1

Freelance Environmental Risk Assessor Jobs in Virginia

Review and assess Authorization Boundary Diagrams (ABDs), Risk Assessment Reports (RARs), Security ... Familiarity with IT environments running enterprise systems, such as Windows Server 2019, MS SQL ...

Review and assess  Authorization Boundary Diagrams (ABDs), Risk Assessment Reports (RARs ... Familiarity with IT environments running enterprise systems, such as Windows Server 2019, MS SQL ...

... environment where new ideas and solutions are welcomed and rewarded. You will lead ORM through audit and regulatory engagements; facilitate periodic and change-driven risk assessments; and support ...

... environment where new ideas and solutions are welcomed and rewarded. You will lead ORM through audit and regulatory engagements; facilitate periodic and change-driven risk assessments; and support ...

... environment where new ideas and solutions are welcomed and rewarded. You will lead ORM through audit and regulatory engagements; facilitate periodic and change-driven risk assessments; and support ...

Third-Party Risk Analyst

Mclean, VA · On-site

$45 - $47/hr

... environment. Key Responsibilities Risk & Program Management * Partner with the Governance Advisor ... Launch and review risk assessments across operational, financial, legal/compliance, reputational ...

Security Control Assessor

Arlington, VA · On-site

$120K - $145K/yr

... environments. * Experience working directly with system owners, ISSOs, ISSMs, security engineers, and Authorizing Official representatives. * Familiarity with security assessment reports, risk ...

Showing results 21-40

Freelance Environmental Risk Assessor information

What does a freelance environmental risk assessor do?

A Freelance Environmental Risk Assessor evaluates potential environmental hazards associated with various projects, such as construction or industrial operations. They analyze data, conduct site visits, and prepare reports to identify risks to human health and the environment. Working independently, they provide recommendations for mitigating these risks and ensure compliance with environmental regulations. Their clients may include government agencies, private companies, or non-profit organizations.

How do freelance environmental risk assessors manage multiple projects and clients simultaneously?

Freelance environmental risk assessors often juggle several projects at once, each with its own deadlines, compliance requirements, and stakeholders. Effective time management and clear communication are essential, as you’ll need to coordinate site visits, data analysis, reporting, and client meetings. Many use project management tools and maintain detailed schedules to track deliverables and ensure all client expectations are met. Regular updates and transparent reporting help build trust and foster long-term client relationships, which are crucial for repeat business and referrals in the freelance sector.

What skills and qualifications are needed to thrive as a freelance environmental risk assessor?

To thrive as a Freelance Environmental Risk Assessor, you need a strong background in environmental science, risk analysis, and regulatory compliance, typically supported by a relevant degree and professional experience. Familiarity with GIS software, environmental modeling tools, and knowledge of environmental regulations and certifications such as ISO 14001 are important. Excellent communication, analytical thinking, and project management skills help you effectively interpret data and present findings to clients. These skills and qualifications are essential for providing accurate assessments, ensuring regulatory adherence, and maintaining client trust in diverse environmental projects.
What job categories do people searching Freelance Environmental Risk Assessor jobs in Virginia look for? The top searched job categories for Freelance Environmental Risk Assessor jobs in Virginia are:
What cities in Virginia are hiring for Freelance Environmental Risk Assessor jobs? Cities in Virginia with the most Freelance Environmental Risk Assessor job openings:

