We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is ...
We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is ...
Junior Security Control Assessor
Bethesda, MD · On-site
$100K/yr
You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...
Junior Security Control Assessor
Bethesda, MD · On-site
$100K/yr
You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...
Junior Security Control Assessor
Bethesda, MD · On-site
$100K - $115K/yr
You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...
Junior Security Control Assessor
Bethesda, MD · On-site
$100K - $115K/yr
You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...
Security Control Assessor (SCA) LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and ...
Security Control Assessor (SCA) LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and ...
Cymertek Corporation is seeking a meticulous and detail-oriented Security Control Assessor (SCA) to join their team and ensure that information systems meet the highest standards of security and ...
Cymertek Corporation is seeking a meticulous and detail-oriented Security Control Assessor (SCA) to join their team and ensure that information systems meet the highest standards of security and ...
Mid-Level Security Control Assessor
Bethesda, MD · On-site
$135K - $140K/yr
Mid-Level Security Control Assessor Location: Bethesda, Maryland Type: Direct Hire Salary: $140,000 range annually, plus benefits Work Model: Hybrid - onsite and remote Hours: 40.0/week Security ...
Mid-Level Security Control Assessor
Bethesda, MD · On-site
$135K - $140K/yr
Mid-Level Security Control Assessor Location: Bethesda, Maryland Type: Direct Hire Salary: $140,000 range annually, plus benefits Work Model: Hybrid - onsite and remote Hours: 40.0/week Security ...
Mid-Level Security Control Assessor
Bethesda, MD · On-site
$140K/yr
Mid-Level Security Control Assessor Location: Bethesda, Maryland Type: Direct Hire Salary: $140,000 range annually, plus benefits Work Model: Hybrid - onsite and remote Hours: 40.0/week Security ...
Mid-Level Security Control Assessor
Bethesda, MD · On-site
$140K/yr
Mid-Level Security Control Assessor Location: Bethesda, Maryland Type: Direct Hire Salary: $140,000 range annually, plus benefits Work Model: Hybrid - onsite and remote Hours: 40.0/week Security ...
Security Control Assessor, Mid
Fort George G Meade, MD · Remote
$70K/yr
AGE Solutions is looking for a Security Control Assessor, Intermediate to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. Responsibilities ...
Security Control Assessor, Mid
Fort George G Meade, MD · Remote
$70K/yr
AGE Solutions is looking for a Security Control Assessor, Intermediate to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. Responsibilities ...
Extensive experience with the NIST RMF and independently leading security control assessments from start to finish using the NIST Framework. * Experience in several of the following areas is required ...
Extensive experience with the NIST RMF and independently leading security control assessments from start to finish using the NIST Framework. * Experience in several of the following areas is required ...
Junior Security Control Assessor
Annapolis Junction, MD · On-site
$50K - $60K/yr
Job Summary Newberry Group seeks a Jr. Security Control Assessor to support its Government Client. This role requires 85% travel to various government locations both domestically and internationally.
Quick apply
Junior Security Control Assessor
Annapolis Junction, MD · On-site
$50K - $60K/yr
Job Summary Newberry Group seeks a Jr. Security Control Assessor to support its Government Client. This role requires 85% travel to various government locations both domestically and internationally.
Security Control Room Officer- Poly Required with Security Clearance
Columbia, MD · On-site
$45 - $50/hr
Security Control Room Officer Position Type: Full-Time, Non-exempt Clearance: TS/SCI w/Poly Shift: 12 Hour Panama Schedule Overview Patriot Group International LLC. (PGI), voted #1 Best Place to Work ...
Security Control Room Officer- Poly Required with Security Clearance
Columbia, MD · On-site
$45 - $50/hr
Security Control Room Officer Position Type: Full-Time, Non-exempt Clearance: TS/SCI w/Poly Shift: 12 Hour Panama Schedule Overview Patriot Group International LLC. (PGI), voted #1 Best Place to Work ...
