Security Assessment Lead
OCH Technologies LLC
Security Assessment Lead
OCH Technologies is seeking a Security Assessment Lead to act as the technical authority for all independent risk assessments, vulnerability assessments, and analyses of alternatives conducted under this contract. The candidate will lead assessment planning, assign and mentor assessment teams, ensures assessment execution follows NIST 800-53A methodology, and is accountable for the quality and completeness of all System Security Assessment Reports (SARs) delivered.
This position supports a proposal effort and is contingent upon award, customer approval, and successful onboarding requirements.
Location: Hybrid – FAA Hubs Air Traffic Control System Command Center (ATCSCC) Washington, DC OR Mike Monroney Aeronautical Center (MMAC) Oklahoma City, OK.
This position may require up to 50% travel to FAA facilities.
Core Responsibilities & Duties:
- Serve as primary technical POC for all security assessments, vulnerability assessments, and analyses of alternatives under the contract.
- Lead assessment planning and coordination at FAA facilities nationwide, including developing System Security Assessment Test Plans and managing pre- and post-assessment activities.
- Personally lead complex or high-visibility assessment events.
- Ensure all assessments use the three NIST 800-53A methods (Examine, Interview, Test) and produce compliant SARs.
- Develop and maintain vulnerability scanning strategies including Tactics, Techniques, and Procedures (TTPs).
- Evaluate and recommend scanning tools and configurations for NAS and Mission Support environments.
- Conduct risk translation from assessment findings and develop draft Plans of Action and Milestones (POAMs) with actionable remediation guidance.
- Lead regression assessment activities to validate that patches, fixes, and configuration changes mitigate previously identified vulnerabilities.
- Attend all Program Management Reviews and report on assessment status, deliverable timelines, and technical issues.
- Mentor and develop junior assessment staff.
- Build a team culture where analysts take ownership of their assigned systems and drive assessments to completion independently.
- Coordinate with NAS system owners, FAA facility staff, AIT/AIS, and ACG to schedule assessments and resolve access and logistical issues.
- Ensure assessment work in NAS operational environments follows safety protocols. Test methods for NAS systems may need to be conducted in lab environments due to air traffic safety constraints.
Responsibilities may evolve over time to support team and organizational goals but will remain consistent with the overall scope of the role.
Requirements:
Minimum Qualifications:
Education: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution. Master's degree in a related field preferred.
Experience:
- At least fifteen (15)+ years of cybersecurity experience.
- Minimum of five (5) years of management and supervisory responsibility leading risk and vulnerability assessment teams.
- At least two (2) years of relevant experience performed within the last 3 years.
- Demonstrated track record of successful completion of multiple independent risk assessments and vulnerability assessments on complex, multi-system environments.
- Deep working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-53A, NIST SP 800-37 (RMF), and FIPS-199 security categorization.
- Hands-on experience with vulnerability assessment tools including Nessus, WebInspect, AppDetective Pro, nMap, and Tcpdump.
- Experience developing System Security Assessment Reports (SARs), Plans of Action and Milestones (POAMs), and assessment test plans.
- Experience working in Operational Technology (OT), Industrial Control Systems (ICS), or other safety-critical infrastructure environments.
Security Clearance Requirement:
Candidate must have the ability to obtain and maintain a Public Trust. Active Secret level clearance preferred.
Certifications:
Current cybersecurity certification aligned with security assessment and risk management disciplines, including CISSP, GCED, CompTIA CASP+, CISA, or an equivalent. CAP (Certified Authorization Professional) or equivalent RMF certification preferred.
Preferred Qualifications:
- Prior experience assessing National Airspace System (NAS) systems or other FAA Air Traffic Organization (ATO) systems.
- Familiarity with FAA Order 1370.82, FAA Order 1370.121, and the ATO ISCM Plan.
- Experience supporting FAA Assessment & Authorization (A&A) processes.
- Experience conducting assessments of cloud-based services and web-facing applications in federal environments.
- Experience supporting international assessments or telecommunications infrastructure assessments.
Other Required Skills and Abilities:
- Strong written and verbal communication skills with the ability to produce clear, defensible, and actionable technical documentation.
- Proven leadership and team development capabilities.
- Ability to manage multiple assessment efforts simultaneously while maintaining quality standards.
- Strong analytical and problem-solving skills.
- Ability to work effectively with government stakeholders, technical teams, and senior leadership.
About Us:
At OCH, we are more than just a government contracting firm; we are innovators and leaders in providing cutting-edge IT services and cybersecurity solutions. Driven by a set of fundamental values, we excel in creating secure, efficient, and forward-thinking solutions that empower the government agencies we work with. Our commitment to maintaining the highest standards of integrity, adapting swiftly to new challenges, and focusing on the people we serve ensures that we consistently exceed expectations and lead the industry in innovation and reliability.
What Defines Us:
- Integrity - We act with unwavering honesty, ensuring every decision is rooted ethically.