Security Control Assessor

SAIC

Springfield, VA • On-site

Full-time

Posted 12 days ago


SAIC rating

7.9

Company rating: 7.9 out of 10

Based on 79 frontline employees who took The Breakroom Quiz

76th of 221 rated it services


Job description

Job Description
Description
SAIC is seeking a highly skilled and motivatedSenior Security Control Assessor (SCA)to support the cybersecurity assessment and compliance needs of mission-critical IT systems for theMAJESTIC Joint Program Office (JPO) Team.The successful candidate will perform independent assessments of security controls to ensure compliance with federal cybersecurity policies, standards, and frameworks, such as the Risk Management Framework (RMF), NIST SP 800-53, and others, to manage and mitigate risks to sensitive and classified systems.
This role will require working closely with Information System Security Managers (ISSMs), Information System Owners (ISOs), and system administrators to conduct technical reviews, evaluate security controls, and assist with Authorization and Accreditation (A&A) efforts. This role requireson-site support in Springfield, VA.
Key Responsibilities:
  • Conduct independent, objective, and robust assessments of IT systems to validate compliance with security control requirements in alignment withNIST 800-53, RMF, DoD 8510.01, and other applicable federal cybersecurity regulations
  • Review and assessAuthorization Boundary Diagrams (ABDs), Risk Assessment Reports (RARs), Security Plan Packages (SSPs), STIG checklists, vulnerability scan results, POA&Ms, and other security artifacts required for A&A efforts
  • LeadControl Implementation Review and Test (CIRT)procedures and system-level security assessments to evaluate the adequacy of technical, operational, and management security controls
  • Provideformal recommendations on system authorization statusto Authorizing Officials (AOs), based on assessment results, residual risks, and system compliance to applicable policies
  • Analyze and interpretvulnerability scan results(e.g., from ACAS, Nessus, or Qualys) and assist in presenting the organization's vulnerability management posture to relevant stakeholders
  • Performcontinuous monitoring assessmentsof information systems to identify risks, ensure ongoing compliance, and document changes impacting the security posture of systems
  • Assess and validate security hardening practices using theDISA STIGs or CIS Benchmarksacross systems, applications, and networks
  • Conduct risk analysis and recommend risk mitigation strategies and control adjustments to minimize threats to system operations and data integrity
  • Interface with system engineers, ISSOs, and stakeholders to resolve identified vulnerabilities and ensure timely remediation of risks
  • Provide recommendations to improve current processes, tools, and documentation for security control assessments
  • Compile and present comprehensive reports, includingSecurity Assessment Reports (SARs)and risk assessment summaries, to senior stakeholders for decision-making
  • Maintain up-to-date expertise on cybersecurity threats, technologies, regulatory frameworks, and compliance best practices

Qualifications
Required Qualifications:
Certifications (CWF Requirements):
  • Candidates must satisfyCybersecurity Workforce Framework (CWF)ID 612 (Security Control Assessor)requirements, as outlined byNavy COOL
    This requirement can be met by possessing one or more of the following qualifyingcertifications:
  • Certified in Governance Risk and Compliance (CGRC)
  • Certified Information Systems Security Officer (C)ISSO-A)
  • CompTIA Cloud+
  • CompTIA PenTest+
  • CompTIA Security+
  • CompTIA SecurityX (formerly CASP+)
  • Federal IT Security Professional-Auditor-NG (FITSP-A)
  • GIAC Cloud Security Automation (GCSA)
  • GIAC Security Essentials Certification (GSEC)
  • Certified Chief Information Security Officer (CCISO)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • Certified Information Systems Security Professional (CISSP)
  • CompTIA Cybersecurity Analyst (CySA+)
  • GIAC Security Leadership Certification (GSLC)
  • GIAC Systems and Network Auditor (GSNA)
  • Information Systems Security Engineering Professional (ISSEP)
    OR This requirement can be met through:
  • ABachelor's Degreein Cybersecurity, Computer Science, IT, or a related field
Experience:
  • 5-9 yearsof professional experience managing and supporting enterprise-levelIT environments
Technical Skills:
  • Familiarity with IT environments running enterprise systems, such as Windows Server 2019, MS SQL databases, and Linux distributions (RHEL preferred)
  • Knowledge of incident response functions, security architecture, and penetration testing frameworks (e.g., METASPLOIT, Kali Linux)
  • Strong analytical and documentation skills, with the ability to author comprehensive Security Assessment Reports (SARs) and other system artifacts
Preferred Qualifications:
  • Familiarity with IT environments running enterprise systems, such as Windows Server 2019, MS SQL databases, and Linux distributions (RHEL preferred)
  • Knowledge of incident response functions, security architecture, and penetration testing frameworks (e.g., METASPLOIT, Kali Linux)
  • Strong analytical and documentation skills, with the ability to author comprehensive Security Assessment Reports (SARs) and other system artifacts
Clearance Requirement:
  • ActiveTS/SCIclearance with the ability to obtain and maintain aTS/SCI with Poly
Work Environment and Notes:
  • On-Site Work:All work must be conductedon-sitein Springfield, VA
  • Program Scope:Supports on-premises enterprise IT environments, including virtualized Windows servers, MS SQL Server databases, and networking layers
  • Subcontractor Role:Responsibilities and compensation vary based on the subcontract agreement, with a competitive salary aligned to market rates and role-specific requirements

Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
Overview
SAIC accepts applications on an ongoing basis and there is no deadline.
SAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.
We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom