(736) Security Control Assessor

Arlo Solutions LLC

United States

On-site

USD 110,000 - 140,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Arlo Solutions is seeking a Security Control Assessor to evaluate and assess DSCA information systems. Arlington, VA-based role involves conducting comprehensive assessments to ensure federal cybersecurity standards are met and to provide improvement recommendations.

The candidate will develop SAPs, SARs, and POA&Ms, perform risk assessments, and collaborate with IT and cybersecurity teams to implement controls. A strong background in NIST/FISMA and DoD directives is required.

Qualifications

  • Must be a US Citizen.
  • Must have a Secret Clearance.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (Master's degree preferred).
  • Minimum of 5 years of experience in information security, with a focus on security control assessment and risk management.
  • Certifications such as CISSP, CISM, CISA, CAP, or equivalent are highly desirable.
  • In-depth knowledge of federal cybersecurity regulations and standards, including NIST SP 800 series and FISMA.
  • Proven experience in conducting security control assessments and developing security assessment documentation.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Strong communication and interpersonal skills, with the ability to effectively communicate complex cybersecurity concepts to technical and non-technical stakeholders.
  • Ability to work independently and collaboratively in a fast-paced environment.

Responsibilities

  • Conduct thorough assessments of security controls on DSCA’s information systems and networks to ensure compliance with federal regulations, including NIST, FISMA, and DoD directives.
  • Develop and maintain assessment documentation, including SAPs, SARs, and POA&Ms.
  • Perform risk assessments to identify potential security threats and vulnerabilities.
  • Provide detailed recommendations to mitigate identified risks and enhance the security posture of DSCA’s information systems.
  • Collaborate with system owners, IT staff, and cybersecurity teams to ensure effective implementation of security controls.
  • Conduct continuous monitoring activities to ensure ongoing compliance with security policies and procedures.
  • Provide guidance on the security assessment and authorization (A&A) process, including developing and maintaining SSPs.
  • Assist in the development and delivery of cybersecurity training and awareness programs for DSCA personnel.
  • Stay current with the latest cybersecurity threats, trends, and technologies to continuously improve assessment methodologies and practices.
  • Participate in security audits and reviews to ensure adherence to established security standards and best practices.

Skills

US Citizenship
Secret Clearance
5+ years information security
NIST/FISMA knowledge
Strong communication skills
Independent and collaborative work

Education

Bachelor's degree in Cybersecurity/IT/CS
Master's degree preferred

Tools

eMASS/STIGS experience

Job description

Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.

Position Description:

The Security Control Assessor (SCA) will be responsible for evaluating and assessing the security controls of Defense Security Cooperation Agency’s (DSCA) information systems. This role involves conducting comprehensive assessments to ensure compliance with federal cybersecurity standards and providing recommendations to improve the agency’s security posture.

Work Location: Arlington, VA

Responsibilities and/or Success Factors:
  • Conduct thorough assessments of security controls on DSCA’s information systems and networks to ensure compliance with federal regulations, including NIST, FISMA, and DoD directives.
  • Develop and maintain assessment documentation, including Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and Plan of Action and Milestones (POA&Ms).
  • Perform risk assessments to identify potential security threats and vulnerabilities.
  • Provide detailed recommendations to mitigate identified risks and enhance the security posture of DSCA’s information systems.
  • Collaborate with system owners, IT staff, and cybersecurity teams to ensure effective implementation of security controls.
  • Conduct continuous monitoring activities to ensure ongoing compliance with security policies and procedures.
  • Provide guidance on the security assessment and authorization (A&A) process, including developing and maintaining System Security Plans (SSPs).
  • Assist in the development and delivery of cybersecurity training and awareness programs for DSCA personnel.
  • Stay current with the latest cybersecurity threats, trends, and technologies to continuously improve assessment methodologies and practices.
  • Participate in security audits and reviews to ensure adherence to established security standards and best practices.
Minimum Qualifications Including Certificates:
  • Must be a US Citizen.
  • Must have a Secret Clearance
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (Master's degree preferred).
  • Minimum of 5 years of experience in information security, with a focus on security control assessment and risk management.
  • Certifications such as CISSP, CISM, CISA, CAP, or equivalent are highly desirable.
  • In-depth knowledge of federal cybersecurity regulations and standards, including NIST SP 800 series and FISMA.
  • Proven experience in conducting security control assessments and developing security assessment documentation.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Strong communication and interpersonal skills, with the ability to effectively communicate complex cybersecurity concepts to technical and non-technical stakeholders.
  • Ability to work independently and collaboratively in a fast-paced environment.
Desired Qualifications:
  • eMASS, cloud, STIGS experience
AAP Statement

We are proud to be an Affir

Arlo Solutions is a Washington, DC-based professional services firm specializing in cybersecurity and management consulting for the US government across defense, intelligence, and civil sectors.

IT Services and IT Consulting Professional Services

Headquarters Washington, District of Columbia

200 Massachusetts Ave, NW, Suite 700, Washington, District of Columbia 20001, US

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

(736) Security Control Assessor
(736) Security Control Assessor

Arlo Solutions • Arlington (VA)

On-site
USD 110,000 - 150,000
Federal Security Controls Assessor – 5+ Years, CISSP/CISA
Federal Security Controls Assessor – 5+ Years, CISSP/CISA

Arlo Solutions LLC • United States

On-site
USD 110,000 - 140,000
Secret-Cleared Security Controls Assessor
Secret-Cleared Security Controls Assessor

Arlo Solutions • Arlington (VA)

On-site
USD 110,000 - 150,000
(704) Cybersecurity Information System Security Manager (ISSM)
(704) Cybersecurity Information System Security Manager (ISSM)

Arlo Solutions • Orlando (FL)

On-site
USD 110,000 - 160,000
(602) Information Systems Security Manager III
(602) Information Systems Security Manager III

Arlosolutionsllc • Philadelphia

On-site
USD 100,000 - 130,000
(757) Business Analyst
(757) Business Analyst

Arlo Solutions LLC • St. Louis (MO)

On-site
USD 65,000 - 90,000
(603) Information System Security Officer (ISSO) III
(603) Information System Security Officer (ISSO) III

Arlo Solutions LLC • Philadelphia

On-site
USD 110,000 - 140,000
(602) Information Systems Security Manager III
(602) Information Systems Security Manager III

Arlo Solutions LLC • Philadelphia

On-site
USD 120,000 - 180,000
(756) Business Analyst
(756) Business Analyst

Arlo Solutions LLC • Washington

On-site
USD 70,000 - 110,000
Security Control Assessor
Security Control Assessor

Apavo Corporation • Arlington (VA)

On-site
USD 130,000 - 185,000