Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Control Assessor (SCA) II

$142.79k - $181.01k
Full-time

Gdit

Responsibilities for this Position

Location: USA DC Washington
Full Part/Time: Full time
Job Req: RQ224529

Type of Requisition:
Regular

Clearance Level Must Currently Possess:
Top Secret/SCI

Clearance Level Must Be Able to Obtain:
Top Secret SCI + Polygraph

Public Trust/Other Required:
None

Job Family:
Cyber and IT Risk Management

Job Qualifications:

Skills:
Information Security, Information Security Management, Information System Security
Certifications:
None
Experience:
7 + years of related experience
US Citizenship Required:
Yes

Job Description:

The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). The SCA must represent the concerns of the Approving Official (AO) and be independent from the ISSO/ISSM. SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility.

Performance shall include:
  • Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure
  • Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG)
  • Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues
  • Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization
  • Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required
  • Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system
  • Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary
  • Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the Government
  • Discuss recommendation for authorization and submit the security authorization package to the AO/DAO
  • Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate.
  • Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy
  • Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken
  • Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC)
  • Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries
  • Evaluate the effectiveness and implementation of Continuous Monitoring Plans
  • Represent the customer on inspection teams

Experience:
  • 7+ years related experience
  • Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties.
  • Prior performance in the role of ISSO and ISSM or SCA

Education:
  • Bachelor's degree in a related discipline OR Associate's degree in a related area + 2 years' experience OR equivalent experience (4 years)

Certifications:
  • IAT Level III or IAM Level II - within 6 months of the date of hire
Security Clearance:
  • TS/SCI clearance
  • Willingness to submit to a Counterintelligence polygraph

Other Requirements:
  • Must be able to regularly lift 50lbs

GDIT IS YOUR PLACE:
  • 401K with company match
  • Comprehensive health and wellness packages
  • Internal mobility team dedicated to helping you own your career
  • Professional growth opportunities including paid education and certifications
  • Cutting-edge technology you can learn from
  • Rest and recharge with paid vacation and holiday

#AirforceSAPOpportunities

The likely salary range for this position is $142,792 - $181,010. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:
40

Travel Required:
None

Telecommuting Options:
Onsite

Work Location:
USA DC Washington

Additional Work Locations:

Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc .

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans



PI285894216




The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). The SCA must represent the concerns of the Approving Official (AO) and be independent from the ISSO/ISSM. SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility.



Performance shall include:

  • Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure
  • Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG)
  • Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues
  • Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization
  • Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required
  • Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system
  • Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary
  • Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the Government
  • Discuss recommendation for authorization and submit the security authorization package to the AO/DAO
  • Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate.
  • Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy
  • Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken
  • Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC)
  • Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries
  • Evaluate the effectiveness and implementation of Continuous Monitoring Plans
  • Represent the customer on inspection teams




Experience:

  • 7+ years related experience
  • Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties.
  • Prior performance in the role of ISSO and ISSM or SCA




Education:

  • Bachelor's degree in a related discipline OR Associate's degree in a related area + 2 years' experience OR equivalent experience (4 years)




Certifications:

  • IAT Level III or IAM Level II - within 6 months of the date of hire


Security Clearance:

  • TS/SCI clearance
  • Willingness to submit to a Counterintelligence polygraph




Other Requirements:

  • Must be able to regularly lift 50lbs




GDIT IS YOUR PLACE:

  • 401K with company match
  • Comprehensive health and wellness packages
  • Internal mobility team dedicated to helping you own your career
  • Professional growth opportunities including paid education and certifications
  • Cutting-edge technology you can learn from
  • Rest and recharge with paid vacation and holiday



Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Control Assessor (SCA) II in Washington DC vacancy
  •  ...Make an impact by connecting and securing critical operations across the...  .... Job Description The SCA is responsible for conducting...  ..., and technical security controls employed within or inherited by...  ...~ IAT Level III or IAM Level II - within 6 months of the date... 
    Suggested

    General Dynamics Information Technology

    Washington DC
    4 days ago
  • $100k

     ...Cybersecurity Compliance Auditor / Security Control Assessor (SCA) Do you enjoy assessing complex systems and ensuring they meet the highest cybersecurity...  ...GSNA, CASP+ CE, CISSP, CISM or DoD 8570/8140 IAT/IAM Level II/III equivalent. Have experience applying cybersecurity... 
    Suggested

    The Johns Hopkins University Applied Physics Laboratory

    Laurel, MD
    4 days ago
  • $140k - $210k

     ...VTG is looking for multiple levels (Level 2, 3 & 4) of a Security Control Assessor (SCA) in multiple locations. (Note: position is contingent upon...  ...Level 1 and Level 2 qualifications, a compliant IAM Level II certification, and the additional desired qualifications:... 
    Suggested
    For contractors
    Work experience placement

