1

Security Control Assessor Jobs in Illinois (NOW HIRING)

next page

Showing results 1-20

Security Control Assessor information

See Illinois salary details

$8

$56

$75

How much do security control assessor jobs pay per hour?

As of Aug 24, 2026, the average hourly pay for security control assessor in Illinois is $56.95, according to ZipRecruiter salary data. Most workers in this role earn between $48.89 and $65.91 per hour, depending on experience, location, and employer.

What is a security control assessor?

Security Control Assessors (SCAs) are professionals responsible for evaluating the security controls of information systems to ensure they meet required standards and regulations. They conduct assessments, document findings, and provide recommendations to help organizations manage risk and achieve compliance with frameworks such as NIST or FISMA. SCAs play a critical role in maintaining the security and integrity of sensitive data by identifying vulnerabilities and verifying that corrective actions are implemented effectively.

What are the main challenges security control assessors face when evaluating complex information systems?

Security Control Assessors often encounter challenges such as rapidly evolving security threats, integrating new technologies, and ensuring compliance with multiple frameworks (like NIST, FISMA, or RMF). Assessing large, interconnected systems requires attention to detail and strong analytical skills to identify vulnerabilities and recommend effective controls. Collaboration with system owners, IT staff, and auditors is essential to obtain comprehensive documentation and clarify system boundaries, which can be a demanding part of the assessment process.

What are the key skills and qualifications needed to thrive as a security control assessor, and why are they important?

To thrive as a Security Control Assessor, you need expertise in information security principles, risk management frameworks like NIST RMF, and a relevant bachelor's degree or equivalent work experience. Familiarity with security assessment tools, compliance management systems, and certifications such as CISSP, CISA, or CAP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial for evaluating security controls and reporting findings clearly. These skills ensure accurate risk assessments, regulatory compliance, and robust protection of organizational information assets.

What is the difference between Security Control Assessor vs Security Analyst?

AspectSecurity Control AssessorSecurity Analyst
CertificationsRisk Management Framework (RMF), CISSP, CISACISSP, Security+
Work EnvironmentFederal agencies, DoD, government complianceCorporate, cybersecurity teams, IT departments
ResponsibilitiesAssess security controls, ensure compliance, auditMonitor security, analyze threats, implement security measures

The Security Control Assessor primarily evaluates security controls for compliance and risk management, often within government agencies. In contrast, the Security Analyst focuses on monitoring and analyzing security threats to protect organizational assets. While both roles require cybersecurity knowledge and certifications like CISSP, their focus areas and work environments differ significantly.

How much do security control assessors make?

Security Control Assessors in the federal government or related sectors typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Salaries can vary based on agency, level of clearance, and specific responsibilities, with higher pay often associated with specialized skills and certifications like CISSP or CISA.

What are the most commonly searched types of Security Control Assessor jobs in Illinois?

The most popular types of Security Control Assessor jobs in Illinois are:

What are popular job titles related to Security Control Assessor jobs in Illinois?

For Security Control Assessor jobs in Illinois, the most frequently searched job titles are:

What job categories do people searching Security Control Assessor jobs in Illinois look for?

The top searched job categories for Security Control Assessor jobs in Illinois are:

What cities in Illinois are hiring for Security Control Assessor jobs?

Cities in Illinois with the most Security Control Assessor job openings:

What are popular job titles related to Security Control Assessor jobs in IL?

For Security Control Assessor jobs in IL, the most frequently searched job titles are:

Infographic showing various Security Control Assessor job openings in Illinois as of August 2026, with employment types broken down into 1% As Needed, 72% Full Time, 24% Part Time, 2% Contract, and 1% Nights. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution, with an average salary of $118,450 per year, or $56.9 per hour.

Security Control Assessor Representative

Electrosoft

Belleville, IL โ€ข On-site

Full-time

Re-posted 29 days ago


Job description

Security Control Assessor Representative

Job descriptionย 

Electrosoft is seeking a Security Control Assessor Representative (SCAR) - to support our DoD customer at Scott Air Force Base, IL.ย ย ย  The SCAR will independently assess the adequacy and compliance of security controls applied to the agency on behalf of the Government SCA and Authorizing Official (AO). SCAR personnel will assist Government personnel with the overall responsibility to conduct independent comprehensive assessments of the management, operational, privacy and technical security controls and controls enhancements employed within or inherited by an IT system to determine the overall effectives of the controls for more than 40 Programs of Record in use across the Enterprise. The SCAR will collect, provide, and maintain current documentation on authorization processes and procedures.ย 

Duties & Responsibilities:

  • Assess, identify, and provide to the Government, for AO approval, a listing of recommended enterprise security controls/enhancements that provide mission assurance for cyber USTRANCOM terrain systems supporting USTRANSCOM's mission.
  • Provide SME support for RMF activities within and/or outside Enterprise Mission Assurance Support Service (eMASS) or other tool as designated by the Government.ย 
  • Provide technical and operational analyses of supporting artifacts and provide risk analysis recommendations to the SCA.
  • Perform triage of authorization, POA&M, System Security Plan, System Categorization, and risk acceptance requests using the Govt RMF Artifact Quality Rubric.ย 
  • Identify non-compliant submissions, document in the Package Return Report (PRR), and submit to the Government SCA for approval and signature.ย 
  • Review security artifacts provided by program offices or other organizations and assess both technical and functional adequacy of cybersecurity/Information Assurance (IA) controls.
  • Perform the Independent Verification and Validation (IV&V) role within eMASS on NIPRNet and SIPRNet, verifying that controls are in-place, operating as intended, producing desired outcomes, and providing feedback to submitters on non-compliant security controls, adequacy of artifacts, and POA&M items, and provide the required PRR as needed.
  • Compile Authorization Official package to include risk assessment, required artifacts, and required approval documents to support risk recommendations to the AO in accordance with Government guidance.
  • Review and coordinate RMF packages such as categorizations, security plans and POA&Ms for signature by approved authorities as designated by the Government and IAW suspense assigned by the Government.
  • Manage eMASS user accounts (i.e., add, delete, and assign/update roles) for the customers instance of eMASS per Government direction.ย 
  • Track status of checklists and packages from submission through approval or disapproval decision by the AO.
ย 
Qualifications/Certifications:
  • Must have a current 8140 Cyber Security compliant certification in one of the following: CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySA+, GSLC or GSNA
  • Minimum of 5 to 7 years of related experience
  • Requires Active DoD Secret security clearance
  • Thorough understanding and experience with DoD RMF tool eMASS
  • Excellent written and verbal communication skills, demonstrating the ability to present material to senior DoD and non-DoD officials.
  • Able to communicate effectively with senior leaders and customers to clearly present technical approaches and findings.
  • Demonstrated knowledge and understanding of the DoD mission
  • Experience with Ports, Protocols, Services Management (PPSM) is desired
  • Masters or higher in: Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology and Software Engineering