Senior Cybersecurity Control Evaluator

3 days ago


Meade, United States ATG Full time
ARCYBER-0- Senior Cybersecurity Control Evaluator -

Position Level:

Requisition:

Overview of Responsibilities

Senior Cybersecurity Control Evaluator

Job Location:
Remote

Employment Type:
Full Time, 40 hours per week

Athena Technology Group, Inc. is a Service-Disabled Veteran Owned /Small Business (SDVOSB)

dedicated to providing cutting-edge Information Technology and Communications consulting, system engineering,

integration, deployment, and operations of advanced command and control and information

systems that deliver vital network-centric solutions to our clients. With a strong history

of technical support to our partners, we are seeking innovative professionals to enhance

our team.

JOB RESPONSIBILITIES:
Conduct Security Control Evaluations to assess the degree to which Information System

security measures are correctly implemented, functioning as intended, and achieving the desired

results as outlined in the relevant Information Assurance Requirements. Perform independent

thorough evaluations of the management, operational, and technical security measures and

enhancements utilized within or associated with an information technology (IT) system to

evaluate the overall efficacy of the measures. Adhere to Assessment and Authorization

protocols as defined in NIST to complete comprehensive security control evaluations and

draft formal Security Assessment Reports (SAR) to document findings.

Key Tasks:
1. Plan and execute security authorization reviews and assurance case development for initial

installation of systems and networks.

2. Review authorization and assurance documentation to ensure that the risk level is within

acceptable limits for each software application, system, and network.

3. Verify that application software/network/system security postures are implemented as stated,

document deviations, and recommend necessary actions to rectify those deviations.

4. Develop security compliance processes and/or audits for external services (e.g., cloud

service providers, data centers).

5. Conduct security reviews, identify gaps in security architecture, and formulate a security risk

management strategy.

6. Verify and update security documentation to reflect the application/system security design

features.

7. Ensure that plans of actions and milestones or remediation plans are established for

vulnerabilities identified during risk assessments, audits, inspections, etc.

8. Support necessary compliance activities (e.g., ensure that system security configuration

guidelines are adhered to, compliance monitoring is conducted).

9. Assess the effectiveness of security measures and evaluate all configuration management

(change configuration/release management) processes.

Preferred Qualifications:
- Extensive experience with RMF, CNSSI 1253, NIST SP 800-53, ICD 503

- Familiarity with Security Technical Implementation Guides (STIGs) and Security Content

Automation Protocol (SCAP) Compliance Checker (SCC)

- Proficiency in utilizing Telos XACTA tool

- Knowledge of Information Assurance Vulnerability Alerts (IAVAs)

- Experience with compliance and vulnerability scanning tools (Nessus, McAfee ePO)

- Ability to conduct comprehensive security control evaluations and document the results, including recommendations for addressing any weaknesses or

deficiencies in the measures

- Capability to develop a Security Assessment Report (SAR)

- Conduct thorough reviews of security authorization documents to ensure the

appropriate NIST security guidelines were utilized during the evaluations and the selection of

security measures are relevant to the confidentiality, integrity, and availability of the system

- Experience performing security control evaluations on cloud-based systems

Required Experience:
10+ years of relevant experience as a cybersecurity control evaluator or a Master's degree with 5 years

Certification Requirements:
IAM Level II, CAP or CCSP preferred

Education Requirement:
B.S. or relevant experience in a related field

Clearance Requirements:
Active TS/SCI

US Citizenship and an active DOD TOP SECRET/SCI Clearance are required for the position.

Salary will be commensurate with experience. ATG is a growing company and there will

be opportunities for internal advancement. ATG is an Equal Opportunity Employer.

  • Meade, United States Chickasaw Nation Industries Full time

    Company OverviewAt Chickasaw Nation Industries, we are dedicated to fostering a culture where passion and customer-centricity drive our mission.Position SummaryThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead plays a crucial role in collaborating with project management to comprehend the mission, security framework, deployment...


  • Meade, United States Chickasaw Nation Industries Full time

    Company OverviewAt Chickasaw Nation Industries, we are dedicated to excellence and integrity in our operations, fostering a culture where our employees are passionate about their work.Position SummaryThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead will engage directly with assigned Project Managers to gain insights into mission...


  • Meade, United States Chickasaw Nation Industries Full time

    Company OverviewAt Chickasaw Nation Industries, we are dedicated to excellence and integrity in all our endeavors. Our commitment to our clients and our workforce drives our success.Position SummaryThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead plays a pivotal role in collaborating with project management to comprehend mission...


  • Meade, United States Chickasaw Nation Industries Full time

    Company OverviewAt Chickasaw Nation Industries, we are dedicated to fostering a culture where our employees are passionate about their work and committed to delivering exceptional service to our clients.Position SummaryThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead plays a crucial role in collaborating with project managers to...


  • Meade, United States Chickasaw Nation Industries Full time

    Company OverviewAt Chickasaw Nation Industries, we are dedicated to fostering a culture where our employees are passionate about their work and committed to excellence.Position SummaryThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead plays a crucial role in collaborating with assigned Project Managers to comprehend the mission...


