1

Ia Assessor Jobs (NOW HIRING)

IA Lead

Washington, DC ยท On-site

$131K - $237K/yr

Leidos' Information Assurance (IA) branch is responsible for ensuring the confidentiality ... Conducting regular security assessments, vulnerability scans, and risk analyses to identify ...

Security Control Assessor (SCA), Level II Location: Kirtland, AFB NM Clearance Required: TS/SCI ... IAM Level I (in lieu of IAT Level III) DoD 8570 IA Type IAT Level 3 or IAM Level 1 EEO Statement:

Showing results 21-40

Ia Assessor information

See salary details

$32.5K

$75.3K

$125.5K

How much do ia assessor jobs pay per year?

As of Sep 11, 2026, the average yearly pay for ia assessor in the United States is $75,259.00, according to ZipRecruiter salary data. Most workers in this role earn between $46,000.00 and $97,000.00 per year, depending on experience, location, and employer.

What is an IA assessor?

An IA Assessor, short for Information Assurance Assessor, is a professional responsible for evaluating the security and integrity of information systems. They assess whether systems comply with relevant security policies, standards, and regulations, often within government or defense environments. Their work involves conducting risk assessments, reviewing security controls, and recommending mitigation strategies to ensure data protection. IA Assessors play a critical role in safeguarding sensitive information and supporting organizational compliance with cybersecurity frameworks.

What are the key skills and qualifications needed to thrive as an IA assessor, and why are they important?

To thrive as an IA Assessor, you need a solid background in information security, risk management, compliance frameworks (such as NIST or ISO), and typically hold a relevant degree or certifications like CISSP or CISA. Familiarity with security assessment tools, vulnerability scanning systems, and compliance management platforms is common in this role. Attention to detail, analytical thinking, and strong communication skills are essential for accurately evaluating systems and reporting findings. These competencies ensure that organizational information assets remain secure and compliant with regulatory standards.

What are some common challenges IA assessors face when evaluating complex IT systems, and how can they address them?

IA Assessors often encounter challenges such as incomplete documentation, rapidly evolving technologies, and coordinating with multiple stakeholders across departments. To address these, successful IA Assessors develop strong communication skills, maintain up-to-date knowledge of regulations and best practices, and leverage automated assessment tools when possible. Building collaborative relationships with system owners and IT teams is also crucial for gathering accurate information and ensuring that security recommendations are both practical and effective.

What is the difference between Ia Assessor vs Cybersecurity Analyst?

AspectIa AssessorCybersecurity Analyst
Required CredentialsCertifications like ISO 27001 Lead Auditor, CISSP, CISACISSP, CompTIA Security+, CEH
Work EnvironmentAudit and assess information security controls, often in office or client sitesMonitor networks, investigate threats, and implement security measures
Employer & Industry UsageUsed by organizations conducting security audits, compliance, and risk assessmentsEmployed by companies to protect systems, respond to incidents, and improve security

While both roles focus on information security, Ia Assessors primarily evaluate and audit security controls for compliance, whereas Cybersecurity Analysts actively monitor and defend systems against threats. Understanding these differences helps organizations assign the right security responsibilities.

What cities are hiring for Ia Assessor jobs?

Cities with the most Ia Assessor job openings:

What are popular job titles related to Ia Assessor jobs?

For Ia Assessor jobs, the most frequently searched job titles are:

Infographic showing various Ia Assessor job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 53% Full Time, 33% Part Time, and 13% Contract. Highlights an 85% Physical, 2% Hybrid, and 13% Remote job distribution, with an average salary of $75,259 per year, or $36.2 per hour.

Security Control Assessor Representative

Belleville, IL โ€ข On-site

Electrosoft
Network Securityย โ€ขย 51 - 200 employees

Full-time

Re-posted 18 days ago


Job description

Security Control Assessor Representative

Job descriptionย 

Electrosoft is seeking a Security Control Assessor Representative (SCAR) - to support our DoD customer at Scott Air Force Base, IL.ย ย ย  The SCAR will independently assess the adequacy and compliance of security controls applied to the agency on behalf of the Government SCA and Authorizing Official (AO). SCAR personnel will assist Government personnel with the overall responsibility to conduct independent comprehensive assessments of the management, operational, privacy and technical security controls and controls enhancements employed within or inherited by an IT system to determine the overall effectives of the controls for more than 40 Programs of Record in use across the Enterprise. The SCAR will collect, provide, and maintain current documentation on authorization processes and procedures.ย 

Duties & Responsibilities:

  • Assess, identify, and provide to the Government, for AO approval, a listing of recommended enterprise security controls/enhancements that provide mission assurance for cyber USTRANCOM terrain systems supporting USTRANSCOM's mission.
  • Provide SME support for RMF activities within and/or outside Enterprise Mission Assurance Support Service (eMASS) or other tool as designated by the Government.ย 
  • Provide technical and operational analyses of supporting artifacts and provide risk analysis recommendations to the SCA.
  • Perform triage of authorization, POA&M, System Security Plan, System Categorization, and risk acceptance requests using the Govt RMF Artifact Quality Rubric.ย 
  • Identify non-compliant submissions, document in the Package Return Report (PRR), and submit to the Government SCA for approval and signature.ย 
  • Review security artifacts provided by program offices or other organizations and assess both technical and functional adequacy of cybersecurity/Information Assurance (IA) controls.
  • Perform the Independent Verification and Validation (IV&V) role within eMASS on NIPRNet and SIPRNet, verifying that controls are in-place, operating as intended, producing desired outcomes, and providing feedback to submitters on non-compliant security controls, adequacy of artifacts, and POA&M items, and provide the required PRR as needed.
  • Compile Authorization Official package to include risk assessment, required artifacts, and required approval documents to support risk recommendations to the AO in accordance with Government guidance.
  • Review and coordinate RMF packages such as categorizations, security plans and POA&Ms for signature by approved authorities as designated by the Government and IAW suspense assigned by the Government.
  • Manage eMASS user accounts (i.e., add, delete, and assign/update roles) for the customers instance of eMASS per Government direction.ย 
  • Track status of checklists and packages from submission through approval or disapproval decision by the AO.
ย 
Qualifications/Certifications:
  • Must have a current 8140 Cyber Security compliant certification in one of the following: CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySA+, GSLC or GSNA
  • Minimum of 5 to 7 years of related experience
  • Requires Active DoD Secret security clearance
  • Thorough understanding and experience with DoD RMF tool eMASS
  • Excellent written and verbal communication skills, demonstrating the ability to present material to senior DoD and non-DoD officials.
  • Able to communicate effectively with senior leaders and customers to clearly present technical approaches and findings.
  • Demonstrated knowledge and understanding of the DoD mission
  • Experience with Ports, Protocols, Services Management (PPSM) is desired
  • Masters or higher in: Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology and Software Engineering