Security Control Assessor

3 days ago


Washington, United States Cedelis Full time
Job DescriptionJob Description

Location & Commitments: Reston, Tysons, Washington DC

Required Qualifications:

- Clearance & Certifications: Must currently possess an active TS/SCI with the ability to obtain and maintain a CI polygraph and possess current DOD 8570 IAT III certification

- Education: Bachelor's Degree in Computer Science or a related technical discipline plus 12 years' experience, or the equivalent combination of education, professional training and work experience

Role & Responsibilities:

At Cedelis, the Security Control Assessor supports the Assessment and Authorization (A&A) Risk Management Framework process for all client-managed systems, networks, and enclaves across various security domains. Responsibilities include ensuring the validity and accuracy of associated documentation, maintaining centralized A&A files and libraries, and providing support for remote sites as required. The Security Control Assessor is responsible for a wide range of responsibilities including:

Support to the Assessment and Authorization (A&A) Risk Management Framework process for all client managed systems, networks, and enclaves (all security domains); ensure validity and accuracy review of all associated documentation; support remote sites when required.

Assist in the centralization of A&A files/documentation and maintain files/library; ensure the validity and integrity of all systems

Create, update, and delete entries in databases utilized for the tracking of system and network compliance

Ensure that all IA systems are properly documented with Configuration Management processes maintain the security accreditation status of systems/sites including the review of current documentation, site architectures and coordination with sites to ensure the documentation is accurate with the current site architecture, IAW Policy and processes

Perform, participate and support all assessment and authorization (A&A) efforts for systems, networks, and applications (all security domains) IAW DoD and IC requirements

Provide coordination for assessment metric submissions

Provide direct support in the development of other A&A related systems bodies of evidence in accordance with current NIST, ICD, DIAD guidance, using the government provide A&A tool (i.e. XACTA)

Work in coordination with both internal and external systems administrators, configuration management, and network engineers to ensure proper configuration and adherence to security standards in regard to deployment actions

Serve as Security Controls Assessor by conducting formal Security Test and Evaluation and Security Certifications of (DoDIIS) systems, networks, and sites, assessing security control compliance, and providing technical guidance on security policies, remediation, and mitigation of identified vulnerabilities. Ensure that all documentation meets policy and regulatory requirements.

Development of all supporting test reports and supporting artifacts and plan and action of milestones (POA&Ms) documenting open findings, preparation of formal authorization packages and oversight of the resolution of POA&Ms and development and maintenance of assessment and authorization enterprise schedules and metrics

Provide support for management and maintenance of assessment and authorization repositories

Perform security assessments at remote sites with collateral (includes, but not limited to, NIPR/SIPR) and/or TS/SCI AIS under the client's purview

Company DescriptionCedelis is a technology support-based company specializing in cyber security, system
engineering and project management, providing real world answers to specific customer
requirements to help align with their ultimate business goals and objectives. We institute
learned and applied methodologies to help businesses attain their objectives and to help
initiate change within their organizations.
Cyber Security
Cedelis develops comprehensive cyber security plans and implementation strategies that
incorporate key lifecycle elements and defense-in-depth principles.
System Engineering
Systems engineering is a methodical, disciplined approach for the design, realization,
technical management, operations, and retirement of a system. Our Systems Engineering
approach is based on the systems development life cycle (SDLC) process model of
planning, creating, testing, and deploying an information system.
Project Management
We follow Project Management Institute (PMI) best practices, to include processes that are
guided through the five stages: initiation, planning, executing, controlling, and closing.Company DescriptionCedelis is a technology support-based company specializing in cyber security, system\r
engineering and project management, providing real world answers to specific customer\r
requirements to help align with their ultimate business goals and objectives. We institute\r
learned and applied methodologies to help businesses attain their objectives and to help\r
initiate change within their organizations.\r
Cyber Security\r
Cedelis develops comprehensive cyber security plans and implementation strategies that\r
incorporate key lifecycle elements and defense-in-depth principles.\r
System Engineering\r
Systems engineering is a methodical, disciplined approach for the design, realization,\r
technical management, operations, and retirement of a system. Our Systems Engineering\r
approach is based on the systems development life cycle (SDLC) process model of\r
planning, creating, testing, and deploying an information system.\r
Project Management\r
We follow Project Management Institute (PMI) best practices, to include processes that are\r
guided through the five stages: initiation, planning, executing, controlling, and closing.

  • Washington, United States TekSynap Full time

    Responsibilities & Qualifications RESPONSIBILITIES The Security Control Assessor is expected to be able to: * Establishes the basic structure of the system, defines essential core design features and elements that provide the framework. * Incorporates engineering strategies for introducing new technology into the customer's infrastructure related to its...


