... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
Quick apply
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
Assess and evaluate security controls based on cybersecurity principles and frameworks including NIST SP 800-53 and the Cybersecurity Framework. * Support Security Assessment & Authorization (SA&A ...
... with vulnerability assessments and penetration testing activities * Learn and apply adversary ... Contribute to identifying gaps in security controls and processes * Work closely with senior ...
... with vulnerability assessments and penetration testing activities * Learn and apply adversary ... Contribute to identifying gaps in security controls and processes * Work closely with senior ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
Quick apply
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
Quick apply
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
... controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). * Conduct routine security assessments, vulnerability scans, and configuration checks to ...
Lead Security Mobile Engineer
Indianapolis, IN ยท On-site +1
Participate in solution assessments across the solution lifecycle:concept, design, pre-deployment ... security controls to ensurethesecurity ecosystem is well-architected to address key risks.
Lead Security Mobile Engineer
Indianapolis, IN ยท On-site +1
Participate in solution assessments across the solution lifecycle:concept, design, pre-deployment ... security controls to ensurethesecurity ecosystem is well-architected to address key risks.
Security Architect - AI AppSec
Brownsburg, IN ยท On-site
$90 - $100/hr
... controls, validate emerging architectural patterns and define the governance standards for M365 ... Assess Model Context Protocol (MCP) security best practices, designing isolationstrategies for ...
Quick apply
Security Architect - AI AppSec
Brownsburg, IN ยท On-site
$90 - $100/hr
... controls, validate emerging architectural patterns and define the governance standards for M365 ... Assess Model Context Protocol (MCP) security best practices, designing isolationstrategies for ...
In alignment with the Risk Management Framework (RMF), implement security controls, document ... assessments, subject matter expert input to proposals, technical interchange meetings, status ...
In alignment with the Risk Management Framework (RMF), implement security controls, document ... assessments, subject matter expert input to proposals, technical interchange meetings, status ...
The successful candidate will help engineer and document security controls, support RMF package development and submission, assess vulnerabilities, manage POA&Ms, and sustain systems through ...
The successful candidate will help engineer and document security controls, support RMF package development and submission, assess vulnerabilities, manage POA&Ms, and sustain systems through ...
Cybersecurity Risk Analyst
Evansville, IN ยท On-site
$36.93 - $55.40/hr
You will work closely with IT, Security, and business stakeholders to assess threats, analyze vulnerabilities, strengthen security controls, and support compliance efforts. Your expertise will help ...
Cybersecurity Risk Analyst
Evansville, IN ยท On-site
$36.93 - $55.40/hr
You will work closely with IT, Security, and business stakeholders to assess threats, analyze vulnerabilities, strengthen security controls, and support compliance efforts. Your expertise will help ...
... controls that effectively balance security, usability, and business objectives. * Develop comprehensive security assessment reports that clearly communicate findings, risk ratings, and actionable ...
New
... controls that effectively balance security, usability, and business objectives. * Develop comprehensive security assessment reports that clearly communicate findings, risk ratings, and actionable ...
New
Support FISCAM audits and self-assessments; test and record results of annual IT general controls ... Security Monitoring & Protection * Plan, implement, upgrade, and monitor security controls to ...
Support FISCAM audits and self-assessments; test and record results of annual IT general controls ... Security Monitoring & Protection * Plan, implement, upgrade, and monitor security controls to ...
Support FISCAM audits and self-assessments; test and record results of annual IT general controls ... Security Monitoring & Protection * Plan, implement, upgrade, and monitor security controls to ...
Support FISCAM audits and self-assessments; test and record results of annual IT general controls ... Security Monitoring & Protection * Plan, implement, upgrade, and monitor security controls to ...
Security Controls Assessor information
See Indiana salary details
$8.46 - $14.45
2% of jobs
$14.45 - $20.44
2% of jobs
$20.44 - $26.43
0% of jobs
$26.43 - $32.42
0% of jobs
$32.42 - $38.41
3% of jobs
$38.41 - $44.40
5% of jobs
$47.92 is the 25th percentile. Wages below this are outliers.
$44.40 - $50.39
21% of jobs
The median wage is $55.27 / hr.
$50.39 - $56.37
20% of jobs
$56.37 - $62.36
18% of jobs
$63.75 is the 75th percentile. Wages above this are outliers.
