Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense ...
New
Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense ...
New
Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense ...
New
Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense ...
New
Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense ...
New
Green Bank, WV · On-site
The NRAO's Environment, Safety and Security Department is seeking a full-time Seurity Manager to ... and risk aspects of contracts and agreements, claims investigation and/or management, tort and ...
Green Bank, WV · On-site
The NRAO's Environment, Safety and Security Department is seeking a full-time Seurity Manager to ... and risk aspects of contracts and agreements, claims investigation and/or management, tort and ...
True, WV · On-site
$115K - $175K/yr
... as Risk Management Framework (RMF) and FedRAMP. * Analyze and document existing systems and processes to identify areas for security enhancements and recommend improvements across the NADACS ...
True, WV · On-site
$115K - $175K/yr
... as Risk Management Framework (RMF) and FedRAMP. * Analyze and document existing systems and processes to identify areas for security enhancements and recommend improvements across the NADACS ...
WV · Remote
$122K - $165K/yr
Cyber and IT Risk Management Job Qualifications: Skills: Cloud Security Architecture, NIST 800-53, Security Technologies Certifications: None Experience: 6 + years of related experience US ...
WV · Remote
$122K - $165K/yr
Cyber and IT Risk Management Job Qualifications: Skills: Cloud Security Architecture, NIST 800-53, Security Technologies Certifications: None Experience: 6 + years of related experience US ...
Fairmont, WV · On-site
$99K - $165K/yr
Extensive experience with the NIST Risk Management Framework (RMF) and other security control standards preferred. Clearance Requirements: * Must be a U.S citizen with a current/active Top Secret ...
Fairmont, WV · On-site
$99K - $165K/yr
Extensive experience with the NIST Risk Management Framework (RMF) and other security control standards preferred. Clearance Requirements: * Must be a U.S citizen with a current/active Top Secret ...
Fairmont, WV · On-site
$99K - $165K/yr
Extensive experience with the NIST Risk Management Framework (RMF) and other security control standards preferred. Clearance Requirements: * Must be a U.S citizen with a current/active Top Secret ...
Fairmont, WV · On-site
$99K - $165K/yr
Extensive experience with the NIST Risk Management Framework (RMF) and other security control standards preferred. Clearance Requirements: * Must be a U.S citizen with a current/active Top Secret ...
Clarksburg, WV · On-site
$104K - $141K/yr
Expert-level experience and knowledge of government security standards and industry best practices, including the NIST Risk Management Framework (RMF) and NIST security and privacy controls
Clarksburg, WV · On-site
$104K - $141K/yr
Expert-level experience and knowledge of government security standards and industry best practices, including the NIST Risk Management Framework (RMF) and NIST security and privacy controls
WV · On-site
$59 - $78.25/hr
Cyber and IT Risk Management Job Qualifications: Skills: Cloud Native Security, DevSecOps, Security Platforms Certifications: None Experience: 10 + years of related experience US Citizenship Required:
WV · Remote
$97K - $132K/yr
Cyber and IT Risk Management Job Qualifications: Skills: IT Security Services, IT Security Support, IT System Security Certifications: None Experience: 10 + years of related experience US Citizenship ...
WV · Remote
$97K - $132K/yr
Cyber and IT Risk Management Job Qualifications: Skills: IT Security Services, IT Security Support, IT System Security Certifications: None Experience: 10 + years of related experience US Citizenship ...
WV · Remote
$97K - $120K/yr
Cyber and IT Risk Management Job Qualifications: Skills: Cloud Engineering, Cybersecurity, Software Applications Certifications: None Experience: 5 + years of related experience US Citizenship ...
WV · Remote
$97K - $120K/yr
Cyber and IT Risk Management Job Qualifications: Skills: Cloud Engineering, Cybersecurity, Software Applications Certifications: None Experience: 5 + years of related experience US Citizenship ...
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
Experience supporting security control assessments, cybersecurity, security engineering, Risk Management Framework (RMF), compliance documentation, or related DoD security functions. * Strong ...
