Chenega Corporation · 7 hours ago
Security Control Assessor (SCA)
Chenega Corporation is a company that provides federal agencies with empowered solutions in Cybersecurity and Data Visualization. The Security Control Assessor (SCA) plays a critical role in evaluating and validating the implementation of security controls for information systems, serving as a key liaison between system owners and security stakeholders.
Information Technology
Responsibilities
Act as the primary security liaison for IT and mission teams seeking to initiate, modify, or approve systems and activities with security implications
Guide customer requests through the A&A and RMF processes, ensuring compliance with all applicable policies and frameworks (e.g., CNSSI, NIST SP 800-53)
Interpret and communicate security policies, SOPs, and agency processes to facilitate alignment and reduce approval delays
Assist in obtaining AFT approvals, submitting exceptions or deviations, and resolving one-off security requests
Work with ISSMs, AOs, and engineering teams to explain risk mitigation strategies, support risk acceptance discussions, and balance mission value with risk profiles
Provide day-to-day support for security-related activities and initiatives that require deeper analysis or coordination
Review technical requests and assess their security implications; help package materials for review boards or approval bodies
Track status of open requests, RMF packages, and associated documentation
Help mature internal processes to streamline recurring or high-friction security tasks
Other duties as assigned
Qualification
Required
Bachelor's degree in a related field OR
Associates degree with an additional 2+ years of relevant IT experience OR
High school diploma or GED equivalent with an additional 4+ years of directly related IT experience in lieu of a degree
5+ years of experience in cybersecurity compliance, RMF support, or system accreditation
Must hold a current DoD 8140 (or 8570) baseline certification at the IAM Level II or higher (e.g., CAP, CISSP)
U.S. Citizen with active TS/SCI clearance
Working knowledge of the RMF process, NIST SP 800-53 controls, and agency-specific A&A policies
Experience interacting with security stakeholders, such as ISSMs, AOs, or security governance teams
Ability to communicate security requirements clearly to technical and non-technical personnel
Familiarity with submitting or managing AFTs, POA&Ms, security exception requests, and waiver packages
Understanding of cybersecurity risk evaluation and mitigation principles
Strong documentation and coordination skills; comfortable managing multiple ongoing efforts simultaneously
Professional demeanor with a customer service-oriented mindset and attention to detail
Benefits
Professional development plan
Well-being programs
Flexibility to make daily choices that can help them be healthy, centered, confident, and aware
Company
Chenega Corporation
As the most successful Alaska Native village corporation, Chenega figures prominently in the diverse government services contracting marketplace supporting defense, intelligence, and federal civilian customers.