interests of national security. Come join us in tackling our nation's hardest problems in a place where #PeopleMatter #ReimagineYourMission.

  • Washington, United States Govcio LLC Full time

    Overview: GovCIO is currently hiring for Security Control Assessor with a TS/SCI clearance in Washington, DC (4 days onsite, 1 day remote). Responsibilities: Provide an assessment of the severity of weaknesses or deficiencies discovered in the information system and its environment of operation and recommend corrective actions to address identified...


  • Washington, United States Electrosoft Full time

    ResponsibilitiesManage a team of 4 Security Control Assessors.Develop a plan to manage and perform the SA&A activities for all customer information systems.Support the transition from NIST Special Publication 800-53, Revision-4 to Revision-5.Develop a NIST 800-53 rev5 implementation plan that will bring the customer in compliance with rev5 within 2...


  • Washington, United States LinQuest Full time

    Key Responsibilities: A Security Control Assessor (SCA) with LinQuestwill be responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited throughout the cybersecurity lifecycle for Information System (IS) services to determine the overall effectiveness of the controls.You...


  • washington, United States Electrosoft Full time

    ResponsibilitiesManage a team of 4 Security Control Assessors.Develop a plan to manage and perform the SA&A activities for all customer information systems.Support the transition from NIST Special Publication 800-53, Revision-4 to Revision-5.Develop a NIST 800-53 rev5 implementation plan that will bring the customer in compliance with rev5 within 2...


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:CASP CE+ -...


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:CASP CE+ -...


  • Washington, Washington, D.C., United States Omniscius Consulting Full time

    We are seeking a skilled Facility Condition Assessor to support our customer in Washington, DC. This hybrid position involves performing inspections on large, complex, and diverse buildings/facilities.The role requires expertise and knowledge in multiple areas of construction to identify inventory and assess the condition of individual facility systems and...


  • Washington, Washington, D.C., United States Omniscius Consulting Full time

    We are seeking an experienced Facility Condition Assessor to support our customer in Washington, DC. This hybrid position involves performing inspections on large, complex, and diverse buildings/facilities.The role requires expertise and knowledge in multiple areas of construction to identify inventory and assess the condition of individual facility systems...


  • Washington, Washington, D.C., United States ST2 ManTech Advanced Systems Intl Full time

    At ST2 ManTech Advanced Systems Intl, we are seeking an experienced Enterprise Security Architect for Federal Systems to join our team. This role is an exciting opportunity to work on innovative projects that protect our nation's security while providing a chance for advancement.The selected candidate will be responsible for assessing and implementing...


  • Washington, United States Valiant Solutions Full time

    Position Description: Valiant Solutions is seeking a Lead Security Device Assessor in the Washington DC Metro area to join our growing team supporting a large Government Agency. This position has an on-site requirement in downtown Washington DC of 50%, and the remaining 50% is remote work. This position is to be a part of a small project team, with guidance...


  • Washington, United States Chickasaw Nation Industries, Inc. Full time

    It's fun to work in a company where people truly BELIEVE in what they're doing! We're committed to bringing passion and customer focus to the business. ****** Required DOD Secret or Top-Secret Clearance ******* SUMMARY The Cloud Security Assessor / Information Assurance Analyst provides support to the agency. This position provides advanced...


  • Washington, Washington, D.C., United States ST2 ManTech Advanced Systems Intl Full time

    Secure Our Nation, Ignite Your FutureAt ST2 ManTech Advanced Systems Intl, we're seeking a highly skilled Security Controls Engineer to join our team. As a key member of our diverse and innovative team, you'll play a critical role in protecting our nation's security while working on cutting-edge projects that offer opportunities for...

  • Clinical Assessor

    4 months ago


    Washington, United States Acentra Health Full time

    CNSI and Kepro are now Acentra Health! Acentra Health exists to empower better health outcomes through technology, services, and clinical expertise. Our mission is to innovate health solutions that deliver maximum value and impact. Lead the Way is our rallying cry at Acentra Health. Think of it as an open invitation to embrace the company's mission, actively...


  • Washington, Washington, D.C., United States Innovative Management Concepts, Inc. Full time

    Job DescriptionThe Cybersecurity Team Lead will oversee a team of security control assessors to conduct comprehensive assessments of management, operational, technical, and privacy security controls employed within or inherited by an information system. This role will lead the team to efficiently manage the workload and provide risk results that determine...


  • Washington, DC , USA, United States Control Risks Full time

    Job SummaryControl Risks is seeking a highly skilled Protective Design Engineer to lead our client's protective design program. The successful candidate will possess strong knowledge in security risk management, security design, and project delivery processes as they relate to protective design and physical security.Key ResponsibilitiesDevelop and implement...

  • Security Receptionist

    2 months ago


    Washington, United States Inter-Con Security Full time

    Job DetailsLevel Experienced Job Location Washington DC (13808) - Washington, DC Position Type Full Time Salary Range $29.00 - $29.36 Hourly Job Shift Day Job Category Field DescriptionJob descriptionOverview Founded in 1973, Inter-Con Security Systems, Inc. is a leading US-owned security company, providing integrated security solutions to government and...


  • Washington, Washington, D.C., United States K&T Security Full time

    Job Title: Security Guards Licensed in DC, MD, and VAAt K&T Security, we are seeking experienced security officers to join our team. As a security officer, you will be responsible for ensuring the safety and security of our clients, their properties, and visitors.Responsibilities:Provide exceptional customer service while maintaining a safe...

  • Security Officer

    4 weeks ago


    Washington, Washington, D.C., United States K&T Security Full time

    Job Title: Security OfficerJob Summary:We are seeking a reliable and detail-oriented Security Officer to join our team at our Arlington, Virginia location. As a Security Officer, you will play a key role in maintaining a safe and secure environment at our office building. This role requires strong attention to detail, excellent communication skills, and the...


  • Washington, Washington, D.C., United States SAIC Full time

    Job Summary:SAIC is seeking a highly skilled Principal Cyber Testing Engineer to support the Secret and Below Releasable Environment (SABRE) program in the Air Force Cloud One Common Computing Environment (CCE) under the Air Force Lifecycle Management Center Office for Network Integration (AFLCMC/HNI).Key Responsibilities:Coordinate among disciplines within...

  • Security Officer

    4 weeks ago


    Washington, Washington, D.C., United States Admiral Security Services Full time

    Overview:Admiral Security Services is a leading provider of security solutions, with over four decades of experience in delivering exceptional service to clients across the nation. Our team of professionals is dedicated to ensuring the safety and security of our clients' facilities, and we are seeking a highly skilled Security Officer to join our...