1

Security Control Assessor Jobs in Virginia (NOW HIRING)

Security Control Assessment. * NIST SP800-37. * NIST SP800-53/53a. * Risk Management. * SAFR Requirements. * Information Security Policy. * Vulnerability Identification. * Compliance Frameworks.

New

Security Control Assessor (SCA) LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA) LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA) LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Showing results 21-40

Security Control Assessor information

See Virginia salary details

$8

$58

$77

How much do security control assessor jobs pay per hour?

As of Sep 12, 2026, the average hourly pay for security control assessor in Virginia is $58.26, according to ZipRecruiter salary data. Most workers in this role earn between $50.05 and $67.45 per hour, depending on experience, location, and employer.

What is a security control assessor?

Security Control Assessors (SCAs) are professionals responsible for evaluating the security controls of information systems to ensure they meet required standards and regulations. They conduct assessments, document findings, and provide recommendations to help organizations manage risk and achieve compliance with frameworks such as NIST or FISMA. SCAs play a critical role in maintaining the security and integrity of sensitive data by identifying vulnerabilities and verifying that corrective actions are implemented effectively.

What are the main challenges security control assessors face when evaluating complex information systems?

Security Control Assessors often encounter challenges such as rapidly evolving security threats, integrating new technologies, and ensuring compliance with multiple frameworks (like NIST, FISMA, or RMF). Assessing large, interconnected systems requires attention to detail and strong analytical skills to identify vulnerabilities and recommend effective controls. Collaboration with system owners, IT staff, and auditors is essential to obtain comprehensive documentation and clarify system boundaries, which can be a demanding part of the assessment process.

What are the key skills and qualifications needed to thrive as a security control assessor, and why are they important?

To thrive as a Security Control Assessor, you need expertise in information security principles, risk management frameworks like NIST RMF, and a relevant bachelor's degree or equivalent work experience. Familiarity with security assessment tools, compliance management systems, and certifications such as CISSP, CISA, or CAP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial for evaluating security controls and reporting findings clearly. These skills ensure accurate risk assessments, regulatory compliance, and robust protection of organizational information assets.

What is the difference between Security Control Assessor vs Security Analyst?

AspectSecurity Control AssessorSecurity Analyst
CertificationsRisk Management Framework (RMF), CISSP, CISACISSP, Security+
Work EnvironmentFederal agencies, DoD, government complianceCorporate, cybersecurity teams, IT departments
ResponsibilitiesAssess security controls, ensure compliance, auditMonitor security, analyze threats, implement security measures

The Security Control Assessor primarily evaluates security controls for compliance and risk management, often within government agencies. In contrast, the Security Analyst focuses on monitoring and analyzing security threats to protect organizational assets. While both roles require cybersecurity knowledge and certifications like CISSP, their focus areas and work environments differ significantly.

How much do security control assessors make?

Security Control Assessors in the federal government or related sectors typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Salaries can vary based on agency, level of clearance, and specific responsibilities, with higher pay often associated with specialized skills and certifications like CISSP or CISA.

What are popular job titles related to Security Control Assessor jobs in Virginia?

For Security Control Assessor jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Security Control Assessor jobs in Virginia look for?

The top searched job categories for Security Control Assessor jobs in Virginia are:

What cities in Virginia are hiring for Security Control Assessor jobs?

Cities in Virginia with the most Security Control Assessor job openings:

What are popular job titles related to Security Control Assessor jobs in VA?

For Security Control Assessor jobs in VA, the most frequently searched job titles are:

Infographic showing various Security Control Assessor job openings in Virginia as of September 2026, with employment types broken down into 100% Full Time. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $121,188 per year, or $58.3 per hour.

Security Control Assessor

Richmond, VA

CYNET SYSTEMS
IT Services • 501 - 1,000 employees

$61 - $66/hr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 3 days ago

New


Job description

Job Overview:

Pay Range: $61.08hr - $66.08hr

Requirement/Must Have:

  • Bachelor's degree in computer science, Information Security, or equivalent experience.
  • Proven experience with conducting security assessments.
  • Knowledge of compliance frameworks and continuous authorization processes.
  • Knowledge of NIST SP800-37, SP800-53/53a.
  • Strong verbal and written communication skills and the ability to work collaboratively.
  • Experience reviewing data and advising customers on SAFR requirements and best practices.
  • Ability to build strong collaboration and negotiation relationships.
  • Creativity and strong attention to detail.
  • Understanding and application of risk management discipline in decision making.