    VTG

    Springfield, VA
    21 hours ago
  • $160k - $172k

     ...Title: Security Control Assessor (SCA) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering...  ...3, NIST 800-53 ~ DoD 8570/8140 IAT Level III or IAM Level II/III certification (e.g., CISSP preferred). ~ Strong written... 
    Suggested
    Full time
    Contract work
    Temporary work
    Local area
    Relocation package
    Flexible hours

    KBR

    Washington DC
    6 days ago
  •  ...Job Description Job Description SECURITY CLEARANCE REQUIREMENT: TS, WITH SCI ELIGIBILITY ***POSITION REQUIRES US CITIZENSHIP*** Position Title: Security Control Assessor (SCA) II Location: Arlington, VA (on-site) Salary Range: TBD based on experience  Position... 
    Suggested
    Work at office

    RedTrace Technologies Inc

    Arlington, VA
    10 days ago
  • # Security Control AssessorApply**Job#: 3037634****Job Description:**Security Control Assessor**Location:** Alexandria, Virginia (Onsite)Role OverviewWe are seeking a skilled and...  ...relevant experience.* A current DoD 8570 IAT II certification is required (e.g., CCNA... 
    Hourly pay
    Contract work

    Apex Systems

    Alexandria, VA
    3 days ago
  •  ...Job Description We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is responsible for evaluating the implementation and effectiveness... 
    2 days per week

    Centurion Consulting Group, LLC

    Andrews Air Force Base, MD
    2 days ago
  • $102.83k - $150k

     ...Exempt Anticipated Salary Range: $102,831.00 - $150,000.00 Security Clearance: TS/SCI Level of Experience: Mid The selected candidate...  ...clearance will be required. What you will do The Security Controls Assessor plays a critical role in evaluating, validating, and... 
    Full time
    Work experience placement
    Local area

    Huntington Ingalls Industries

    Springfield, VA
    3 days ago
  • $70k

     ...intricate issues and ensuring a more secure future. AGE Solutions is looking for a Security Control Assessor, Intermediate to join our team...  ...test plans, and scope with the SCA Team Lead. Perform...  ...8570 IA Technical (IAT) Level II certification Demonstrated experience... 
    Contract work
    Immediate start
    Remote work
    Relocation

    AGE solutions

    Alexandria, VA
    22 days ago
  •  ...exceptional professionals for this role. Job Description The most security-conscious organizations trust Telos Corporation to protect...  ...(6 years) ~5+ years of experience assessing security controls from NIST 800-53/CNSS 1253 is required ~ Experience with the... 
    Work experience placement

    Telos

    Washington DC
    19 days ago
  •  ...Security Control Assessor The Security Control Assessor conducts comprehensive assessments of security controls employed by, or inherited within...  ...and compliance with applicable security requirements. The SCA develops and submits the complete Body of Evidence (BoE), including... 

    Pueo Business Solutions LLC

    McLean, VA
    2 days ago
  •  ...401K, an Employee Stock Purchase Plan (ESPP) through Tetra Tech, and more! Responsibilities Execute all phases of cyber security and privacy control assessment support Required Qualifications Masters Degree in a Technical or Cyber-related Field 7+ years of Relevant Cybersecurity... 

    Tetra Tech

    Arlington, VA
    3 days ago
  • $130k - $150k

     ...Senior Security Control Assessor Overview TSA is currently seeking a Senior Security Control Assessor who will serve as a Functional Lead and provide support to our NAVAIR customer in the DC Metro area. Roles/Responsibilities Leads cybersecurity security control assessment... 

    Technology Security Associates

    Alexandria, VA
    3 days ago
  •  ...details can be found on our website at: Position Title : DHS Security Control Assessor III Location : NCR Clearance : TS/SCI OneZero...  ...direct experience serving as a Security Control Assessor (SCA) within the DoD/Federal Government. ~ Experience within the... 
    Full time
    Contract work
    Work at office

    OneZero Solutions

    Washington DC
    6 days ago
  • $87k - $198k

     ...Security Control Assessor and System Certification Specialist, Senior The Opportunity: Function as a Senior System Certification Specialist...  ...in NIST security guidance and security control assessment (SCA) processes using the NIST Risk Management Framework (RMF). Guide... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    more than 2 months ago
  •  ...Job Description Job Description Security Control Assessor Location: Arlington, VA (On-Site) Citizenship: US only Clearance: Active TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB... 
    Contract work
    For contractors