  • Meade, United States Chickasaw Nation Industries Full time

    OVERVIEWAt Chickasaw Nation Industries, we are dedicated to fostering a culture where our employees are passionate about their work and committed to excellence.POSITION SUMMARYThe Security Control Assessor Representative (SCA-R) / Dedicated Team Lead plays a crucial role in collaborating with assigned Project Managers to comprehend the mission objectives,...


  • Meade, United States Peraton Full time

    Job SummaryWe are seeking a highly skilled Senior Cybersecurity Reviewer to join our team at Peraton. As a Senior Cybersecurity Reviewer, you will be responsible for conducting cybersecurity reviews and assessments of systems and networks to identify vulnerabilities and provide recommendations for remediation.Key ResponsibilitiesConduct at least 8 mission...


  • Meade, United States Amyx Full time

    Job SummaryAmyx is seeking a highly skilled Cybersecurity Control Assessment Representative Lead to support our DISA client at various locations. The ideal candidate will have a strong background in cybersecurity, experience in certification and accreditation, and excellent leadership skills.Key ResponsibilitiesPerform cybersecurity assessments and build...


  • Meade, United States Defense Information Systems Agency Full time

    Position OverviewThis role is part of the Cyber Excepted Service and is essential for supporting the mission of the Defense Information Systems Agency (DISA). Role SummaryAs a Senior Cybersecurity Operations Supervisor, you will be responsible for overseeing cybersecurity initiatives and providing expert guidance in various domains including security...


  • Meade, United States Peraton Full time

    Peraton is seeking a highly skilled Senior Linux Systems Administrator to join our team supporting a critical national security program. In this role, you will play a vital part in managing and securing the IT infrastructure for a fast-paced development effort focused on mobile and Radio Frequency technologies.Your responsibilities will include:Managing the...


  • Meade, United States ST2 ManTech Advanced Systems Intl Full time

    Secure Our Nation, Ignite Your FutureAt ST2 ManTech Advanced Systems Intl, we're seeking a highly skilled and experienced Program Chief Information Security Officer (CISO) IV to join our team. As a key member of our organization, you'll play a critical role in protecting our national security and driving innovation.About the RoleLead senior leadership...


  • Meade, United States The MITRE Corporation Full time

    Why choose between impactful work and a rewarding career? At MITRE, you can achieve both. Our team is dedicated to addressing the most pressing challenges facing our nation, while also prioritizing the long-term well-being of our employees. MITRE stands apart from typical technology firms. As a not-for-profit organization, we are committed to serving the...


  • Meade, United States Peraton Full time

    Job SummaryPeraton is seeking a highly skilled Cybersecurity Reviewer to join our team. As a Senior Cybersecurity Reviewer, you will be responsible for conducting DODIN cybersecurity reviews on site at various locations. This is a critical role that requires a strong background in cybersecurity and experience in conducting technical security readiness...


  • Meade, United States Defense Information Systems Agency Full time

    Develop, evaluate, and implement cybersecurity plans, procedures and requirements to ensure compliance with the organizations Information Assurance (IA) and cyber security policies and to ensure systems meet applicable integrity requirements. Develop risk analysis for new and current information systems and networks to identify risks inherent in the design...


  • Meade, United States Amyx Full time

    Job SummaryAmyx is seeking a highly skilled Cybersecurity Control Assessment Representative Lead to support our DISA client. The successful candidate will be responsible for assessing programs' security posture, building reports, and submitting recommendations for improving cybersecurity posture.Key ResponsibilitiesPerform security assessments and build...


  • Meade, United States Peraton Full time

    Join Our TeamPeraton is seeking a Senior Cybersecurity Systems Officer to enhance our Cyber Mission division.Key Responsibilities:Oversee the security of information systems and ensure compliance with established protocols.Collaborate with cross-functional teams to identify and mitigate potential security risks.Conduct regular assessments and audits to...


  • Fort Meade, United States Nemean Solutions Full time

    Job DescriptionJob DescriptionNemean Solutions, LLC is looking for Qualified personnel to support the DISA Joint Interoperability Test Command (JITC) Test Evaluation and Certification II Services (TEC II) contract - Cybersecurity Test and Evaluation Specialist.Background:DISA's mission is to conduct DODIN operations for the joint warfighter to enable...


  • Meade, United States Booz Allen Hamilton Full time

    Senior Cybersecurity Training ExpertKey Responsibilities:As a Senior Cybersecurity Training Expert, you will be instrumental in delivering Subject Matter Expert (SME) guidance to the oversight of a comprehensive Department of Defense (DoD) training initiative. Your role will involve ensuring that forces assigned to USCYBERCOM are thoroughly trained,...


  • Meade, United States Booz Allen Hamilton Full time

    Position Overview:The Cyber Training Assessment Specialist plays a crucial role in supporting the management of a comprehensive evaluation and assessment program across the Department of Defense (DoD). This position involves collaborating with various Services and Combatant Commands to ensure the dissemination of best practices and the resolution of...


  • Meade, United States Peraton Full time

    Position: Lead Cybersecurity Risk AssessorResponsibilities:Deliver expertise in information assurance while executing cybersecurity evaluations for DODIN.Conduct vulnerability assessments and readiness evaluations for security measures.Create standard operating procedures for cybersecurity vulnerability assessments and facilitate training for new...