Responsibilities:

  • Conduct thorough evaluations of information security controls to identify potential threats and vulnerabilities to information systems.
  • Perform detailed reviews of security controls, policies, and procedures to prioritize risks and recommend enhancements that support organizational security goals.
  • Review data and assist in advising districts on best practices and how to implement necessary changes to address business and information security needs.
  • Participate in project development surrounding new processes and the integration of new processes with existing ones.
  • Assist in developing communications of process changes to impacted clients and other resources.
  • Perform other related duties as assigned.

Nice to Have:

  • Certifications such as CISSP, CISA, CISM.
  • Experience in a policy and assurance or quasi-governmental environment.
  • Familiarity with cloud service providers and associated security challenges.
  • Knowledge of SAFR lifecycle compliance and testing.
  • Experience building strong interpersonal collaboration and negotiation relationships.

Skills:

  • Security Control Assessment.
  • NIST SP800-37.
  • NIST SP800-53/53a.
  • Risk Management.
  • SAFR Requirements.
  • Information Security Policy.
  • Vulnerability Identification.
  • Compliance Frameworks.

Qualification And Education:

  • 3+ years of relevant work experience.

Physical Requirements(Due to nature of job, The candidate must have):

  • Ability to sit for prolonged periods of time.
  • Ability to stand.
  • Ability to lift 20 lbs.
  • Ability to carry 20 lbs.
  • Ability to push 20 lbs.
  • Ability to pull 20 lbs.

Benefits:

Our Benefits Include:

  • Medical, Dental, and Vision Insurance
  • 401(k) Retirement Plan
  • Health Savings Account (HSA)
  • Disability Insurance (Short-Term and Long-Term)
  • Life and AD&D Insurance
  • Paid Sick Leave (where required by applicable state or local law)
  • Supplemental Insurance Plans
  • Identity Theft Protection
  • Pet Insurance
  • Employee Wellness Programs
  • Employee Assistance Program (EAP)
  • Career Growth and Professional Development Opportunities

Disclaimer: Benefits eligibility, accrual rates, and usage limits may vary based on employment status, length of service, and work location. Paid Sick Leave is provided in strict accordance with applicable state and municipal mandates. Cynet Systems Inc. reserves the right to modify, amend, or terminate any benefit plans at any time in accordance with applicable laws.


About Cynet Systems


Founded in 2010 and headquartered in the Washington, DC metro area, Cynet Systems Inc. is a leading technology staffing and workforce solutions company serving Fortune 500 companies, government agencies, and enterprise organizations across the United States and Canada. We deliver agile, scalable talent solutions across IT, engineering, life sciences, clinical, and professional staffing, powered by a high-performing recruitment engine operating across North America and Asia.

As a nationally and locally certified Minority Business Enterprise (MBE), Cynet Systems is committed to helping organizations build high-performing teams while empowering professionals to grow rewarding careers. Our organization is certified to ISO 9001, ISO 14001, ISO 27001, and SOC 2 Type II standards, reflecting our commitment to quality, security, operational excellence, and customer success.


Cynet Systems logo

About Cynet Systems

Sourced by ZipRecruiter

Cynet Systems Inc is a staffing and recruiting corporation nestled in Ashburn, VA, USA. Established in 2010, the company operates within the Information Technology and Services sector, specializing in providing effective workforce solutions to different business needs, including IT consulting, direct hire, and contract staffing services. Through the years, Cynet Systems has built an impressive portfolio, going beyond borders and expanding its operations internationally in Canada and India. Rooted in its core values of teamwork, leadership, and commitment, Cynet Systems helps businesses unlock their full potential by providing versatile and competent professionals that perfectly align with their needs. Fueled by their unwavering mission to deliver top-tier talent to businesses worldwide, Cynet Systems garnered various recognitions including SIA's fastest-growing staffing firms and Best Place to Work in Virginia for 2019.

Industry

It services

Company size

501 - 1,000 Employees

Headquarters location

Sterling, VA, US

Year founded

2010

Social media