The Senior Security Control Assessor provides authoritative risk determinations and recommendations critical for the Authorizing Official to grant an Authority to Operate. The role requires expertise in statutory guidance such as the NIST 800 series, DoDI 8500.01, and current cybersecurity best practices.
Requirements
- Have a strong background in information security systems management (ISSM), risk management, and governance, risk and compliance (GRC)
- Strong clients focus and commitment to continuous improvement, ability to proactively network and establish relationships
- Manage multiple priorities in a high-paced and fast-changing environment
- Experience supporting and assessing risks within a CI/CD DevSecOps environment
- Expert understanding of NIST 800 series guidelines, DoDI 8500.01, DoD 8140.03, rISO 27001, COBIT, DoD RMF, OVL, and current cybersecurity best practices
- Excellent communication/presentation skills briefing senior military and government civilian leadership
- Experienced with writing policies, guides, procedures
- Experience in hands on with eMASS, Xacta and/or other GRC tools
- Experience with Federal and FedRamp A&A Processes
- Experienced and comfortable advising at the Senior Executive Service (SES) level of customers
Benefits
- Comprehensive health insurance
- 401(k) or other retirement savings plan
- Paid time off and holidays
- Professional development opportunities
- A dynamic and inclusive work environment