- Adaptable - We swiftly adapt to changes, seizing opportunities to innovate and lead.
- People-Focused - We prioritize relationships, championing growth and mutual success.
- Accountable - We own our outcomes, striving for excellence through continuous improvement.
- Collaborative - We cultivate teamwork, harnessing diverse talents to forge groundbreaking solutions.
Why Join Us?
Step into a role at OCH where your contributions make a tangible impact. Join a team that values creativity and initiative, offering a platform to transform the landscape of government IT services. Here, your work is not just a career—it's a mission. Embrace the opportunity to grow, innovate, and excel alongside industry leaders who are as passionate about technology as they are about making a difference. Plus, we offer a comprehensive benefits package designed to support your wellbeing and work-life balance, including:
- Paid time off and Holidays
- Medical, Dental, and Vision Insurance
- Paid Parental Leave
- Short-term disability, long-term disability, and life insurance - Employer Paid!
- 401(k)
- Additional Voluntary Life Insurance
- Tuition Reimbursement
& More!
E-Verify Participation: OCH Technologies, LLC is a participant of E-Verify to verify the identity and employment eligibility of newly hired employees.
Veteran's Preference and Accessibility Statement: At OCH Technologies, we deeply respect and appreciate the unique skills and experiences that veterans bring to our team. As a federal contractor, we encourage qualified veterans to apply and provide preference where permitted by law. Your service and dedication are valued here.
We are committed to creating a workplace that is open, welcoming, and accessible to everyone. In accordance with the Americans with Disabilities Act (ADA) and Section 503 of the Rehabilitation Act, we provide reasonable accommodations throughout the hiring process to ensure individuals with disabilities can apply without barriers. If you need assistance or an accommodation, please contact us at View email address on click.appcast.io.
OCH Technologies, LLC is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, disability, gender identity, or any other protected characteristic as outlined by federal, state, or local laws.
- ...Koniag IT Systems, LLC, a Koniag Government Services company , is seeking a Security Assessment Lead to support KITS and our government customer in Washington, DC. This position is for a Future New Business Opportunity. The customer may need support as needed at...SuggestedLocal areaFlexible hours
- ...growing government contractor providing leading-edge support to federal customers, with... ...particular focus on Defense and National Security mission sets. We leverage more than 17 years... ...Barbaricum is seeking an experienced Assessment Lead Subject Matter Expert to lead...SuggestedContract workFor contractorsWork at office
- ...contractor that provides services and solutions in: National Security Programs Professional, Administrative, and Management... ...Time Position Status: Contingent Position Title: Security Assessment Lead Location:Washington, DC Clearance: Secret Duties...SuggestedFull timeFor contractors
- Paragon Technology Group, Inc. seeks an experienced Assessment Lead to plan, coordinate, and deliver Security Control Assessments under the ISCA effort for the State Department's Enterprise Applications cybersecurity program. The role provides technical leadership, develops...Suggested
- Paragon Technology Group in Washington, DC seeks an experienced Assessment Lead to manage Security Control Assessments under the RMF and ISCA program for the Department of State. You will provide technical leadership, plan assessments, and ensure evidence-based determinations...Suggested
$155k - $165k
...approval) Connected Logistics is seeking highly skilled and versatile Assessment Lead, to assist in providing the Department of State Directorate of Technology (DT), Enterprise Architecture (EA), Cyber Security Team (CST) comprehensive cybersecurity support services to...Contract workFor contractorsRemote work- Athena Technology Group seeks an Assessment Lead to oversee SME and technical personnel delivering IT assistance to Government clients. You... ...planning, coordination, execution, quality, and delivery of Security Control Assessment activities in line with NIST/FOIA requirements...Contract work
- Connected Logistics is seeking a seasoned Assessment Lead to drive Security Control Assessments within the RMF framework for DoS-related information systems. You will lead planning, execution, and delivery of assessments, ensuring evidence-based determinations of control...Remote job
- Connected Logistics seeks an Assessment Lead to drive Security Control Assessments under RMF for DoS systems. You will provide technical leadership, develop assessment plans, and ensure evidence-based determinations of control effectiveness, aligned with NIST and FISMA...Remote jobFor contractors
- ...technical solutions to complex national security issues. With over 50 years of business expertise... ..., provides timely, objective, analytic assessments that integrate technical, operational,... ...SSN-(X) Advanced Manufacturing Lead will provide support to the Team Submarine...Contract workWork at officeRemote workFlexible hours
- DescriptionSAIC is seeking a Policy and Proposal Lead to support multiple customers within the... ...of the Navy for Intelligence and Security (DUSN I&S) and Naval Criminal... ...on the Phase.Conduct counterintelligence assessments on potential SBIR/STTR vendors and proposals...Work at officeRemote work
- ...growing government contractor providing leading-edge support to federal customers, with a... ...particular focus on Defense and National Security mission sets. We leverage more than 17 years... ...management skills with the ability to assess performance, interpret engagement data, and...Contract workFor contractors