New
... security officer. * Maintain documentation related to breach investigations. * Participate in other privacy program initiatives and projects as assigned. * Other compliance, risk management, and ...
Quick apply
... security officer. * Maintain documentation related to breach investigations. * Participate in other privacy program initiatives and projects as assigned. * Other compliance, risk management, and ...
Weirton, WV · On-site
... risk, and the external-audit relationship. You will mature an ISO 27001-aligned information security management system and the controls a maturing, compliance-intensive company depends on ...
Weirton, WV · On-site
... risk, and the external-audit relationship. You will mature an ISO 27001-aligned information security management system and the controls a maturing, compliance-intensive company depends on ...
Responsibilities What You'll Do • Lead Risk Management Framework (RMF) activities for the LIGER ... System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Plan ...
Responsibilities What You'll Do • Lead Risk Management Framework (RMF) activities for the LIGER ... System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Plan ...
Partner closely with Security, Legal, Risk Management, Travel, and executive stakeholders to ensure appropriate planning and mitigation strategies * Lead contingency planning, crisis management ...
Partner closely with Security, Legal, Risk Management, Travel, and executive stakeholders to ensure appropriate planning and mitigation strategies * Lead contingency planning, crisis management ...
... risk to information systems. • CISSP or CEH required. • Experience supporting RMF, ATO, SAA, continuous monitoring, POA&M management, vulnerability remediation, security assessment, and audit ...
... risk to information systems. • CISSP or CEH required. • Experience supporting RMF, ATO, SAA, continuous monitoring, POA&M management, vulnerability remediation, security assessment, and audit ...
Executive Communication & Stakeholder Management: * Translate complex technical, regulatory, and ... LP/board cybersecurity reporting, deal-team risk summaries, portfolio-wide security heatmaps, 100 ...
Quick apply
Executive Communication & Stakeholder Management: * Translate complex technical, regulatory, and ... LP/board cybersecurity reporting, deal-team risk summaries, portfolio-wide security heatmaps, 100 ...
$8 - $12.20
2% of jobs
$12.20 - $16.39
0% of jobs
$16.39 - $20.59
1% of jobs
$20.59 - $24.79
1% of jobs
$24.79 - $28.98
1% of jobs
$32.13 is the 25th percentile. Wages below this are outliers.
$28.98 - $33.18
26% of jobs
$33.18 - $37.37
11% of jobs
The median wage is $38.87 / hr.
$37.37 - $41.57
22% of jobs
$41.57 - $45.76
9% of jobs
$46.09 is the 75th percentile. Wages above this are outliers.
$45.76 - $49.96
17% of jobs
$49.96 - $54.15
9% of jobs
$8
$39
$54
| Aspect | Security Risk Management | Security Analyst |
|---|---|---|
| Certifications | CRISC, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Strategic, policy-focused, risk assessment | Operational, monitoring, incident response |
| Employer & Industry Usage | Organizations managing enterprise security risks | Security teams, cybersecurity firms, IT departments |
Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.

Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 3 days ago
New
Position Description & Qualifications
Looking for an opportunity at a place where you can have an influence every day? Then Serco has the right opportunity for you! As a Senior Security Control Assessor, you will provide senior-level security control assessment support to a Department of Defense (DoD) customer supporting the F-35 Joint Program Office (JPO) mission. Bring your advanced assessment experience, cybersecurity knowledge, and analytical skills to help evaluate security controls, document risks, and support secure mission operations.
In this role, you will serve as a trusted advisor supporting assessment activities, compliance reviews, documentation analysis, and stakeholder coordination across complex and highly secure environments. You will work closely with government and contractor personnel to evaluate security controls, identify areas of risk, track remediation efforts, and provide reporting that supports informed decision-making and mission success.
In This Role, You Will:
Provide senior-level support for security control assessments, control validation, documentation review, and reporting.
Review assessment of evidence, security plans, findings, corrective action documentation, and related compliance materials.
Coordinate with government and contractor stakeholders to support assessment schedules, data calls, issue resolution, and action tracking.
