1

Security Control Assessor Jobs in Silver Spring, MD

Security Control Assessor (SCA) LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA) LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA)

Washington, DC ยท On-site

$160K - $172K/yr

Security Control Assessor (SCA) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the ...

Showing results 41-60

Security Control Assessor information

See Silver Spring, MD salary details

$9

$60

$80

How much do security control assessor jobs pay per hour?

As of Sep 3, 2026, the average hourly pay for security control assessor in Silver Spring, MD is $60.75, according to ZipRecruiter salary data. Most workers in this role earn between $52.16 and $70.34 per hour, depending on experience, location, and employer.

What is a security control assessor?

Security Control Assessors (SCAs) are professionals responsible for evaluating the security controls of information systems to ensure they meet required standards and regulations. They conduct assessments, document findings, and provide recommendations to help organizations manage risk and achieve compliance with frameworks such as NIST or FISMA. SCAs play a critical role in maintaining the security and integrity of sensitive data by identifying vulnerabilities and verifying that corrective actions are implemented effectively.

What are the main challenges security control assessors face when evaluating complex information systems?

Security Control Assessors often encounter challenges such as rapidly evolving security threats, integrating new technologies, and ensuring compliance with multiple frameworks (like NIST, FISMA, or RMF). Assessing large, interconnected systems requires attention to detail and strong analytical skills to identify vulnerabilities and recommend effective controls. Collaboration with system owners, IT staff, and auditors is essential to obtain comprehensive documentation and clarify system boundaries, which can be a demanding part of the assessment process.

What are the key skills and qualifications needed to thrive as a security control assessor, and why are they important?

To thrive as a Security Control Assessor, you need expertise in information security principles, risk management frameworks like NIST RMF, and a relevant bachelor's degree or equivalent work experience. Familiarity with security assessment tools, compliance management systems, and certifications such as CISSP, CISA, or CAP is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial for evaluating security controls and reporting findings clearly. These skills ensure accurate risk assessments, regulatory compliance, and robust protection of organizational information assets.

What is the difference between Security Control Assessor vs Security Analyst?

AspectSecurity Control AssessorSecurity Analyst
CertificationsRisk Management Framework (RMF), CISSP, CISACISSP, Security+
Work EnvironmentFederal agencies, DoD, government complianceCorporate, cybersecurity teams, IT departments
ResponsibilitiesAssess security controls, ensure compliance, auditMonitor security, analyze threats, implement security measures

The Security Control Assessor primarily evaluates security controls for compliance and risk management, often within government agencies. In contrast, the Security Analyst focuses on monitoring and analyzing security threats to protect organizational assets. While both roles require cybersecurity knowledge and certifications like CISSP, their focus areas and work environments differ significantly.

How much do security control assessors make?

Security Control Assessors in the federal government or related sectors typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Salaries can vary based on agency, level of clearance, and specific responsibilities, with higher pay often associated with specialized skills and certifications like CISSP or CISA.

What are the most commonly searched types of Security Control Assessor jobs in Silver Spring, MD?

The most popular types of Security Control Assessor jobs in Silver Spring, MD are:

What are popular job titles related to Security Control Assessor jobs in Silver Spring, MD?

For Security Control Assessor jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Security Control Assessor jobs in Silver Spring, MD look for?

The top searched job categories for Security Control Assessor jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Security Control Assessor jobs?

Cities near Silver Spring, MD with the most Security Control Assessor job openings:

Infographic showing various Security Control Assessor job openings in Silver Spring, MD as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 18% Part Time, 4% Contract, and 1% Nights. Highlights an 94% Physical, 1% Hybrid, and 5% Remote job distribution, with an average salary of $126,365 per year, or $60.8 per hour.

Security Control Assessor (SCA)

Cymertek Corporation

Reston, VA โ€ข On-site

Full-time

Re-posted 29 days ago


Job description

Job Summary:
Cymertek Corporation is seeking a meticulous and detail-oriented Security Control Assessor (SCA) to join their team and ensure that their information systems meet the highest standards of security and compliance. The role involves assessing and evaluating the effectiveness of security controls, identifying vulnerabilities, and ensuring compliance with relevant security frameworks and regulations.
Responsibilities:
โ€ข Assess the effectiveness of security controls in information systems
โ€ข Conduct security control testing and evaluations
โ€ข Identify security gaps and vulnerabilities in systems
โ€ข Collaborate with cross-functional teams to review and implement security controls
โ€ข Ensure compliance with industry standards and regulations (e.g., NIST, FISMA)
โ€ข Provide detailed reports with findings and recommendations for remediation
Qualifications:
Required:
โ€ข TS/SCI Full Poly (Please note this position requires full U.S. Citizenship)
โ€ข Bachelor's Degree
โ€ข Proficiency in security frameworks (e.g., NIST, ISO 27001)
โ€ข Strong understanding of security control testing and evaluation methods
โ€ข Experience with security audits and risk assessments
โ€ข Knowledge of regulatory compliance requirements (e.g., HIPAA, GDPR)
โ€ข Ability to interpret and apply security policies and procedures
โ€ข Familiarity with vulnerability scanning and management tools
Preferred:
โ€ข Experience with Security Information and Event Management (SIEM) tools
โ€ข Knowledge of penetration testing techniques and tools
โ€ข Familiarity with risk management frameworks (e.g., OCTAVE, FAIR)
โ€ข Experience with continuous monitoring and automated security assessments
โ€ข Proficiency in writing technical security documentation and reports
โ€ข Knowledge of cloud security architectures and controls
Company:
With headquarters in Maryland, Cymertek [/'sฤซ-mer-tek/] Corporation provides superior consulting services for the implementation of high quality information systems. Founded in 2010, the company is headquartered in Laurel, USA, with a team of 11-50 employees. The company is currently Early Stage.