$83k - $167k
...Time On-Site /On-siteSecurity Management Lead (SML) - SME Work Location: Washington, DC... ...Logistics Support CGS is seeking a skilled Security Management Lead (SML) - SME to support... ...reviewing applications, analyzing resumes, or assessing responses and identifying potential...Full time- ...technical solutions to complex national security issues. With over 50 years of business expertise... ..., provides timely, objective, analytic assessments that integrate technical, operational,... ...Control System Integration Team (SIT) Lead will support the Team Submarine SSN(X)...Full timeContract workWork at officeFlexible hours
$222k - $332k
...customers in the intelligence and national security communities. In this position, your work... ...to hire a Navy/Maritime Division Growth Lead who will work in partnership with D&I operations... ..., including building industry teams, assessing win probability, and executing customer...Full timeTemporary workCasual workLocal areaRelocation packageFlexible hours$125k - $156k
...technical solutions to complex national security issues. With over 50 years of business expertise... ...need for a Modeling and Simulation Team Lead to provide high level analytic oversight... ...will oversee modeling approaches, assess alternative capabilities, and deliver insight...Immediate startFlexible hours$62k - $141k
...procedures to ensure database and software security. Apply advanced consulting skills or... ...continuous monitoringExperience supporting Assessment & Authorization (A&A) activities such as... ...If You Have:Experience leading RMF efforts across multiple systems, including...Full timeContract workPart timeWork at officeLocal areaRemote work$180k - $190k
...space domain expertise, global defense and security, business and financial management for... ...fragile-source, foreign-source, and long-lead dependencies.Segment suppliers based on:Effect... ..., quality, and delivery milestones.Assess alternate-source, second-source, or redesign...Contract workTemporary workFor contractorsLocal areaRemote work- ...ResponsibilitiesLMI is seeking a driven, results-oriented FSO / Security Lead to own all aspects of personnel, physical, and industrial... ...workforce recruiting pipeline and conduct incumbent capture security assessments at existing program sites to accelerate transition to...Full time
- ...growing government contractor providing leading-edge support to federal customers, with a... ...particular focus on Defense and National Security mission sets. We leverage more than 17 years... ..., and campaign performance metrics to assess content effectiveness and inform future creative...Contract workFor contractors
- ...growing government contractor providing leading-edge support to federal customers, with a... ...particular focus on Defense and National Security mission sets. We leverage more than 17 years... ..., and shape policy dialogue.Capture, assess, and analyze external feedback to inform...Contract workFor contractorsLocal area
- About DMIDMI is a leading provider of digital services and technology solutions, headquartered... ..., DMI is committed to delivering secure, efficient, and cost-effective solutions... ..., monitoring, logging).Conduct security assessments, risk analysis, and remediation planning...Work experience placement
- ...RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs. This role... ...operations across federal and IC environments. Conduct full‑scope assessments, exploit development, and hands‑on attack simulations....Full time
$91.3k - $184.9k
...and ingenuity for clients across defense, national security, public safety, civilian, and military health... ...government forward! Who you are: The Security Lead is responsible for overseeing complex risk assessments, security governance, and compliance monitoring. This...Live inWork at officeLocal area- ...space domain expertise, global defense and security, business and financial management for... ...fragile-source, foreign-source, and long-lead dependencies. Segment suppliers based on:... ...article, quality, and delivery milestones. Assess alternate-source, second-source, or...Contract workTemporary workFor contractorsFor subcontractorWork at officeLocal areaRemote workFlexible hours
$91.3k - $184.9k
...Security Lead At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and... ...The Security Lead is responsible for overseeing complex risk assessments, security governance, and compliance monitoring. This role demands...Work at officeLocal area$90.3k - $189.6k
Job Title: Lead Senior Information System Security OfficerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start... ..., security control selection and implementation, self-assessments, POA&M development, and continuous monitoring. This...Contract workWork experience placementWork at officeFlexible hours- ...meaningful change and growth.As a Senior Lead Cybersecurity Architect at JPMorganChase... ...senior stakeholders to help teams build secure, scalable solutions that keep pace with evolving... ..., processes, and controls, and lead assessments of new technologies using established standards...For contractors
$125k - $190k
...construction, facility rehabilitation, system replacement, security upgrades, communications facilities, and building... ...project-budget analyses. The Physical Security Lead will direct physical-security assessments, planning, design coordination, and implementation of...Contract workFor contractorsWork at officeWorldwideOverseasFlexible hours- ...technical solutions to complex national security issues. With over 50 years of business expertise... ..., and performing thorough and timely assessments to inform technology and acquisition... ...an immediate need for a Program Analyst Lead to provide onsite support for DARPA in...Full timeContract workWork at officeImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Assessment Lead. Be the first to apply!



