Security Controls Assessor
Sumter, SC · On-site
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC. In this role you will perform comprehensive IT security ...
Sumter, SC · On-site
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC. In this role you will perform comprehensive IT security ...
Sumter, SC · On-site
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC. In this role you will perform comprehensive IT security ...
$100K - $120K/yr
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC.In this role you will perform comprehensive IT security ...
Quick apply
$100K - $120K/yr
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC.In this role you will perform comprehensive IT security ...
$100K - $120K/yr
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC. In this role you will perform comprehensive IT security ...
$100K - $120K/yr
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC. In this role you will perform comprehensive IT security ...
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
Validates the security requirements of the information system. * Verifies and validates that the system meets the security requirements. * Provides vulnerability assessment of the system.
38North Security is seeking experienced security assessment professionals to evaluate government environments against NIST SP 800-53 rev 5 and RMF processes. You will assess AWS IaaS, PaaS, and SaaS ...
38North Security is seeking experienced security assessment professionals to evaluate government environments against NIST SP 800-53 rev 5 and RMF processes. You will assess AWS IaaS, PaaS, and SaaS ...
38North Security is seeking experienced security assessment professionals to evaluate government environments against NIST SP 800-53 rev 5 and RMF processes. You will assess AWS IaaS, PaaS, and SaaS ...
38North Security is seeking experienced security assessment professionals to evaluate government environments against NIST SP 800-53 rev 5 and RMF processes. You will assess AWS IaaS, PaaS, and SaaS ...
Consultant tier JOB SUMMARY Judit Inc. is seeking a Governance & Controls Assessor to execute governance and controls fieldwork on a large-scale government IT security risk assessment. This role ...
Quick apply
Consultant tier JOB SUMMARY Judit Inc. is seeking a Governance & Controls Assessor to execute governance and controls fieldwork on a large-scale government IT security risk assessment. This role ...
Working knowledge of NIST SP 80053 security and privacy controls * Understanding of riskbased assessment concepts * Ability to analyze assessment evidence and clearly document findings What Would Be ...
Working knowledge of NIST SP 80053 security and privacy controls * Understanding of riskbased assessment concepts * Ability to analyze assessment evidence and clearly document findings What Would Be ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
Mclean, VA · On-site
Working knowledge of NIST SP 800-53 security and privacy controls * Understanding of risk-based assessment concepts * Ability to analyze assessment evidence and clearly document findings What Would ...
Mclean, VA · On-site
Working knowledge of NIST SP 800-53 security and privacy controls * Understanding of risk-based assessment concepts * Ability to analyze assessment evidence and clearly document findings What Would ...
Oak Ridge, TN · On-site
Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for a non-federal information system processing Controlled Unclassified Information (CUI) data.
Oak Ridge, TN · On-site
Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for a non-federal information system processing Controlled Unclassified Information (CUI) data.
The role involves assessing the effectiveness of security controls, identifying vulnerabilities ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing the effectiveness of security controls, identifying vulnerabilities ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
The role involves assessing and evaluating the effectiveness of security controls, identifying ... Responsibilities : • Assess the effectiveness of security controls in information systems • ...
Oak Ridge, TN · On-site
Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for a non-federal information system processing Controlled Unclassified Information (CUI) data.
Quick apply
Oak Ridge, TN · On-site
Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for a non-federal information system processing Controlled Unclassified Information (CUI) data.
Annapolis Junction, MD · On-site
$50K - $60K/yr
Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and ... assessment. Qualifications: * Bachelor's degree in a related area of study (i.e. Security ...
Quick apply
Annapolis Junction, MD · On-site
$50K - $60K/yr
Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and ... assessment. Qualifications: * Bachelor's degree in a related area of study (i.e. Security ...
$8.89 - $15.19
2% of jobs
$15.19 - $21.48
2% of jobs
$21.48 - $27.78
0% of jobs
$27.78 - $34.07
0% of jobs
$34.07 - $40.36
3% of jobs
$40.36 - $46.66
5% of jobs
$50.35 is the 25th percentile. Wages below this are outliers.
$46.66 - $52.95
21% of jobs
The median wage is $58.08 / hr.
$52.95 - $59.24
20% of jobs
$59.24 - $65.54
18% of jobs
$67 is the 75th percentile. Wages above this are outliers.
$65.54 - $71.83
15% of jobs
$71.83 - $78.13
14% of jobs
$8
$58
$78
| Aspect | Entry Level Security Controls Assessor | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP (entry-level), Security+ | CompTIA Security+, CISSP (entry-level), Security+ |
| Work Environment | Audit and compliance settings, government agencies, consulting firms | IT departments, cybersecurity teams, corporate environments |
| Primary Focus | Assessing security controls, compliance checks, vulnerability identification | Monitoring security, incident response, threat analysis |
While both roles involve cybersecurity fundamentals, the Entry Level Security Controls Assessor primarily focuses on evaluating security controls and ensuring compliance, often in audit or assessment settings. In contrast, a Security Analyst concentrates on monitoring security systems, analyzing threats, and responding to incidents within an organization. Both roles require similar certifications and work environments but differ in their core responsibilities and daily tasks.
