Security Control Assessor (SCA)

ChenegaArlington, TX
359d

About The Position

Chenega Military, Intelligence & Operations Support (MIOS) is seeking a talented Security Control Assessor (SCA) to enhance skills and build a career in a rapidly evolving business climate. The SCA will support large-scale government operations by leveraging cutting-edge technology. The role involves advising Information System Owners on security assessments, evaluating documentation, and developing continuous monitoring strategies to ensure compliance with security standards.

Requirements

  • Bachelor's degree required OR an associate's degree with 2+ years of relevant experience OR High school diploma or GED equivalent with 4+ years relevant experience.
  • 5+ years relevant experience.
  • DOD 8140 IAM Level II (CAP, CASP, CISM, CISSP, GSLC, CCISO) required.
  • Top Secret clearance with SCI eligibility is required.

Nice To Haves

  • Strong knowledge of Risk Management Framework (RMF) 800-37 and continuous monitoring 800-137.
  • Expert knowledge and hands-on experience with FISMA Systems, NIST 800-series guidelines, FIPS, Security Assessment & Authorization (SA&A) requirements and processes.
  • Experience in assessing cloud-based security authorizations (FedRamp, AWS & Azure).
  • Strong knowledge of CSAM.
  • Expert with documenting and or reviewing security materials such as; system security plans (SSP), Security Assessment Report (SAR), Security Assessment Plan (SAP), and other documents per NIST 800 guidelines.

Responsibilities

  • Advise the Information System Owner (ISO) concerning the impact levels for Confidentiality, Integrity, and Availability for the information on systems.
  • Ensure security assessments are completed for each IS.
  • Initiate a POA&M with identified weaknesses and suspense dates for each IS based on findings and recommendations from the SAR.
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the CISO and AO.
  • Assess proposed changes to Information Systems, their environment of operation, and mission needs that could affect system authorization.
  • Serve as a cybersecurity technical advisor to the CISO and AO under their purview.
  • Be integral to the development of the monitoring strategy.
  • Determine and document in the SAR a risk level for every noncompliant security control in the system baseline.
  • Determine and document in the SAR an aggregate level of risk to the system and identify the key drivers for the assessment.
  • Develop a continuous monitoring plan specific to the information system.
  • Other duties as assigned.

Benefits

  • Professional development opportunities.
  • Well-being programs.
  • Flexible work environment.
  • Supportive corporate culture.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Career Level

Mid Level

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service