Security Control Assessor 3 jobs in United States
info-icon
This job has closed.
company-logo

Everest Consultants, Inc. · 19 hours ago

Security Control Assessor 3

Everest Consultants, Inc. is seeking a Security Control Assessor 3 to apply and understand principles and policies that enable compliance with information and cyber security laws and standards. The role involves assessing security controls, conducting audits, and recommending improvements to enhance security measures for information systems.

ConsultingInformation TechnologyStaffing Agency
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Perform risk analyses so that appropriate countermeasures can be developed
Conduct security audits to identify potential vulnerabilities related to physical security, staff safety or asset protection
Assess operational, assurance and technical security controls implemented on an information system via security testing and evaluation (ST&E) methods
Understand and assess policies and procedures implemented to protect all categories of information and to verify compliance with applicable laws, regulations and/or departmental requirements
Recommend improvements in security systems or procedures
Plan, implement, upgrade or monitor security measures for the protection of computer networks and information
Maintain, monitor, control and protect IT infrastructure and the information residing on such infrastructure
Perform a wide variety of data collection, analysis, reporting and briefing activities associated with security operations and maintenance to verify that security policies are implemented and maintained on information systems
Develop plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs
Review violations of security procedures and discuss procedures with violators to verify that violations are not repeated
Monitor current reports of computer viruses to determine when to update virus protection systems
Perform risk assessments and execute system tests to verify that adequate security measures are in place
Asses the effectiveness of the risk management program to include mitigation strategies
Modify computer security files to incorporate new software, correct errors, or change individual access status
Plan implement, upgrade or monitor security measures for the protection of computer networks and information
Train users and promote security awareness on system security
Provide security incident handling, response, follow-up as well as documentation
Respond to computer security breaches and viruses
Develop documentation of testing and evaluation activity in order to arrive at logical and comprehensive conclusions and recommendations
Review violations of computer security and emergency measures, policies, procedures and tests
Document computer security and emergency measures policies, procedures and tests
Confer with users to discuss issues such as computer data access needs, security violations and programming changes
Monitor use of data files and regulate access to safeguard information in computer files
Coordinate implementation of computer system plans with management and outside vendors
Recommend improvements in security systems or procedures
Provide system design and integration recommendations
Assess the nature and level of threats so that the scope of the problem can be determined
Respond to emergency situations on an on-call basis
Recommend the value-loss impact and criticality of assets
Encrypt data transmissions and erect firewalls to conceal confidential information as it is being transmitted and to keep out tainted digital transfers
Provide project management technical expertise for assigned projects

Qualification

Cyber security principlesSecurity Assessment processesIT security principlesNetwork security architectureInformation Assurance experienceTechnical writingRS ArcherConsensus buildingCommunication skills

Required

Bachelor's degree in computer science, information technology, cyber security, or a related technical field is highly preferred
6 years of experience is required with an applicable bachelor's degree
8 years of experience is required with an applicable associate's degree
10 years of experience is required without a degree or an applicable degree
Experience must include direct work experience conducting assessments of compliance and operational and technical security controls employed within or inherited by an Information System to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system)
Knowledge of cyber security and privacy principles and organizational requirements relevant to FISMA and information system confidentiality, availability, and integrity
Knowledge of Security Assessment and Authority to Operate (ATO) processes
Demonstrated skill in the application of cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
Extensive Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption)
Advanced Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth)
Demonstrated skill in developing and documenting information system designs
Demonstrated technical writing and communication skills
Demonstrated ability to build consensus across a wide group of stakeholders

Preferred

Experience in the Information Assurance (IA) of information systems in the federal government
Experience with RS Archer

Benefits

Medical, dental, & vision insurance
Short-term disability
Life and AD&D insurance
A 401(k)-retirement plan
A referral bonus program
Paid sick/vacation/holidays
A health and welfare fringe benefit

Company

Everest Consultants, Inc.

twittertwittertwitter
company-logo
Everest Consultants, Inc.

H1B Sponsorship

Everest Consultants, Inc. has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1)
2024 (1)
2020 (1)

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Sriram Edupuganti
CEO
linkedin
Company data provided by crunchbase