Cities with the most Entry Level Security Controls Assessor job openings:
The most popular types of Security Controls Assessor jobs are:
States with the most job openings for Entry Level Security Controls Assessor jobs include:
The top searched job categories for Entry Level Security Controls Assessor jobs are:

Full-time
Posted 17 days ago
Oneida Technical Solutions, LLC (OTS), was founded in 2014 and quickly established itself as a reliable partner capable of providing a variety of information technology and cyber solutions across highly complex, highly regulated and highly secure environments, including the U.S. Department of Defense (DoD), healthcare, higher education, law enforcement, retail, casino gaming and more.
Our innovative cyber capabilities and programs have made us trusted partners for IT modernization projects, implementing upgrades and accelerating the delivery of new solutions for the DoD and commercial industries with consumer-driven technology.
OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC.
In this role you will perform comprehensive IT security control assessments on AFCENT systems and software applications. Assessments shall require physical travel to various contractor and Government sites inside and outside the continental United States (CONUS and OCONUS). Assessments shall determine the condition of the management, operational, and technical security controls employed within or inherited by an information system or software to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system).
Duties for this role include, but are not limited to:
Perform initial and continual security control assessment and validation for AFCENT networks, systems, and software applications.
Utilize DOD approved tools such as, but not limited to - Assured Compliance Assessment Solution (ACAS), Nessus, Host Based Security Systems (HBSS), Continuous Monitoring Risk Scoring (CMRS), Online Compliance Reporting System (OCRS), and SolarWinds - to generate initial and continuous monitoring reports.
Complete reports to support risk decisions from the AO, both as required and as requested.
Provide an assessment on the severity of weaknesses or deficiencies discovered in the information system or software application and its environment of operation and recommend corrective actions to address identified vulnerabilities.
Review the System Security Plan (SSP), prior to initiating the security control assessment and ensure the plan provides a set of security controls for the information system or software application that meet the stated security requirements.
Advise the Information System Owner (ISO) concerning the impact values for confidentiality, integrity, and availability for the information on a system or software application.
Evaluate threats and vulnerabilities to information systems or software application to ascertain the need for additional safeguards.
Assist in creating, reviewing, and approving the information system or software application security assessment plan, which is comprised of the SSP, the Security Controls Traceability Matrix (SCTM), and the Security Control Assessment Procedure.
Ensure security control assessments are completed for each information system or software application and ensure controls are working as intended and these controls protect the confidentiality, integrity and availability of IT resources at the appropriate levels.
Assist with preparing the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity.
Ensure a Plan of Action and Milestones (POA&M) is initiated by the Information System Security Officer (ISSO) for the information system based on findings and recommendations from the SAR.
Evaluate security control assessment documentation and provide written recommendations for security authorization to the AO.
Provide expertise to execute vulnerability assessments on Platform IT systems.
Assist with assembling and submitting the security authorization artifacts to the AO (consisting of, at a minimum, the SSP, the SAR, the POA&M, and a Risk Assessment Report (RAR).
Assess the proposed changes to information systems or software application, their environment of operation, and mission needs to determine if they are security-relevant and could therefore affect system authorization.
Utilize the RMF methodology to successfully implement an information technology process which shall effectively protect the element's information assets and its ability to perform its mission.
Provide guidance to other assessors on the policies and procedures of the job; Provide detailed assessment findings using Government-specified processes and procedure.
Provide solutions and recommendations to remedy security vulnerabilities, threats, to ultimately improve the protection of IT resources and to execute the AFCENT mission.
Utilize assessment results to identify trends and to improve IA training, policies and processes.
Develop reports and trend analysis's to support risk assessment decisions.
Qualified candidates must meet the following mandatory requirements:
Must possess and maintain a Secret Clearance
Proof of IAT-III or IAM-III Certification
Senior (III) and higher positions (Preferred):
- MA/MS in related field AND 3 or more years' relevant experience; or
- BS in related field AND 5 or more years' relevant IT experience; or
- 7 or more years' relevant IT experience.
Mid-level (II) or lower positions:
- BS in related field AND 1 or more years' relevant experience; or
- Associates in related field and 3 or more years' relevant IT experience; or
- 5 or more years' of relevant IT experience.
Oneida Technical Solutions, LLC. is an equal opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, national origin, age, disability, marital status, veteran status, sexual orientation, gender identity, genetic information or any other protected characteristic under applicable law.
#CJ