Independent Software, Inc. · 4 months ago
Security Control Assessor, Level 3 (FORECASTED)
Independent Software, Inc. is focused on ensuring strong security controls for mission success. As a Security Control Assessor, Level 3, you will conduct verification and validation activities to assess the cybersecurity posture of information systems, working closely with security engineers and stakeholders to ensure compliance with rigorous standards.
AnalyticsCloud ComputingCyber SecurityInformation TechnologyMachine LearningSecuritySoftware
Responsibilities
Conduct verification and validation for the security compliance of low and moderately complex information systems, products, and components
Analyze system design specifications, documentation, configuration, and operational procedures
Identify areas of non-compliance and recommend mitigation strategies for unfulfilled security requirements
Validate that systems meet defined security requirements and support the security authorization process
Conduct on-site security control evaluations and assessments
Coordinate and support vulnerability assessments and penetration testing activities
Deliver certification reports detailing findings, analysis, and recommendations
Provide input on process improvements and help draft standards or guidelines for security control implementation
Facilitate penetration testing
Provide a comprehensive verification and validation report (certification report) for the information system
Qualification
Required
Proficiency in analyzing technical documentation, security configurations, and operational security procedures
Experience validating system compliance with security requirements
Ability to assess and recommend mitigations for non-compliant security controls
Strong understanding of cybersecurity principles including access control, PKI, authentication, and enterprise network architecture
Familiarity with vulnerability assessment techniques and tools
Effective communicator capable of delivering reports and collaborating across teams
Minimum of twelve (12) years of experience in cybersecurity, systems engineering, or system assessment, with at least three (3) years of recent experience in the following areas: Cybersecurity principles and technology, Access control and authentication systems, PKI and encryption methods, Network and enterprise security architecture
A Master's degree in Computer Science, Information Technology Engineering, or a related field may substitute for two (2) years of experience, reducing the requirement to ten (10) years total experience
In lieu of a Bachelor's degree, an additional four (4) years of security or systems engineering experience may be substituted
Must meet applicable DoD 8570.01-M certification requirements
IAM Level II certification required
Must possess an active TS/SCI with appropriate Polygraph to be considered for this role
Company
Independent Software, Inc.
Independent Software supports our customers by providing next-generation cyber services, intelligence and all-source analytics, machine learning, and mission application development.