Security Control Evaluator

1 week ago


Arlington, Virginia, United States General Dynamics Information Technology Full time

Position Overview: The Security Control Evaluator (SCE) III plays a critical role in performing a thorough evaluation of the management, operational, and technical security measures implemented within or associated with an Information System (IS). The primary objective is to assess the overall efficacy of these measures, ensuring they are correctly applied, functioning as intended, and achieving the desired outcomes in alignment with the security requirements of the system.

Key Responsibilities:

  • Oversee the formulation, execution, and assessment of IS security program policies, with a focus on integrating existing Special Access Program (SAP) network infrastructures.
  • Conduct evaluations of Information Systems using the Risk Management Framework (RMF) methodology, adhering to the Joint Special Access Program (SAP) Implementation Guide (JSIG).
  • Provide guidance to the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) regarding assessment and authorization matters.
  • Review Authorization packages and offer recommendations to the AO and/or DAO for system authorization.
  • Analyze IS threats and vulnerabilities to determine if additional security measures are necessary.
  • Advise the Government on the impact levels concerning Confidentiality, Integrity, and Availability of information within the system.
  • Ensure that security assessments are finalized, documented, and prepare the Security Assessment Report (SAR) for the Authorization boundary.
  • Initiate a Plan of Action and Milestones (POA&M) for identified weaknesses within each assessed Authorization Boundary, based on findings and recommendations from the SAR.
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the Government.
  • Discuss authorization recommendations and submit the security authorization package to the AO/DAO.
  • Assess proposed modifications to Authorization boundaries and their operational environments to determine continued operational viability.
  • Review and approve all sanitization and clearing procedures in accordance with Government guidelines and policies.
  • Assist the Government with compliance inspections.
  • Support the Government in addressing security incidents related to cybersecurity, ensuring appropriate corrective actions are implemented.
  • Ensure that organizations are addressing and executing all phases of the system development life cycle (SDLC).
  • Evaluate hardware and software to assess their security impact on Authorization boundaries.
  • Assess the effectiveness and implementation of Continuous Monitoring Plans.
  • Possess a working knowledge of Information Systems and Network Appliances operating at Protection Level 3 (PL3) and Protection Level 4 (PL4).
  • Differentiate between various types of Cross-Domain Solutions (CDS).
  • Collaborate on joint assessments of Cross-Domain Solutions with other Department of Defense (DoD) agencies.

Qualifications:

  • Minimum of 9 years of relevant experience.
  • At least 2 years of experience with Special Access Programs (SAP) is required.

Education:

  • Bachelor's degree in a related field or equivalent experience (4 years).

Certifications:

  • IAT Level III certification is required to start (CISSP, CASP+ CE, CCNP Security, CISA, etc.).

Clearance Requirements:

  • TS/SCI clearance is required to start.
  • Must be able to obtain TS/SCI with CI Polygraph.


  • Arlington, Virginia, United States MAXIMUS Full time

    Maximus is seeking a highly qualified and seasoned Senior Security Control Evaluator to become a vital part of our Department of Defense (DOD) team. In this pivotal role, you will oversee and facilitate the evaluation of security controls for information systems, ensuring compliance with DOD standards and protocols. The ideal candidate will possess a...


  • Arlington, Virginia, United States General Dynamics Information Technology Full time

    Position Overview: The Security Control Evaluator (SCE) III plays a crucial role in performing a thorough evaluation of the management, operational, and technical security measures utilized within or adopted by an Information System (IS). This assessment aims to ascertain the overall efficacy of these measures, specifically regarding their correct...


  • Arlington, Virginia, United States General Dynamics Information Technology Full time

    Position Overview: The Security Control Evaluator (SCE) III plays a crucial role in performing an extensive evaluation of the management, operational, and technical security measures utilized within or associated with an Information System (IS). The objective is to assess the overall efficacy of these measures, ensuring they are implemented correctly,...


  • Arlington, Virginia, United States General Dynamics Information Technology Full time

    Position Overview: The Security Control Evaluator (SCE) III plays a crucial role in executing a thorough evaluation of the management, operational, and technical security measures utilized within or associated with an Information System (IS). The primary objective is to assess the overall efficacy of these measures, ensuring they are correctly implemented,...


  • Arlington, Virginia, United States General Dynamics Information Technology Full time

    Position Overview: The Information Security Control Evaluator (ISCE) III plays a critical role in executing thorough evaluations of the management, operational, and technical security measures implemented within or associated with an Information System (IS). The primary objective is to assess the overall efficacy of these measures, ensuring they are...


  • Arlington, Virginia, United States Arlo Solutions Full time

    Company Overview Arlo Solutions (Arlo) is a premier information technology consulting firm dedicated to providing innovative technology solutions. Our esteemed reputation is built on the exceptional quality of our team and the collaborative partnerships we forge with our clients. Our mission is to thoroughly understand and fulfill the needs of both our...


