SCA I - Security Control Assessor

Watermark Risk Management International, LLC

Virginia (MN)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

100% employer-paid medical insurance
Paid leave
401(k) savings plan
Employee assistance program

Job summary

A security and risk management firm based in Minnesota is seeking a Security Control Assessor (SCA) I. The candidate will be responsible for overseeing IS security program policies, conducting assessments using the Risk Management Framework, and advising system owners on security matters. Candidates must possess a bachelor's degree or equivalent experience, with 5-7 years in related security fields. An active TS/SCI clearance is required. The position offers a robust benefits package including comprehensive medical insurance and more.

Qualifications

  • 5-7 years of related experience in security management.
  • Three years’ experience in SAP, SCI, or Collateral Information Systems Security.
  • Prior experience as an ISSO and ISSM.

Responsibilities

  • Oversee development and evaluation of security program policy.
  • Assess Information Systems using RMF methodology.
  • Advise system owners on assessment and authorization.
  • Evaluate threats and vulnerabilities.
  • Prepare Security Assessment Reports.
  • Assist Government with compliance inspections.
  • Prepare SAR and POA&Ms for assessed boundaries.
  • Provide written security authorization recommendations to Government.
  • Coordinate authorization discussions and package submissions to AO/DAO.
  • Assess changes to authorization boundaries and mission needs.
  • Review sanitization and clearing procedures per policy.
  • Assist Government with inspections and cybersecurity incident responses.
  • Ensure SDLC phases are followed; evaluate hardware/software security impact.
  • Assess Continuous Monitoring plans and other duties.

Skills

IS security program oversight
Risk Management Framework (RMF)
Assessment and Authorization
Communication skills
Critical thinking
Teamwork

Education

Bachelor's degree in a related area
Equivalent experience (4 years)

Tools

RMF tooling
JSIG guidance documents
DoD 8570.01-M compliance

Job description

About Watermark

Watermark was founded by USAF veterans in 2007 and is a Service-Disabled Veteran Owned Small Business. We are subject matter experts in security and risk management with deep experience in DOD security programs and mission requirements.

Our core values include perspective, passion, communication, integrity, ethics, and balance. We offer a competitive benefits package that addresses employees’ physical, mental, emotional, and financial well‑being, including 100% employer‑paid medical insurance, paid leave, an employee assistance program, and a 401(k) savings plan.

Job Title

Security Control Assessor (SCA) I

Responsibilities
  • Perform oversight of the development, implementation, and evaluation of IS security program policy; special emphasis on integration of existing SAP network infrastructure.
  • Perform assessment of ISs using the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG).
  • Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on assessment and authorization issues.
  • Evaluate Authorization packages and make recommendations to the AO and/or DAO for authorization.
  • Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required.
  • Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for information on a system.
  • Ensure security assessments are completed and results documented; prepare the Security Assessment Report (SAR) for the Authorization boundary.
  • Initiate a Plan of Action and Milestones (POA&M) for identified weaknesses for each Authorization Boundary assessed.
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the Government.
  • Discuss recommendation for authorization and submit the security authorization package to the AO/DAO.
  • Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate.
  • Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy.
  • Assist the Government with compliance inspections.
  • Assist the Government with security incidents that relate to cybersecurity and ensure proper corrective measures have been taken.
  • Ensure organization addresses and conducts all phases of the system development life cycle (SDLC).
  • Evaluate Hardware and Software to determine security impact on Authorization boundaries.
  • Evaluate the effectiveness and implementation of Continuous Monitoring Plans.
  • Additional duties as assigned.
Experience Requirements
  • 5-7 years of related experience.
  • Minimum of three (3) years’ experience in SAP, SCI, or Collateral Information Systems (IS) Security and implementation of regulations identified in the duties.
  • Prior performance in the role of ISSO and ISSM.
Education Requirements
  • Bachelor’s degree in a related area or equivalent experience (4 years).
Certification Requirements
  • Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level I within 6 months the date of hire.
Security Clearance Requirements
  • Active/current TS/SCI.
  • Eligibility for access to Special Access Program Information.
  • Willingness to submit to a Counterintelligence polygraph.
Other Requirements
  • Must be able to regularly lift up to 50 lbs.
  • May require sedentary work at least 50% of the time.
  • Reports to a physical location which occasionally requires the ability to traverse between buildings.
  • Ability to manage stress with a high degree of maturity/professionalism.
  • Demonstrated critical thinking and leadership skills and the ability to work well with others.
  • Effective verbal and written communication skills.
  • All Level I & Level II positions – candidate should possess some Special Access Program (SAP) experience.
  • All Level III positions – candidate should possess 2+ years of Special Access Program (SAP) experience.
Benefits

We offer a robust benefits package and well‑being program in addition to annual base compensation.

Equal Opportunity

Watermark is an equal opportunity employer. All terms and conditions of employment are established without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, veteran status, or any other protected category under applicable federal, state, and local laws.

Vaccine Mandate

Watermark Risk Management International, LLC is a federal contractor and is therefore subject to any federal vaccine mandates or other customer vaccination requirements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT/IA II - Information Technology/ Assurance Specialist
IT/IA II - Information Technology/ Assurance Specialist

Watermark Risk Management International • Beale Air Force Base (CA)

On-site
USD 107,000 - 141,000
Medical insurance
Paid leave
Employee assistance program
+1
PSR I - Program Security Representative I
PSR I - Program Security Representative I

Watermark Risk Management International, LLC • Bedford (MA)

On-site
USD 91,000 - 124,000
100% employer-paid medical insurance
ample paid leave
free employee assistance program
+1
ASR II - Activity Security Representative II (Temporary)
ASR II - Activity Security Representative II (Temporary)

Watermark Risk Management International • Los Angeles (CA)

On-site
USD 100,000 - 126,000
100% employer‑paid medical insurance
Ample paid leave
Free employee assistance program
+1
Security Control Assessor (SCA) II
Security Control Assessor (SCA) II

Modern Technology Solutions, Inc. • Albuquerque (NM)

On-site
USD 90,000 - 140,000
PTO 20 days
Flexible schedules
401(k) match
+5
Security Control Assessor (SCA), Level I
Security Control Assessor (SCA), Level I

TAC Integrated Solutions • Arlington (VA)

On-site
USD 90,000 - 120,000
ASR III - TS/SCI Security Specialist III
ASR III - TS/SCI Security Specialist III

Watermark Risk Management International, LLC • Dayton (OH)

On-site
USD 85,000 - 110,000
Employer-paid medical
Paid time off
Employee assistance program
+1
Security & SAP/SCIF Specialist
Security & SAP/SCIF Specialist

Watermark Risk Management International, LLC • Arlington (VA)

On-site
USD 70,000 - 90,000
100% employer-paid medical insurance
Paid leave
Employee assistance program
+1
ASR II - Security Representative II
ASR II - Security Representative II

Watermark Risk Management International, LLC • Arlington (VA)

On-site
USD 70,000 - 90,000
100% employer-paid medical insurance
Paid leave
Employee assistance program
+1
ASR III - TS/SCI Security Specialist III
ASR III - TS/SCI Security Specialist III

Watermark Risk Management International • Dayton (OH)

On-site
USD 65,000 - 95,000
ASR II - Security Representative II
ASR II - Security Representative II

Watermark Risk Management International, LLC • Colorado Springs (CO)

On-site
USD 74,000 - 99,000
Medical insurance (100% employer-paid)
Paid leave
Employee assistance program
+1