Information Systems Security Engineer (ISSE) with Security Clearance
Annapolis Junction, MD · On-site
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Information Systems Security Engineer (ISSE) with Security Clearance
Annapolis Junction, MD · On-site
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Experience with security control implementation, validation, and continuous monitoring * Familiarity with NIST SP 800-37 and NIST SP 800-53 (Rev. 3 and/or Rev. 5) * Experience with RMF and ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Conduct security control assessments and compliance reviews. * Monitor and track vulnerabilities, findings, and remediation efforts. * Support Continuous Monitoring (ConMon) activities and ongoing ...
Information Systems Security Engineer 1
Annapolis Junction, MD · On-site
$145K - $170K/yr
... control traceability, boundary definitions, and authorization packagesPerform security control ... assessments aligned to NIST SP 800-53 and NIST 800-37Execute continuous monitoring activities ...
Quick apply
Information Systems Security Engineer 1
Annapolis Junction, MD · On-site
$145K - $170K/yr
... control traceability, boundary definitions, and authorization packagesPerform security control ... assessments aligned to NIST SP 800-53 and NIST 800-37Execute continuous monitoring activities ...
Security Control information
What is the difference between Security Control vs Security Analyst?
| Aspect | Security Control | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, GIAC |
| Work Environment | Implementing and managing security measures, often in security operations centers or IT departments | Monitoring, analyzing, and responding to security incidents, often in security operations or cybersecurity teams |
| Employer & Industry Usage | Used across industries to establish security policies and controls | Commonly employed in cybersecurity teams to analyze threats and vulnerabilities |
Security Control professionals focus on implementing and managing security measures to protect organizational assets, while Security Analysts monitor and analyze security events to identify and respond to threats. Both roles are essential in cybersecurity, often working together within security teams to ensure comprehensive protection.

Job description
Job Description We are seeking a highly skilled Security Control Assessor (SCA) to support independent cybersecurity assessments of systems in accordance with the Risk Management Framework (RMF). This role is responsible for evaluating the implementation and effectiveness of security controls, assessing residual risk, and providing actionable recommendations to support authorization decisions. The ideal candidate brings deep DoD cybersecurity experience, strong analytical judgment, and the ability to communicate technical risk clearly to both cybersecurity and senior mission stakeholders.
This is a high-visibility role supporting mission-critical systems in a dynamic national security environment. Key Responsibilities Perform independent security control assessments of information systems in support of RMF authorization and continuous monitoring activities Evaluate the implementation, effectiveness, and compliance of security controls in accordance with NIST SP 800-53 and DoD cybersecurity requirements Review technical artifacts, system documentation, test results, and evidence to determine control inheritance, applicability, and residual risk Document assessment findings, vulnerabilities, recommendations, and risk impacts in clear and concise language Develop Security Assessment Reports (SARs), risk summaries, and briefing materials for Authorizing Officials and senior stakeholders Coordinate with system owners, ISSMs, engineers, and cybersecurity teams to validate findings and support remediation planning Assess cloud, hybrid, enclave, and enterprise architectures for cybersecurity compliance and security posture Support high-priority authorization decisions while ensuring alignment with mission execution and operational requirements Required Qualifications 7+ years of experience in cybersecurity, RMF, information assurance, or related information security roles Demonstrated experience performing security control assessments, compliance reviews, or cybersecurity audits Strong knowledge of Risk Management Framework (RMF), NIST SP 800-53, and security assessment methodologies Experience analyzing technical evidence and articulating cybersecurity risk to technical and non-technical stakeholders Prior experience supporting complex DoD or enterprise IT systems Active Secret Clearance (or higher) required Ability to work onsite at Joint Base Andrews, MD two days per week Prior DoD cybersecurity experience required CISSP certification required Preferred Qualifications Previous experience serving as a Security Control Assessor (SCA) or SCA-Validator Experience supporting Air Force systems or A4 mission environments Familiarity with cloud, hybrid, and enclave architectures Strong briefing, customer engagement, and stakeholder communication skills Additional certifications such as CISM or CISA preferredIdeal Candidate Profile Critical thinker with strong attention to technical detail Comfortable operating in mission-focused, high-visibility DoD environments Able to balance cybersecurity rigor with operational mission requirements Effective collaborator with engineers, program teams, and senior leadership Passionate about improving security posture and supporting national security missions
About Centurion Consulting Group
Sourced by ZipRecruiter
Company size
51 - 200 Employees
Headquarters location
Los Angeles, CA, US