  • Arlington, Virginia, United States Tau Six Full time

    Join a dynamic and innovative organization that specializes in advanced cybersecurity and systems integration solutions for the national security sector. We are looking for a proactive and skilled individual with a background in secure information systems to become part of our dedicated team of security experts and contribute to the protection of critical...


  • Arlington, Virginia, United States General Dynamics Information Technology Full time

    Position OverviewThe Security Compliance Evaluator III plays a crucial role in the evaluation of the management, operational, and technical security measures implemented within or acquired by an Information System (IS). This position is essential for assessing the overall efficacy of the security controls in place.Key ResponsibilitiesConduct thorough...


  • Arlington, Virginia, United States She Recruits, LLC Full time

    Job Title: Internal Controls Evaluator (Secret Clearance Required)Location: HybridCompensation: $45/hr - $65/hrWe are looking for a skilled Internal Controls Evaluator to join our dynamic team. This position focuses on assessing and enhancing internal control frameworks, particularly in the areas of Real Property and Property, Plant, and Equipment (PP&E)....


  • Arlington, Virginia, United States MAXIMUS Full time

    Job SummaryMaximus is seeking a highly skilled Security Control Specialist to join our team. As a Security Control Specialist, you will be responsible for conducting comprehensive assessments of security controls to ensure the effectiveness of our systems.Key ResponsibilitiesMonitor and evaluate system compliance with IT security, resilience, and...


  • Arlington, Virginia, United States Transportation Security Administration Full time

    About the RoleWe are seeking a highly skilled and dedicated Transportation Security Officer to join our team at the Transportation Security Administration. As a key member of our security team, you will play a critical role in ensuring the safety and security of air travelers, airports, and aircraft.Key ResponsibilitiesScreening and Security: Operate various...


  • Arlington, Virginia, United States Zermount, Inc Full time

    Job OverviewSenior Risk Evaluation SpecialistMilitary Friendly & Preferred - HOH SponsorZermount Inc. is in search of a Senior Risk Evaluation Specialist who will play a pivotal role in preparing for risk evaluations (RE), executing RE, crafting reports, and proposing strategies to minimize risk. This position involves assessing systems, technologies,...


  • Arlington, Virginia, United States MAXIMUS Full time

    **Job Summary**Maximus is seeking a highly skilled Security Control Assessor to join our team in a DoD program in Arlington, VA. As a key member of our team, you will be responsible for conducting comprehensive assessments of management, operational, and technical security controls to ensure the highest level of security and compliance.**Key...


  • Arlington, Virginia, United States Department of The Navy Full time

    Position OverviewThis role involves the continuous monitoring, assessment, and evaluation of programs and policies related to the Department of the Navy's (DON) Critical Infrastructure and Mission Assurance initiatives.Key Responsibilities- Ensure that the cyber resilience of control systems, particularly facility-related control systems, is integrated into...

  • Security Officer

    1 day ago


    Arlington, Virginia, United States Admiral Security Services Full time

    Job Summary:Admiral Security Services is a leading provider of security solutions, serving hundreds of locations nationally and providing coverage to millions of square feet of public and private facilities. We are seeking a highly skilled and professional Security Officer to join our team.About the Role:The selected candidate will perform various security...


  • Arlington, Virginia, United States Department of The Navy Full time

    Position Overview: The Department of the Navy is seeking a dedicated professional to monitor, assess, and evaluate programs and policies related to Critical Infrastructure and Mission Assurance.Key Responsibilities:Conduct thorough evaluations of control systems to ensure cyber resiliency is integrated into policy frameworks.Oversee utility and cyber...


  • Arlington, Virginia, United States Tau Six Full time

    About the RoleTau Six, a leading provider of cutting-edge cybersecurity and system integration services to the US National Security market, is seeking a highly skilled Cybersecurity Security Control Assessor to join our team.Key ResponsibilitiesConduct and document comprehensive assessments of management, operational, and technical security controls employed...


  • Arlington, Virginia, United States Department of The Navy Full time

    Position Overview:This role involves the continuous monitoring, assessment, and evaluation of programs and policies related to the Department of the Navy's (DON) Critical Infrastructure and Mission Assurance initiatives.Key Responsibilities:- Conduct thorough evaluations of control systems to ensure cyber resiliency is integrated into policy frameworks.-...


  • Arlington, Virginia, United States Department of The Navy Full time

    Position Overview: As a Program Analyst, you will be tasked with overseeing, assessing, and interpreting programs and policies related to the Department of the Navy's (DON) Critical Infrastructure and Mission Assurance initiatives.Key Responsibilities:Monitor and evaluate the effectiveness of policies and programs within the DON.Ensure that cyber resiliency...


  • Arlington, Virginia, United States Amazon Inc Full time

    About the RoleAt Amazon Inc., we prioritize security above all else. Our Security Assurance team is responsible for delving deep into industry requirements, maintaining regulatory and security standards, and establishing strategies to meet current and future security needs.Key ResponsibilitiesDevelop and maintain regulatory and security requirementsEstablish...