    Argo Cyber Systems

    Arlington, VA
    25 days ago
  •  ...Job Description Job Description Benefits: ~ Competitive salary About this Role: We are looking for a SME Security Control Assessor that supports security control assessment activities for HHS-ACF information systems by applying NIST security controls and... 
    Work at office
    Local area
    Work from home
    Flexible hours

    IMAGINEEER LLC

    Arlington, VA
    12 days ago
  •  ...government entities to deliver predictable, measurable impact for the American taxpayer and consumer. Join rockITdata as a Security Control Assessor / ISSE Support supporting one of the nation's largest federal healthcare modernization initiatives. In this role, you'll... 
    Full time
    Local area

    rockITdata

    Arlington, VA
    3 days ago
  •  ...associated with this labor category. # Experience performing control assessments as part of a team in accordance with applicable NIST...  .... # Experience providing direct support of information security compliance activities, including managing plans of actions and... 
    Contract work

    Crest Security Assurance

    Washington DC
    14 days ago
  •  ...TLA is seeking a Security Assessor for evaluating the effectiveness of security measures and controls within the organization's information systems and software applications to ensure the protection of data and compliance with industry standards and regulations. This... 
    Work experience placement

    TLA Inc

    McLean, VA
    5 days ago
  • $24.5 - $26 per hour

     ...Come join our amazing team and work remote from home! The Default FHA Claims QA Analyst II will work under moderate supervision, responsible for reviewing FHA mortgage insurance claims for accuracy and submitting the claim form for filing. Performs all duties in accordance... 
    Remote work
    Work from home

    Carrington

    Washington DC
    4 days ago
  •  ...Carrington is looking for a Default FHA Claims QA Analyst II to work remotely and review FHA mortgage insurance claims for accuracy. This position involves ensuring compliance with company policies and federal regulations while meeting strict deadlines. The ideal candidate... 
    Remote work

    Carrington

    Washington DC
    21 hours ago
  • $69.92k - $133.62k

     ...USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and...  ...are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures... 
    Hourly pay
    H1b
    Local area
    Remote work
    Relocation
    Afternoon shift

    USAA

    Washington DC
    21 hours ago
  •  ...Consulting Travel Required: Up to 25% Clearance Required: Ability to Obtain Secret What You Will Do: Conduct FISMA security control assessments in accordance with NIST SP 800-53 and NIST SP 800-53A Support system authorization efforts across the RMF lifecycle... 
    Temporary work
    Flexible hours

    Guidehouse

    Mc Lean, VA
    12 hours ago
  •  ...full-time position for a CMMC Certified Assessor (CCA) at CyberRx, Inc. You need to be...  ...collaborators dedicated to safeguarding national security and committed to partnering with our...  ...requirements related to handling Controlled Unclassified Information (CUI). ·... 
    Full time
    For contractors

    CYBERRX INC

    Silver Spring, MD
    24 days ago
  •  ...preview of the full benefits package. Role: Intermediate Security Assessor Location: Remote (Must be available to work EST hours)...  ...Leading and conducting independent assessments of security controls as documented in the System Security Plan (SSP) Leading and... 
    Local area
    Immediate start
    Remote work

    Saliense Consulting LLC

    McLean, VA
    16 days ago
  •  ...Disability. Roles: • Facilities Condition Assessor qualified in building HVAC design,...  ...application for the mandatory DoW Secret Security clearance, if not already held....  ...application software use. • Understand UNIFORMAT II building component data structure down to... 
    For contractors
    Remote work

    R&K Solutions

    Alexandria, VA
    25 days ago
  •  ...Temporary Substance Use Assessor We are seeking an experienced Temporary Substance Use Assessor to support our mission-driven team committed...  ...health or addiction credential, such as: CAC I or CAC II LGPC, LPC LGSW, LICSW Work Schedule 2-3 days/week of... 
    Full time
    Temporary work
    Work at office
    2 days per week
    3 days per week

    Springleaf Solutions

    Washington DC
    4 days ago
  • $130k - $147k

     ...effectively – anytime, anywhere, securely. We combine technical...  ...SkyePoint Decisions is seeking an AWS Assessor to join our team for a...  ...comprehensive assessment of implemented controls and control enhancements to...  ...g., FedRAMP, RMF, FISMA, FIPS-II, NIST, etc. Certified in... 
    Contract work

    SkyePoint Decisions

    Washington DC
    5 days ago
  •  ...appropriate internal and./or external resources for specific activities required to effectively evaluate claims, such as Subro, Risk Control, nurse consultants and fire or fraud investigators and other experts. Verify the nature and extent of injury or property damage by... 
    Local area

    Travelers

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Control Assessor (SCA) II. Be the first to apply!