Security Control Assessor jobs in United States
cer-icon
Apply on Employer Site
company-logo

Global Engineering & Technology, Inc. (GET) · 2 hours ago

Security Control Assessor

Global Engineering and Technology, Inc. (GET) is seeking qualified applicants for the Security Control Assessor (SCA) position in support of the cybersecurity program at a U.S. Department of Energy national security facility. The SCA will conduct independent assessments of security controls within IT systems to determine their effectiveness, ensuring compliance with established security standards.

AnalyticsInformation TechnologyMarket Research
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote
Hiring Manager
Al Gonzalez
linkedin

Responsibilities

Conduct independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system
Determine the overall effectiveness of the controls as defined in NIST SP 800-37
Implement and maintain security controls aligned with approved baselines and organizational requirements
Support system authorization activities, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms)
Monitor system security posture and identify risks, vulnerabilities, and compliance gaps
Track and manage POA&Ms and coordinate remediation activities with system stakeholders
Assess the security impact of system changes and support configuration and change management processes
Support continuous monitoring activities, including vulnerability management and security reporting
Serve as a security liaison between system teams, cybersecurity operations, and governance bodies
Prepare systems for security assessments, audits, and Authorizing Official reviews

Qualification

NIST SP 800-37NIST SP 800-53Security documentationSecurity controls implementationOperational Technology experienceCommunication skillsTeam collaboration

Required

This position requires a current DoD Top Secret or DOE Q security clearance
The candidate must demonstrate a firm understanding of NIST SP 800-37 and NIST SP 800-53
Must have demonstrated experience in implementing and maintaining security controls aligned with approved baselines and organizational requirements
Supporting system authorization activities, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms)
Monitoring system security posture and identifying risks, vulnerabilities, and compliance gaps
Tracking and managing POA&Ms and coordinating remediation activities with system stakeholders
Assessing the security impact of system changes and supporting configuration and change management processes
Supporting continuous monitoring activities, including vulnerability management and security reporting
Serving as a security liaison between system teams, cybersecurity operations, and governance bodies
Preparing systems for security assessments, audits, and Authorizing Official reviews
This position requires a minimum of 5 years of experience as SCA and/or ISSO
Although this position generally requires a bachelor's degree in a related field, technical field experience will be weighted greater than minimum education

Preferred

Although not a requirement, Operational Technology/Industrial Control System experience is highly sought after

Benefits

Medical plan options with UnitedHealthcare
Dental Insurance
Long-term and Short-term Disability Insurance
Life Insurance
AD&D Insurance
Generous 401(k) match

Company

Global Engineering & Technology, Inc. (GET)

twittertwitter
company-logo
Visit our Careers page for a listing of the extraordinary opportunities with GET: https://www.getinc.org/careers.htm Global Engineering & Technology (GET) executes a wide scope of classified support functions in areas such as nuclear information classification and declassification analysis, nuclear safety basis analysis and engineering, cybersecurity analysis and engineering, and management support services for the federal government.

Funding

Current Stage
Growth Stage
Company data provided by crunchbase