About The Position

Peraton is seeking an Information Systems Security Engineer – Security Control Assessors (SCA) to support its Federal Strategic Cyber programs. In this role, you will assess security controls for accuracy and evidence, review system documentation, and accept/reject documents. Emphasis is placed on coordination with the System Owner, ISSE, and ISSO to fix items that need rework, and on continuously monitoring systems across the ISSM portfolio to focus on quality throughout the SAA lifecycle. You will oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are clearly defined and maintained. You will guide system categorization efforts to ensure all information systems are appropriately classified based on mission/business impact and regulatory requirements. You will advise on the selection, tailoring, and documentation of security controls aligned with system categorizations, risk appetite, and compliance requirements. You will oversee the implementation of technical, operational, and management controls throughout system and application lifecycles, with a particular focus on quality and completeness of all deliverables. You will ensure comprehensive security control assessments are planned, executed, and documented to validate the effectiveness of implemented safeguards. You will prepare risk management documentation for system authorization and executive decision-making. You will direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and ensure sustained compliance. You will serve as a principal technical advisor on cybersecurity, bringing subject-matter expertise to risk analysis, incident response, system remediation, and audit support efforts. You will foster a culture of security awareness, providing technical guidance and training to both team members and stakeholders. You will track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders. You will maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices in support of continuous process improvement.

Requirements

  • Bachelor’s degree and 8 years of experience in secure design, analysis, and test of information security systems and products.
  • Must meet DoD 8140.03 Advanced proficiency aligned to Security Control Assessor (Work Role 612).
  • Must have a CISSP or CEH and 1 of the following certifications: CCNP Enterprise, CISM, CISSP-ISSAP, CISSP-ISSEP, GCIA, GDSA, GICSP OR Advanced degree from the list below: Doctorate - Computer Science Doctorate – Cybersecurity Doctorate - Data Science Doctorate - Information Systems Doctorate - Information Technology Doctorate - Software Engineering Master of Science - Strategic Information and Cyberspace Studies (NDU CIC) Masters - Computer Science Masters – Cybersecurity Masters - Data Science Masters - Information Systems Masters - Information Technology Masters - Software Engineering
  • Active TS/SCI security clearance is required with the ability to obtain a polygraph.

Nice To Haves

  • Cloud certification

Responsibilities

  • Assess security controls for accuracy and evidence
  • Review system documentation and accept / reject documents
  • Emphasis on coordination with System Owner, ISSE, and ISSO to fix items that need rework
  • Emphasis on continuously monitoring systems across ISSM portfolio to focus on quality throughout SAA lifecycle
  • Oversee and coordinate activities within the Prepare step, ensuring roles, responsibilities, and risk management strategies are clearly defined and maintained.
  • Guide system categorization efforts to ensure all information systems are appropriately classified based on mission/business impact and regulatory requirements.
  • Advise on the selection, tailoring, and documentation of security controls aligned with system categorizations, risk appetite, and compliance requirements.
  • Oversee the implementation of technical, operational, and management controls throughout system and application lifecycles, with a particular focus on quality and completeness of all deliverables.
  • Ensure comprehensive security control assessments are planned, executed, and documented to validate the effectiveness of implemented safeguards.
  • Prepare risk management documentation for system authorization and executive decision-making.
  • Direct ongoing monitoring and continuous assessment activities, collecting metrics to adjust security strategies and ensure sustained compliance.
  • Serve as a principal technical advisor on cybersecurity, bringing subject-matter expertise to risk analysis, incident response, system remediation, and audit support efforts.
  • Foster a culture of security awareness, providing technical guidance and training to both team members and stakeholders.
  • Track, report, and communicate status, risks, and improvement opportunities related to security engineering activities to leadership and stakeholders.
  • Maintain up-to-date knowledge of RMF, NIST guidance, and industry best practices in support of continuous process improvement.

Benefits

  • overtime
  • shift differential
  • discretionary bonus
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service