#betterwithage
Security Control Assessor
Location
United States
Posted
3 days ago
Salary
Not specified
Job Description
Role Description
AGE Solutions is looking for a Security Control Assessor, Mid to join our team in support of a cybersecurity risk management and assessment program with our DoD customer.
- Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN.
- Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing.
- Adhere to policies and processes for each assessment type.
- Support assessment development and execution to ensure security expertise is properly applied.
- Coordinate logistics, test plans, and scope with the SCA Team Lead.
- Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS.
- Analyze security gaps and provide mitigation recommendations.
- Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines.
- Provide risk analysis and assessment results for authorization recommendations.
- Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R.
Qualifications
- Bachelor's degree (IT-related field preferred)
- Five (5) years of overall experience in cybersecurity or network security position
- Three (3) years of experience in a Certification and Accreditation/A&A role
- Must have and maintain an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IA Technical (IAT) Level II certification
Requirements
- Demonstrated experience with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices
- Strong understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, CNSSI 1253
- Demonstrated experience with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
- Demonstratable understanding of key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications
- Strong written and verbal communication skills for reporting assessment findings.
Benefits
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
Job Requirements
- Bachelor's degree (IT-related field preferred)
- Five (5) years of overall experience in cybersecurity or network security position
- Three (3) years of experience in a Certification and Accreditation/A&A role
- Must have and maintain an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IA Technical (IAT) Level II certification
- Demonstrated experience with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices
- Strong understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, CNSSI 1253
- Demonstrated experience with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
- Demonstratable understanding of key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications
- Strong written and verbal communication skills for reporting assessment findings.
Benefits
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Sr. Analyst, Security
ComcastComcast Business offers a suite of Connectivity, Communications, Networking, Cybersecurity, Wireless, and Managed Solutions to help global organizations of all sizes prepare for what’s next. Powered by the nation’s largest Gig-speed broadband network Backed by 24/7 customer support Recognized as a leader and innovator in the industry One of the fastest growing providers of Ethernet services
The Senior Technical Security Analyst conducts security assessments and deploys security technologies like firewalls and intrusion detection systems to protect the organization's infrastructure. This role also involves monitoring security logs, investigating incidents, providing technical guidance, and assisting with configuration and break/fix programs.
The technician will conduct digital forensic examinations of various digital media sources, performing onsite data collections and ensuring proper evidence handling and chain of custody. They will also provide expert consulting by processing and interpreting forensic data to support legal strategies in collaboration with legal and insurance professionals.
LN Venues, Senior Security Manager - Risk Assessment
Live Nation EntertainmentLive Nation produces more concerts, sells more tickets and connects more brands to music than anyone else in the world.
This role leads security planning and risk mitigation for designated high-risk events by translating identified risks into documented, event-specific enhancements to the standard security plan. The manager will serve as a strategic partner to venue leadership, focusing on assessing elevated risk factors and ensuring incremental security measures are executable by venue teams.
The PSID Investigation Analyst I is responsible for receiving background investigations from field investigators and processing them for transmission to customers, ensuring all customer requirements are met through detailed review and analysis. This involves tracking progress, resolving issues with investigators, and submitting completed investigations error-free via the PSID closed case transmission process.