1

Security Control Assessor Jobs in Colorado (NOW HIRING)

Security Control Assessor (SCA) LOCATION Aurora, CO 80014 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA) LOCATION Aurora, CO 80014 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA)

Aurora, CO ยท On-site

$140K - $210K/yr

Overview VTG is looking for multiple levels (Level 2, 3 & 4) of a Security Control Assessor (SCA) in multiple locations. (Note: position is contingent upon program award and the postions are located ...

Security Control Assessor (SCA)

Aurora, CO ยท On-site

$140K - $210K/yr

Overview VTG is looking for multiple levels (Level 2, 3 & 4) of a Security Control Assessor (SCA) in multiple locations. (Note: position is contingent upon program award and the postions are located ...

Overview VTG is looking for multiple levels (Level 2, 3 & 4) of a Security Control Assessor (SCA) in multiple locations. (Note: position is contingent upon program award and the postions are located ...

next page

Showing results 1-20

Security Control Assessor information

See Colorado salary details

$9

$61

$82

How much do security control assessor jobs pay per hour?

As of Aug 7, 2026, the average hourly pay for security control assessor in Colorado is $61.79, according to ZipRecruiter salary data. Most workers in this role earn between $53.08 and $71.54 per hour, depending on experience, location, and employer.

How much do security control assessors make?

Security Control Assessors in the federal government or related sectors typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Salaries can vary based on agency, level of clearance, and specific responsibilities, with higher pay often associated with specialized skills and certifications like CISSP or CISA.

What are the key skills and qualifications needed to thrive as a security control assessor, and why are they important?

To thrive as a Security Control Assessor, you need expertise in information security principles, risk management frameworks like NIST RMF, and a relevant bachelor's degree or equivalent work experience. Familiarity with security assessment tools, compliance management systems, and certifications such as CISSP, CISA, or CAP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial for evaluating security controls and reporting findings clearly. These skills ensure accurate risk assessments, regulatory compliance, and robust protection of organizational information assets.

What is the difference between Security Control Assessor vs Security Analyst?

AspectSecurity Control AssessorSecurity Analyst
CertificationsRisk Management Framework (RMF), CISSP, CISACISSP, Security+
Work EnvironmentFederal agencies, DoD, government complianceCorporate, cybersecurity teams, IT departments
ResponsibilitiesAssess security controls, ensure compliance, auditMonitor security, analyze threats, implement security measures

The Security Control Assessor primarily evaluates security controls for compliance and risk management, often within government agencies. In contrast, the Security Analyst focuses on monitoring and analyzing security threats to protect organizational assets. While both roles require cybersecurity knowledge and certifications like CISSP, their focus areas and work environments differ significantly.

What are the main challenges security control assessors face when evaluating complex information systems?

Security Control Assessors often encounter challenges such as rapidly evolving security threats, integrating new technologies, and ensuring compliance with multiple frameworks (like NIST, FISMA, or RMF). Assessing large, interconnected systems requires attention to detail and strong analytical skills to identify vulnerabilities and recommend effective controls. Collaboration with system owners, IT staff, and auditors is essential to obtain comprehensive documentation and clarify system boundaries, which can be a demanding part of the assessment process.

What is a security control assessor?

Security Control Assessors (SCAs) are professionals responsible for evaluating the security controls of information systems to ensure they meet required standards and regulations. They conduct assessments, document findings, and provide recommendations to help organizations manage risk and achieve compliance with frameworks such as NIST or FISMA. SCAs play a critical role in maintaining the security and integrity of sensitive data by identifying vulnerabilities and verifying that corrective actions are implemented effectively.
What are popular job titles related to Security Control Assessor jobs in Colorado? For Security Control Assessor jobs in Colorado, the most frequently searched job titles are:
What job categories do people searching Security Control Assessor jobs in Colorado look for? The top searched job categories for Security Control Assessor jobs in Colorado are:
What cities in Colorado are hiring for Security Control Assessor jobs? Cities in Colorado with the most Security Control Assessor job openings:
What are popular job titles related to Security Control Assessor jobs in CO? For Security Control Assessor jobs in CO, the most frequently searched job titles are:
Infographic showing various Security Control Assessor job openings in Colorado as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 19% Part Time, and 3% Contract. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution, with an average salary of $128,533 per year, or $61.8 per hour.

Security Control Assessor

ITI Solutions, Inc

Colorado Springs, CO โ€ข On-site

$90K - $102K/yr

Full-time

Posted 29 days ago


Job description

Location: Peterson SFB, Colorado Springs, Colorado
ITI Solutions is seeking a Security Control Assessor to support an effort to develop, implement, manage, and maintain a Risk Management Framework Cybersecurity Program at Peterson Space Force Base, Colorado. The effort provides cybersecurity services, conducts cybersecurity technical assessments, and participates in cybersecurity technical investigations.
About ITI Solutions, Inc.
ITI Solutions, Inc. is a Service-Disabled Veteran-Owned Small Business (SDVOSB) with a strong track record supporting Department of Defense (DoD) programs, including U.S. Army vehicle production, sustainment, and modernization efforts.
Founded by a Service-Disabled Veteran, we bring mission-driven expertise in engineering support, logistics coordination, and program execution to critical national defense initiatives.
As an Equal Opportunity Employer, ITI Solutions is committed to fostering a diverse, inclusive, and respectful workplace. We do not discriminate in employment decisions on the basis of race, color, religion, national origin, sex, gender, gender identity, sexual orientation, age, disability, protected veteran status, genetic information, or any other characteristic protected by applicable federal, state, or local law. We are dedicated to providing equal employment opportunities to all applicants and employees and maintaining a work environment that is free from discrimination and harassment.
Responsibilities:
  • Analyze, assess, validate, and provide recommendations on cybersecurity RMF packages to support the assessment and accreditation of emerging cybersecurity capabilities and methodologies.
  • Develop and deliver Cyber Risk Assessment reports.
  • Review requests for use of Commercial Internet Service Providers (CISPs) and advise, assist, and provide recommendations to the government on the quality of the submission.
  • Review requests for use of Commercial Satellite Communication and advise, assist, and provide recommendations to the government on the quality of the submission.
  • Schedule and attend meetings and conferences as required to support cybersecurity assessments and processes.
  • Review the Evaluated/Approved Products List (E/APL) to ensure tools requested for use within the Space Authorization Boundary are certified for Space and DoD/US intelligence information systems and applications and provide recommendations to the government.
  • Provide subject matter expertise to analyze the results of system scans and Security Technical Implementation Guides (STIGs) to support the government's management of vulnerabilities and ensure policy compliance.

Experience/Skills:
  • Minimum of 5 years of experience implementing, monitoring, and assessing Risk Management Framework security controls.
  • Strong analytical skills.
  • Excellent verbal and written communication skills.
  • Experience as a Security Control Assessor on behalf of a Department of Defense agency is highly desired.
  • Experience with US Space Force or USAF Space Command systems is highly desirable.

Education:
  • A BS degree in an IT-related field is required.
  • An advanced degree is highly desired

Certifications:
  • Security+ CE or equivalent is required.
  • Other cybersecurity certifications, including CISSP, Certified Ethical Hacker, Certified Authorization Professional, Systems Security Certified Practitioner, etc. are highly desired.

Clearance:
  • Must be a US Citizen and, at a minimum, hold a current Top Secret clearance with TS/SCI eligibility.

Salary Range:
  • The salary will be set based on experience, geographic location and possibly contractual requirements.