1

Security Control Assessor Jobs in Delaware (NOW HIRING)

... assessment documentation, validating outputs and ensuring sensitive data is handled appropriately ... control validation, ensuring traceability/auditability and alignment to resiliency and security ...

You will partner with Risk, Audit, Security, and technology teams to assess control effectiveness, identify compliance gaps, drive remediation plans, and provide transparent reporting on cyber risk ...

next page

Showing results 1-20

Security Control Assessor information

See Delaware salary details

$8

$58

$78

How much do security control assessor jobs pay per hour?

As of Aug 5, 2026, the average hourly pay for security control assessor in Delaware is $58.82, according to ZipRecruiter salary data. Most workers in this role earn between $50.53 and $68.08 per hour, depending on experience, location, and employer.

How much do security control assessors make?

Security Control Assessors in the federal government or related sectors typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Salaries can vary based on agency, level of clearance, and specific responsibilities, with higher pay often associated with specialized skills and certifications like CISSP or CISA.

What are the key skills and qualifications needed to thrive as a security control assessor, and why are they important?

To thrive as a Security Control Assessor, you need expertise in information security principles, risk management frameworks like NIST RMF, and a relevant bachelor's degree or equivalent work experience. Familiarity with security assessment tools, compliance management systems, and certifications such as CISSP, CISA, or CAP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial for evaluating security controls and reporting findings clearly. These skills ensure accurate risk assessments, regulatory compliance, and robust protection of organizational information assets.

What is the difference between Security Control Assessor vs Security Analyst?

AspectSecurity Control AssessorSecurity Analyst
CertificationsRisk Management Framework (RMF), CISSP, CISACISSP, Security+
Work EnvironmentFederal agencies, DoD, government complianceCorporate, cybersecurity teams, IT departments
ResponsibilitiesAssess security controls, ensure compliance, auditMonitor security, analyze threats, implement security measures

The Security Control Assessor primarily evaluates security controls for compliance and risk management, often within government agencies. In contrast, the Security Analyst focuses on monitoring and analyzing security threats to protect organizational assets. While both roles require cybersecurity knowledge and certifications like CISSP, their focus areas and work environments differ significantly.

What are the main challenges security control assessors face when evaluating complex information systems?

Security Control Assessors often encounter challenges such as rapidly evolving security threats, integrating new technologies, and ensuring compliance with multiple frameworks (like NIST, FISMA, or RMF). Assessing large, interconnected systems requires attention to detail and strong analytical skills to identify vulnerabilities and recommend effective controls. Collaboration with system owners, IT staff, and auditors is essential to obtain comprehensive documentation and clarify system boundaries, which can be a demanding part of the assessment process.

What is a security control assessor?

Security Control Assessors (SCAs) are professionals responsible for evaluating the security controls of information systems to ensure they meet required standards and regulations. They conduct assessments, document findings, and provide recommendations to help organizations manage risk and achieve compliance with frameworks such as NIST or FISMA. SCAs play a critical role in maintaining the security and integrity of sensitive data by identifying vulnerabilities and verifying that corrective actions are implemented effectively.
What are the most commonly searched types of Security Control Assessor jobs in Delaware? The most popular types of Security Control Assessor jobs in Delaware are:
What are popular job titles related to Security Control Assessor jobs in Delaware? For Security Control Assessor jobs in Delaware, the most frequently searched job titles are:
What job categories do people searching Security Control Assessor jobs in Delaware look for? The top searched job categories for Security Control Assessor jobs in Delaware are:
What are popular job titles related to Security Control Assessor jobs in DE? For Security Control Assessor jobs in DE, the most frequently searched job titles are:
Infographic showing various Security Control Assessor job openings in Delaware as of July 2026, with employment types broken down into 2% Locum Tenens, 37% Full Time, 5% Part Time, 1% Temporary, 1% Contract, and 54% Nights. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $122,341 per year, or $58.8 per hour.

Supplier Cybersecurity Assessor - Vice President

Chase

Newark, DE • On-site

Other

Posted 2 days ago

New


Chase Bank rating

8.1

Company rating: 8.1 out of 10

Based on 155 frontline employees who took The Breakroom Quiz

65th of 170 rated banks


Job description

Supplier Cybersecurity Assessor - Vice President

Are you ready to make a significant impact on the security of JPMorgan Chase's global supply chain? As a member of our Supplier Assurance Services (SAS) team, you will help safeguard our firm by evaluating and strengthening supplier cybersecurity controls. This is your opportunity to grow your career while protecting one of the world's leading financial institutions.

As a Supplier Cybersecurity Assessor - Vice President in Global Supplier Services, you will conduct comprehensive technology and cybersecurity control assessments of supplier environments, including services hosted in public cloud providers. You will partner with stakeholders to ensure the confidentiality, integrity, and availability of JPMorgan Chase's data and services. Your expertise will help drive improvements in our supplier risk posture and support the firm's overall defensive strategy.

Job Responsibilities:

  • Review supplier security stacks and conduct fieldwork with internal and external stakeholders to ensure alignment with JPMorganChase expectations.
  • Provide cybersecurity risk and controls expertise during onsite and virtual assessments of supplier control environments.
  • Identify cybersecurity risks and weaknesses within supplier IT and hosted cloud environments, and document remediation plans.
  • Stay informed of the latest cyber risks and adversarial tactics to maximize assessment effectiveness.
  • Identify and recommend process improvements to enhance operational efficiency and supplier risk posture, including expanded monitoring and key risk indicator tracking.

Required Qualifications, Capabilities, and Skills:

  • 10 years of experience in Technology, Technology Risk & Controls, Cyber Operations, Application Security, Cloud Security (SaaS, PaaS, IaaS), Network Security, or Cyber Resiliency within a large enterprise environment.
  • Subject matter expertise in cybersecurity operations, including defensive architectures and processes to address adversarial activities.
  • Proficiency in incident management, incident handling, investigations, and root cause analysis.
  • Strong written and verbal communication skills, with the ability to present complex cyber risks to senior management and business stakeholders.
  • Experience engaging with senior decision makers and constructively challenging when necessary.

Preferred Qualifications, Capabilities, and Skills:

  • Practical experience in red teaming, blue teaming, or penetration testing.
  • CISSP, CCSP, or similar cybersecurity certifications.

What Chase Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom