1

Security Control Jobs in Washington, DC (NOW HIRING)

You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...

You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...

You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...

Security Control Assessor

Alexandria, VA · On-site

$146K - $234K/yr

Execute a security control assessment plan and update the System Security Plan * Review vulnerability scans and remediation * Implement risk management programs by utilizing NIST, FISMA, HIPAA, and ...

Senior Security Control Assessor Overview: TSA is currently seeking a Senior Security Control Assessor who will serve as a Functional Lead and provide support to our NAVAIR customer in the DC Metro ...

You'll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800 ...

Execute a security control assessment plan and update the System Security Plan * Review vulnerability scans and remediation * Implement risk management programs by utilizing NIST, FISMA, HIPAA, and ...

Security Control Assessor (SCA) LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Security Control Assessor (SCA) LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a meticulous and detail ...

Showing results 21-40

Security Control information

See Washington, DC salary details

$15

$20

$23

How much do security control jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for security control in Washington, DC is $20.63, according to ZipRecruiter salary data. Most workers in this role earn between $19.33 and $21.78 per hour, depending on experience, location, and employer.

What is the difference between Security Control vs Security Analyst?

AspectSecurity ControlSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, GIAC
Work EnvironmentImplementing and managing security measures, often in security operations centers or IT departmentsMonitoring, analyzing, and responding to security incidents, often in security operations or cybersecurity teams
Employer & Industry UsageUsed across industries to establish security policies and controlsCommonly employed in cybersecurity teams to analyze threats and vulnerabilities

Security Control professionals focus on implementing and managing security measures to protect organizational assets, while Security Analysts monitor and analyze security events to identify and respond to threats. Both roles are essential in cybersecurity, often working together within security teams to ensure comprehensive protection.

Infographic showing various Security Control job openings in Washington, DC as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 18% Part Time, 4% Contract, and 1% Nights. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $42,916 per year, or $20.6 per hour.

Junior Security Control Assessor

System One

Bethesda, MD • Remote

$100K - $115K/yr

Other

Medical, Dental, Vision, Life, Retirement

Posted 27 days ago


Job description

Location: Bethesda, MD (mostly remote, occasional onsite required) Work schedule: 40 hrs/week Compensation: $100,000–$115,000/year Target start: by end of August 2026 Clearance / Public Trust: Public Trust eligibility (Tier 2/3) required

About the role

We’re hiring a Junior Security Control Assessor to support independent security control assessments across the system authorization lifecycle. You’ll work under a senior assessor and help evaluate security control implementation, validate evidence, and document results in alignment with NIST Risk Management Framework (RMF) and NIST SP 800-53 Rev. 5, using JCAM practices.

This is a great fit for someone who enjoys cybersecurity compliance, evidence-based assessments, and strong technical writing—without being the person who authors the entire authorization package.

What you’ll do

  • Support independent Security Control Assessments (SCAs) across the authorization lifecycle
  • Review and validate security authorization documentation (SSP, SAP, SAR, POA&M, contingency plans, and supporting artifacts)
  • Assess security control implementation through documentation review, interviews, and technical validation
  • Help evaluate cloud security packages and inherited controls (as applicable)
  • Document findings, recommendations, and remediation activities clearly and professionally
  • Assist with evidence validation and remediation tracking
  • Partner with system owners and ISSOs while maintaining assessor independence

Required qualifications

  • Education: Bachelor’s in Cybersecurity, IT, Computer Science, Information Systems (or similar)
    • OR 4 additional years of relevant experience in lieu of a degree
  • Experience: 3–5 years supporting cybersecurity, information assurance, RMF, security assessments, compliance, or IT operations
  • Working knowledge of:
    • NIST RMF (800-37) and NIST SP 800-53 Rev. 5
    • JCAM methodology
  • Experience reviewing security documentation and assessment evidence/artifacts
  • Strong analytical skills and technical writing ability

Preferred (nice to have)

  • Experience with eMASS or similar GRC platforms
  • Familiarity with FedRAMP, cloud security concepts, C-SCRM, and related federal security frameworks
  • Experience supporting independent audits/assessments (e.g., external review organizations)

Tools/tech exposure (helpful)

  • JCAM
  • Tenable
  • CrowdStrike
  • Splunk / Splunk Enterprise
  • AWS
  • Python (plus)

Certifications (preferred, not all required)

  • ISC2 CC or CGRC
  • CompTIA Security+, CySA+, PenTest+, CASP+
  • CEH
  • Microsoft SC-900

  • System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

    System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

    #M-1 #LI-AJ1 Ref: #856-Baltimore-S1


System One logo

About System One

Sourced by ZipRecruiter

System One helps employers get work done more efficiently and economically without compromising quality. Over our 35+ year history, we've helped connect thousands of talented people with innovative companies. The excitement of a perfect fit motivates us every single day.

Industry

Business consulting services and recruiting and staffing services

Company size

5,001 - 10,000 Employees

Headquarters location

Pittsburgh, PA, US