$62.36 - $68.35
15% of jobs
$68.35 - $74.34
14% of jobs
$8
$55
$74
How much do security controls assessor jobs pay per hour?
What is a security controls assessor?
What are the key skills and qualifications needed to thrive as a security controls assessor, and why are they important?
What are some common challenges security controls assessors face when evaluating compliance across multiple systems?
What does a security controls assessor do?
A security controls assessor (SCA) evaluates the security controls within network systems to identify vulnerabilities and recommend actions to correct problems, working either alone or as part of a team. As a security controls assessor, your duties begin with conducting an in-depth assessment of the management, operations, and technical security controls. You must analyze information and prepare reports describing the vulnerability level of the network with specific detail as to what compromises data systems. You then develop a plan to address vulnerabilities and continue to monitor the security of network systems.
What is the difference between Security Controls Assessor vs Security Analyst?
| Aspect | Security Controls Assessor | Security Analyst |
|---|---|---|
| Certifications | ISO 27001 Lead Auditor, CISSP, CISA | CISSP, Security+ |
| Work Environment | Assessing security controls, compliance audits | Monitoring security systems, incident response |
| Employer & Industry | Government agencies, compliance firms | Corporate IT, cybersecurity teams |
The Security Controls Assessor primarily evaluates and verifies security controls for compliance, often in government or regulated environments. In contrast, a Security Analyst focuses on monitoring, analyzing, and responding to security threats within organizations. While both roles require security certifications and involve cybersecurity, their core responsibilities and work settings differ significantly.

Information System Security Specialist II with Security Clearance
Crane, IN โข On-site
Other
Medical, Retirement, PTO
Re-posted 7 days ago
Job description
The Information System Security Specialist is responsible for supporting all aspects of a Program Information Assurance (IA) processes tailored to include minimum qualification standards, fundamental awareness and familiarity to demonstrated competency with specific experience in Cyber Security, Engineering, Test & Evaluation, (T&E) and/or Security Control Assessor (SCA) under a Certification & Accreditation (C&A) and/or Assessment & Authorization (A&A) process. The specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior experience with the Defense Information Assurance & Certification Accreditation Process (DIACAP). Familiarity with security policies & guidance documents to assist with the preparation and maintenance of process artifacts, traceability documents purposed for compliance with Authority to Operate (ATO) requirements. The specialist is expected to evaluate security solutions to ensure they meet security requirements for processing up to classified information, and supervise and/or maintain the operational security posture for an information system or program. * Support the development, documentation, and maintenance of system security plans, procedures, and authorization artifacts.
* Assist in implementing security controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives).
* Conduct routine security assessments, vulnerability scans, and configuration checks to identify and report security risks.
* Support incident response activities, including evidence collection, initial triage, and coordination with senior cybersecurity personnel.
* Maintain awareness of system configurations, user access requirements, and security posture changes.
* Assist in preparing documentation for system authorization, continuous monitoring, and audit readiness.
* Provide user support on security procedures, access requirements, and proper handling of sensitive information. Requirements * A minimum of 2 years of practical experience in a Cybersecurity, Engineering, T&E or A&A (formerly C&A) related field. * Must have experience working with Information Assurance tools such as DISA Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS) * A minimum Top Secret security clearance or higher with the ability to obtain a Top Secret w/ SCI is required to be considered for this position.
EDUCATIONAL REQUIREMENTS * A High school diploma or HS equivalency certificate is acceptable. CERTIFICATION REQUIREMENTS * May be required to hold an Interim Security Control Assessor qualification. Benefits Join PROSYNC and enjoy our great benefits! Compensation * We offer sign on bonuses! We also offer bonuses that are awarded quarterly to our employees and our compensation rates are highly competitive.
Health & Retirement * We offer a comprehensive Health Benefits package and 401K retirement plan so you can take care of yourself and your family, now and in the future. Other health-related benefits include an employee assistance program for those difficult times or when you need to take care of your mental health.
Education * Individual growth is a priority at ProSync. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification they need to propel them to the next level.
Work/Life Balance * A healthy work/life balance is essential for building and executing your work effectively at ProSync, but it's also necessary to allow you the room to pursue everything else you want to develop in your personal life. We offer generous Paid Time Off and 11 paid holidays a year. ProSync also provides flexible work options that work with your schedule and lifestyle.
About ProSync Technology Group
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Ellicott City, MD, US
Year founded
2000