  • Washington, United States Allen Integrated Solutions Full time

    Job DescriptionJob DescriptionSecurity Control Assessor (SCA), Level 3TS/SCI/POLY RequiredSecurity Control Assessor (SCA) QualificationsA Security Control Assessor (SCA) is a security professional that provides information security Assessment and Authorization (A&A) support throughout a program's lifecycle to Contractor and Government facilities...


  • Washington, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:P-11 Security is seeking a SCA who is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly,...


  • Washington, United States System High Corporation Full time

    Description Position Overview System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intelligence activities. We are seeking a Security Control Assessor (SCA) II to help contribute to our success and help us solve problems with innovation through intelligence....


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:NoneExperience:5 + years of...


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:NoneExperience:5 + years of...


  • Washington, United States General Dynamics Information Technology Full time

    REQ#: RQ185883 Public Trust: None Requisition Type: Regular Your Impact Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of Defense's mission to keep our country safe and secure. Job Description The Security Control Assessor is responsible for conducting a comprehensive assessment of...


  • Washington, Washington, D.C., United States Avint Full time

    Job DescriptionAvint LLC is seeking an experienced ISSO Security Control Assessor Support to join our team in Washington, DC and Tysons Corner, VA. As a Top Secret ISSO Security Control Assessor Support, you will conduct comprehensive assessments of management, operational, and technical security/privacy controls to determine their effectiveness.*An active...

  • SCA II

    20 hours ago


    Washington, United States Watermark Risk Management International Full time

    Job DescriptionJob DescriptionCome make your mark with Watermark!🎖️ FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business.🌎 SUBJECT MATTER EXPERTS specializing in security and risk management. We’re intimately familiar with DOD security programs and mission requirements.⭐ OUR CORE VALUES drive every...


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition: RegularClearance Level Must Currently Possess: Top Secret/SCIClearance Level Must Be Able to Obtain: Top Secret SCI + PolygraphPublic Trust/Other Required: NoneJob Family: Information SecurityJob Qualifications: Skills: Information Security, Information Security Management, Information System SecurityCertifications: NoneExperience: 5 +...

  • SCA II

    4 days ago


    washington dc, United States Watermark Risk Management International, LLC Full time

    Come make your mark with Watermark! 🎖️ FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. 🌎 SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requirements. ⭐ OUR CORE VALUES drive every action we take as a company....


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:NoneExperience:5 + years of...


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:NoneExperience:5 + years of...


  • Washington DC, United States General Dynamics Information Technology Full time

    Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required: None Job Family: Information Security Job Qualifications: Skills: Information Security, Information Security Management, Information System Security Certifications: ...


  • Washington, United States Targeted Solutions, LLC Full time

    Job DescriptionJob DescriptionSalary: Up to $76.63 HourlySecurity Control Assessor (SCA) II The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technicalsecurity controls employed within or inherited by an IS to determine the overall effectiveness of thecontrols (i.e., the extent to which the controls are...


  • Washington, United States Ampcus inc Full time

    Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.Job Title: Cybersecurity AssessorLocation(s): Washington, DCJob Description: Plan and Execute Simulated Attacks: Design, plan, and conduct red team exercises, including but not...


  • Washington, Washington, D.C., United States Avint Full time

    Job SummaryWe are seeking an experienced ISSO Security Control Assessor Support to join our team in Washington, DC and Tysons Corner, VA. In this role, you will be responsible for conducting comprehensive assessments of security controls and control enhancements within information technology systems to determine their effectiveness.Key...


  • Washington, United States PLANET TECHNOLOGIES Full time

    Planet Technologies, the Nation's leading Microsoft services provider to the public sector, is looking for a highly motivated individual to join our growing team as an Information Systems Security Officer . In this role, you will be supporting impactful projects that make a difference for our country. Responsibilities * Draft, review, and update risk...


  • Washington, United States JGMS Government Services, LLC Full time

    Job DescriptionJob DescriptionFacility Condition Assessor - Washington D.C. area.Please continue to the JGMS Career page to apply for this position: https://tinyurl.com/FCADCScope: We are searching for an experienced Facility Condition Assessor to join our team! As a Facilities Assessor you will perform inspections on large, complex, and diverse...


  • Washington, United States Control Risks Full time

    Job DescriptionWe are looking for a highly experienced Senior Security Manager to join our team at Control Risks. As a Senior Security Manager, you will be responsible for developing and implementing a comprehensive security plan for an onsite construction project in the Washington, D.C. area. This includes conducting a security audit to identify areas for...