1

Security Controls Assessor Jobs in Washington (NOW HIRING)

Security Controls Assessor

Washington, DC ยท On-site

$160K - $180K/yr

SPA has an immediate need for a Security Controls Assessor (SCA). #FC #Dice Responsibilities The Security Controls Assessor (SCA) is responsible for conducting a comprehensive assessment of the ...

U.S. Citizenship Senior Security Controls Assessor (SCA): The primary role of personnel in this position will be assessing the overall security compliance of the client's information systems. This ...

next page

Showing results 1-20

Security Controls Assessor information

See Washington salary details

$10

$66

$88

How much do security controls assessor jobs pay per hour?

As of Aug 7, 2026, the average hourly pay for security controls assessor in Washington is $66.56, according to ZipRecruiter salary data. Most workers in this role earn between $57.16 and $77.07 per hour, depending on experience, location, and employer.

What is a security controls assessor?

Security Controls Assessors are professionals responsible for evaluating and validating the effectiveness of security controls within an organization's information systems. They conduct assessments to ensure compliance with regulatory standards, such as NIST, FISMA, or other security frameworks. Their work helps organizations identify vulnerabilities, manage risks, and maintain the confidentiality, integrity, and availability of critical data. Security Controls Assessors often provide recommendations for remediation and support efforts to achieve or maintain security certifications.

What are the key skills and qualifications needed to thrive as a security controls assessor, and why are they important?

To thrive as a Security Controls Assessor, you need expertise in information security frameworks, risk assessment methodologies, and compliance requirements, often supported by a degree in cybersecurity or related fields and certifications like CISSP, CISA, or CAP. Familiarity with tools such as vulnerability scanners, security assessment platforms, and compliance management systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and clearly report findings to stakeholders. These skills ensure that organizations maintain robust security postures and meet regulatory requirements to protect critical assets.

What are some common challenges security controls assessors face when evaluating compliance across multiple systems?

Security Controls Assessors often encounter challenges with inconsistent documentation, varying system configurations, and differing interpretations of compliance standards across departments. Coordinating with multiple teams to collect evidence and clarify control implementations can be time-consuming, especially in large organizations. Staying current with evolving regulations and ensuring all systems meet the latest requirements also demands continuous learning and adaptability. Building strong communication channels with system owners and IT staff helps overcome these hurdles and ensures thorough, accurate assessments.

What does a security controls assessor do?

A security controls assessor (SCA) evaluates the security controls within network systems to identify vulnerabilities and recommend actions to correct problems, working either alone or as part of a team. As a security controls assessor, your duties begin with conducting an in-depth assessment of the management, operations, and technical security controls. You must analyze information and prepare reports describing the vulnerability level of the network with specific detail as to what compromises data systems. You then develop a plan to address vulnerabilities and continue to monitor the security of network systems.

What is the difference between Security Controls Assessor vs Security Analyst?

AspectSecurity Controls AssessorSecurity Analyst
CertificationsISO 27001 Lead Auditor, CISSP, CISACISSP, Security+
Work EnvironmentAssessing security controls, compliance auditsMonitoring security systems, incident response
Employer & IndustryGovernment agencies, compliance firmsCorporate IT, cybersecurity teams

The Security Controls Assessor primarily evaluates and verifies security controls for compliance, often in government or regulated environments. In contrast, a Security Analyst focuses on monitoring, analyzing, and responding to security threats within organizations. While both roles require security certifications and involve cybersecurity, their core responsibilities and work settings differ significantly.

What are popular job titles related to Security Controls Assessor jobs in Washington? For Security Controls Assessor jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Security Controls Assessor jobs in Washington look for? The top searched job categories for Security Controls Assessor jobs in Washington are:
What cities in Washington are hiring for Security Controls Assessor jobs? Cities in Washington with the most Security Controls Assessor job openings:
What are popular job titles related to Security Controls Assessor jobs in WA? For Security Controls Assessor jobs in WA, the most frequently searched job titles are:
Infographic showing various Security Controls Assessor job openings in Washington as of August 2026, with employment types broken down into 85% Full Time, 5% Part Time, 5% Temporary, and 5% Contract. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $138,444 per year, or $66.6 per hour.

Security Controls Assessor

Systems Planning and Analysis, Inc

Washington, DC โ€ข On-site

$160K - $180K/yr

Other

Medical, Life, Retirement

Posted 4 days ago


Job description

Security Controls Assessor (SCA)

Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and consistent growth, we are known for continuous innovation for our government customers, in both the US and abroad. Our exceptionally talented team is highly collaborative in spirit and practice, producing Results that Matter. Come work with the best! We offer opportunity, unique challenges, and clear-sighted commitment to the mission. SPA: Objective. Responsive. Trusted.

The Sea, Land, Air Analysis Group's mission is to deliver objective analyses, plans and strategies to US Navy, US Marine Corps, US Air Force, other DoD, and Australian Defence Force clients to support technology development, acquisition, delivery and sustainment decisions. The group provides the core of SPA thought leadership on Undersea Strategy, Software Development and Cost Estimating, with additional benchmark capabilities in AI/ML & Decision Analytics, Modeling and Simulation, and Future Force Assessments.

SPA has an immediate need for a Security Controls Assessor (SCA).

Responsibilities

The Security Controls Assessor (SCA) is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an Information System (IS) to determine the overall effectiveness of the controls. SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility.

Responsibilities include conducting IS assessments in accordance with the Risk Management Framework (RMF) and Joint Special Access Program Implementation Guide (JSIG), advising key stakeholders on assessment and authorization matters, and evaluating authorization packages for recommendation to the Authorizing Official. The role encompasses identifying and analyzing threats and vulnerabilities, ensuring proper documentation of security assessments, preparing Security Assessment Reports (SARs), and initiating Plans of Action and Milestones (POA&Ms). The candidate will review sanitization procedures, support Government compliance inspections and cybersecurity incident responses, and assess the security impact of hardware, software, and environmental or mission changes. Additionally, the position requires evaluating Continuous Monitoring Plans and providing clear, actionable recommendations to support secure and compliant system operations.

Qualifications

Required Qualifications:

  • Master's Degree in related field
  • 7 years of relevant experience
  • 2 years of experience in SAP, SCI or Collateral Information Systems Security and implementation of regulations identified in the duty descriptions
  • Prior performance in the role of ISSO (or System, Network administrator) and ISSM
  • Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level II
  • Active TS/SCI and the ability to maintain it throughout employment

Desired Qualifications:

  • 9 years of related experience

Pay Range Information:

At SPA, we strive to deliver a robust total compensation package that will attract and retain top talent. Elements of the compensation package include competitive base pay and variable compensation opportunities. SPA provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, etc. Please note that the salary information shown below is a general guideline only. Salaries are commensurate with experience and qualifications, as well as market and business considerations. Washington, DC, Pay Transparency Salary range: USD $160,000.00/Yr. - USD $180,000.00/Yr.