Cybersecurity Controls Assessor

Rolls-RoyceIndianapolis, IN
19hHybrid

About The Position

We are seeking a Cyber Controls Assessor to plan and execute security control assessments aligned with CMMC and/or NIST SP 800-53. This role evaluates the design and operating effectiveness of security controls, validates evidence, documents results, and partners with technical and business stakeholders to reduce risk and strengthen compliance—especially in environments supporting U.S. DoD and federal requirements. Experience in the aerospace industry or working with DoD / U.S. federal government programs is a strong plus. Why Rolls-Royce? Rolls-Royce is one of the most enduring and iconic brands in the world and has been at the forefront of innovation for over a century. We design, build and service systems that provide critical power to customers where safety and reliability are paramount. We are proud to be a force for progress, powering, protecting and connecting people everywhere. We want to ensure that the excellence and ingenuity that has shaped our history continues into our future and we need people like you to come and join us on this journey. Rolls-Royce has been recognized as the top employer in the Engineering & Manufacturing category on the prestigious Forbes Top Employers for Engineers list for 2025. This ranking highlights our commitment to innovation, employee development, and fostering a collaborative environment where engineers can thrive. Be part of a team that sets the industry standard and drives groundbreaking solutions. At Rolls-Royce, we are committed to creating a workplace where all employees feel respected, supported, and empowered to do their best work. We foster a welcoming and innovative work environment that invests in you, giving you access to an incredible breadth and depth of opportunities where you can grow your career and make a difference. Rolls-Royce is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any protected characteristics.

Requirements

  • Associate’s degree in Information Technology, Cybersecurity, Information Systems or and 7+ years of relevant IT experience, OR
  • Bachelor’s degree in Information Technology, Cybersecurity, Information Systems and 5+ years of relevant IT experience, OR
  • Master’s degree in Information Technology, Cybersecurity, Information Systems, and 3+ years of relevant IT experience, OR
  • PhD and no years of experience, OR
  • 9+ years of experience in lieu of degree

Nice To Haves

  • Experience working on NIST RMF or controls assessment
  • Experience as a SOC Security Analyst and familiarity with industry leading security products such as SIEMs and networking mapping, vulnerability scanning and packet capture and data analytics tools
  • Experience of network anomaly detection using traffic analysis or network intruder detection systems
  • A basic understanding of the cyber kill chain in relation to Advanced Persistent Threats (APTs)
  • Experience and knowledge of threat actor tactics, techniques and procedures, vulnerabilities, attacks and countermeasures.
  • Experience of presenting on cyber security issues

Responsibilities

  • Conduct security control assessments against CMMC and/or NIST SP 800-53 (and related standards as applicable).
  • Plan assessment activities: scope, methodology, schedules, evidence requests, interviews, and sampling.
  • Evaluate control implementation and effectiveness through documentation review, technical validation, and stakeholder walkthroughs.
  • Collect, validate, and organize assessment evidence; maintain clear traceability from requirements to test results.
  • Produce assessment deliverables such as control test plans, assessment reports, findings/risk statements, POA&Ms, and executive summaries.
  • Identify control gaps and provide practical remediation recommendations aligned to risk and operational constraints.
  • Partner with engineering, IT, security, and program teams to validate remediation and perform follow-up testing.
  • Support governance activities including policy/standard updates, risk register inputs, and continuous monitoring improvements.
  • Contribute to audit readiness and compliance support for federal/DoD-aligned environments (e.g., SSP/assessment artifacts as relevant).
  • Maintain professional documentation standards and ensure consistent assessment quality across programs.

Benefits

  • We offer excellent development opportunities, a competitive salary, and exceptional benefits.
  • These include bonus, employee support assistance and employee discounts.
  • Rolls-Royce provides a comprehensive and competitive Total Rewards package that includes base pay and a discretionary bonus plan.
  • Eligible employees may have the opportunity to enroll in other benefits, including health, dental, vision, disability, life and accidental death & dismemberment insurance; a flexible spending account; a health savings account; a 401(k) retirement savings plan with a company match; Employee Assistance Program; Paid Time Off; certain paid holidays; paid parental and family care leave; tuition reimbursement; and a long-term incentive plan.
  • Relocation assistance is available for this position.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service