Maintain assessment trackers, matrices, records, and leadership reporting products.
Support meetings, technical discussions, briefings, and customer updates related to security controls and assessment status.
Identify risks, documentation gaps, and process improvements to strengthen assessment of quality and mission assurance.
To Be Successful in This Role You Will Have:
U.S. Citizenship.
Active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
Master's degree plus 10 years of experience; or a Bachelor's degree plus an additional 14 years of experience may be considered.
Minimum 10 years of relevant experience related to cybersecurity, security control assessments, security engineering, Risk Management Framework (RMF), compliance, or related Department of Defense security functions.
Senior-level experience supporting security control assessments, cybersecurity, security engineering, RMF, compliance, or related DoD security functions.
Demonstrated Special Access Program (SAP) knowledge and experience.
Strong analytical, technical writing, and stakeholder coordination skills.
This position is on-site. Must be able to work in the Arlington, Virginia office Monday through Friday during normal business hours.
Desired Skills
Security Control Assessment (SCA) experience within the Department of Defense Environments.
Knowledge of DoD cybersecurity frameworks, security requirements, and compliance processes.
Experience reviewing security documentation, assessment findings, corrective action plans, and validation evidence.
Ability to develop executive-level reports, briefings, metrics, and status updates.
Strong organizational skills with experience maintaining assessment records, trackers, and matrices.
Ability to identify process improvements that enhance assessment of effectiveness and mission assurance.
Additional Information
This position supports Department of Defense mission requirements associated with the F-35 Joint Program Office.
Work is performed on-site in Arlington, Virginia.
Active TS/SCI clearance is required prior to start.
Proposal Position Notice
Serco Inc. is using this posting for the purpose of responding to a proposal. We are seeking qualified candidates in the event of a contract award. This position is not currently funded/active. Should Serco be awarded the contract, and you meet the qualifications of the position, you will be considered in the selection process.
F-35 JPO Security Support Services
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco’s 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: https://careers.serco-na.com/us/en/what-we-offer . If you require an accommodation with the application process please email: careers@serco-na.com or call the HR Service Desk at 800-628-6458, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email Agencies@serco-na.com .
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Pay Transparency
Our Total Rewards package includes competitive pay, performance-based incentives, and benefits that promote well-being and work-life balance—so you can thrive both professionally and personally. Eligible employees also gain access to a wide range of benefits from comprehensive health coverage and health savings accounts to retirement plans, life and disability insurance, and time-off programs that support work-life balance. Program availability may vary based on factors such as contract type, location, hire date, and applicable collective bargaining agreements.
Salary range: The range for this position can be found at the top of this posting. This range is provided as a general guideline and represents a good faith estimate across all experience levels. Actual base salary will be determined by a variety of factors, including but not limited to, the scope of the role, relevant experience, job-related knowledge, education and training, key skills, and geographic market considerations. For roles available in multiple states, the range may vary to reflect differences in local labor markets. In addition to base salary, eligible positions may include other forms of compensation such as annual bonuses or long-term incentive opportunities. Benefits – Comprehensible benefits for full-time employees (part-time employees receive a limited package tailored to their role):
Medical, dental, and vision insurance
Robust vacation and sick leave benefits, and flexible work arrangements where permitted by role or contract
401(k) plan that includes employer matching funds
Tuition reimbursement program
Life insurance and disability coverage
Optional coverages that can be purchased, including pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
Birth, adoption, parental leave benefits
Employee Assistance Plan
To review all Serco benefits please visit: https://careers.serco-na.com/us/en/about-us .
Serco complies with all applicable state and local leave laws, including providing time off under the Colorado Healthy Families and Workplaces Act for eligible Colorado residents, in alignment with our policies and benefit plans. The application window for this position is for no more than 60 days. We encourage candidates to apply promptly after the posting date, as the position may close earlier if filled or if the application volume exceeds expectations. Please submit applications exclusively through Serco’s external (or internal) career site. If an applicant has any concerns with job posting compliance, please send an email to: careers@serco-na.com .