Traveling Security Control Assessor

Jobtailor

Maryland

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a seasoned cybersecurity assessor to conduct DoD-focused assessments for DoD organizations and DoDIN partners. You will apply risk-based methodologies to validate RMF controls and communicate findings to leadership.

Responsibilities include vulnerability testing with eMASS, STIG Viewer, and Nessus, coordinating test plans, and mentoring teammates to enhance team capability. Travel is required as needed.

Qualifications

  • Active DoD Top Secret clearance with SCI eligibility.
  • Bachelor's degree in an IT-related field and 8 years in cybersecurity.
  • 5 years in Certification and Accreditation/A&A.
  • Experience with STIGs, SRGs, POA&Ms and DoD tools (eMASS, STIG Viewer, Nessus, ACAS).
  • Strong RMF, NIST SP 800-37/53 and CNSSI 1253 knowledge.

Responsibilities

  • Conduct cybersecurity assessments for DoD orgs and DoDIN partners.
  • Perform vulnerability assessments using STIG Viewer, eMASS, Nessus, and related tools.
  • Validate RMF controls and DoD policies; provide risk assessments.
  • Coordinate test plans, scope, and logistics with the SCA Team.
  • Mentor junior staff and share best practices.
  • Participate in daily reviews and briefings to communicate findings.

Skills

Top Secret clearance
SCI eligibility
DOD 8570 IAM II / IAT II
Stig Viewer
Nessus

Education

Bachelor's degree in IT or related field

Tools

eMASS
STIG Viewer

Job description

Responsibilities
  • Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN
  • Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing
  • Adhere to policies and processes for each assessment type
  • Support assessment development and execution to ensure security expertise is properly applied
  • Coordinate logistics, test plans, and scope with the SCA Team Lead
  • Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS
  • Analyze security gaps and provide mitigation recommendations
  • Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines
  • Provide risk analysis and assessment results for authorization recommendations
  • Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R
  • Mentor and guide personnel by providing technical expertise, best practices, and professional development support to enhance team capabilities and knowledge
Requirements
  • Active DoD Top Secret clearance with SCI eligibility required
  • Current DoD 8570 IAM II or IAT II certification
  • Ability and willingness to travel for assessments as required, up to 85% of the time
  • Bachelor's degree (IT-related field preferred) and eight (8) years of cybersecurity or network security experience, including five (5) years of experience in a Certification and Accreditation/A&A role
  • Demonstrated experience with STIGs, SRGs, POA&Ms and cybersecurity best practices, as well as relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
  • Strong understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253, as well as key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications
  • Strong written and verbal communication skills for reporting assessment findings.
Core Competencies

Demonstrates expertise in conducting cybersecurity assessments and audits for DoD organizations, with a strong focus on vulnerability assessments, risk analysis, and compliance with DoD policies. Proficient in utilizing tools such as eMASS and STIG Viewer to document findings and provide mitigation recommendations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Traveling DoD Cybersecurity Assessments Specialist
Traveling DoD Cybersecurity Assessments Specialist

Jobtailor • Maryland

On-site
USD 120,000 - 160,000
Security Control Assessor
Security Control Assessor

System High Corporation • Chantilly (VA)

On-site
USD 120,000 - 160,000
Security Control Assessor SCA TSSCI
Security Control Assessor SCA TSSCI

Tau Six • Sully Square (VA)

On-site
USD 70,000 - 110,000
Security Control Assessor (SCA) (TS/SCI)
Security Control Assessor (SCA) (TS/SCI)

Tau Six, LLC • Sully Square (VA)

On-site
USD 80,000 - 110,000
Security Control Assessor
Security Control Assessor

SAIC • Springfield (VA)

On-site
USD 120,000 - 160,000
Security Controls Assessor (Pipeline)
Security Controls Assessor (Pipeline)

Electrosoft • Belleville (IL)

On-site
USD 90,000 - 120,000
Security Control Assessor
Security Control Assessor

Apavo Corporation • Arlington (VA)

On-site
USD 130,000 - 185,000
Security Assessor (RMF / GRC)
Security Assessor (RMF / GRC)

Digital-Global-Connectors • McLean (VA)

Hybrid
USD 120,000 - 155,000
Security Assessor (RMF / GRC)
Security Assessor (RMF / GRC)

Digital Global Connectors • McLean (VA)

Hybrid
USD 110,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • San Diego (CA)

On-site
USD 120,000 - 190,000