Security Control Assessor

CACI InternationalAlexandria, VA
1d

About The Position

Exciting Career Opportunity: Join Our Dynamic Team as a Security Control Assessor and Validator! Unlock Your Potential with Us! Are you passionate about cybersecurity and eager to make a real impact? We have an incredible opportunity for a skilled and detail-oriented Security Control Assessor and Validator to join our innovative team. This role is perfect for someone who thrives in a challenging environment and is committed to ensuring the highest standards of security for our organization's information systems and networks. Why You’ll Love This Role: As a Security Control Assessor and Validator, you will play a crucial role in safeguarding our systems by evaluating, testing, and validating the effectiveness of security controls. You’ll be at the forefront of applying the Risk Management Framework (RMF) and working closely with the United States Coast Guard (USCG) to support their security authorization processes.

Requirements

  • Experience: 5+ years of relevant experience.
  • Clearance: US Citizenship required with DOD Secret or higher clearance.
  • Education: BA/BS or equivalent years of relevant experience.
  • Certifications: DoD 8570 IAT II certification (e.g., CCNA Security, CySA+, GICSP, GSEC, Security + CE, CND, or SSCP).
  • NIST RMF: Intimate understanding of NIST RMF implementation guidance.
  • Tools Experience: Hands-on experience with eMASS or similar Information Assurance tools.
  • Analysis: Experience analyzing vulnerability scans and STIG implementations.
  • Knowledge: Familiarity with DoD 8500, DoD 8510, DHS 4300 A and B, NIST SP 800 series, and other relevant frameworks and tools.

Nice To Haves

  • SDLC & SELC: Well-developed understanding of Systems Development Lifecycle (SDLC) and the DHS Systems Engineering Lifecycle (SELC) process as it relates to Security Assessment and Authorization (SA&A).
  • Documentation: Relevant DOD, DHS or .gov Cyber Security Information Assurance focused experience with hands-on experience in researching, writing, and submitting complete documentation packages for new system authorizations.

Responsibilities

  • Tailored Documentation: Provide customized documentation to support the USCG’s security authorization.
  • RMF Expert: Serve as an independent assessor for RMF Steps 0 to 7.
  • Assessment Planning: Plan and execute comprehensive security control assessments for various information systems.
  • Methodology Development: Create and maintain assessment procedures and methodologies in line with NIST guidelines and other relevant frameworks.
  • Vulnerability Analysis: Identify and evaluate vulnerabilities, weaknesses, and potential risks in our information systems and infrastructure.
  • Reporting: Prepare detailed Security Assessment Reports (SARs) with findings and recommendations.
  • Collaboration: Work closely with system owners, ISSOs, and other stakeholders throughout the assessment process.
  • Remediation Verification: Verify the implementation of remediation actions and conduct follow-up assessments.
  • Advisory Role: Offer expert advice on developing and maintaining System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms).
  • Continuous Learning: Stay ahead of the curve by keeping up-to-date with the latest cybersecurity threats, technologies, and best practices.
  • Validation: Validate security control implementation and provide thorough test results.
  • Continuous Monitoring: Hands-on experience in assessing RMF Step 4 and performing continuous monitoring.
  • Intent Evaluation: Examine security control weaknesses to ensure they align with desired outcomes.
  • Vulnerability Management: Deep understanding of Vulnerability Management practices.

Benefits

  • Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service