VTG
VTG

62 Vtg Security Controls Assessor Jobs Hiring Near You

... assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the ...

Avint is seeking a highly motivated Senior Security Controls Assessor (SCA) in support of a critical federal contract. The Senior SCA is a subject matter expert responsible for executing ...

Avint is seeking a highly motivated Journeyman Security Controls Assessor (SCA) in support of a critical federal contract. The Journeyman SCA is a mid-level professional responsible for executing ...

Showing results 21-40

Security Controls Assessor (Pipeline)

Electrosoft

Belleville, IL • On-site

Full-time

Re-posted 19 days ago


Job description

Job Summary:
Electrosoft Services, Inc. is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. They are seeking a Security Control Assessor to independently assess the adequacy and compliance of security controls for their DoD customer at Scott Air Force Base, IL. The role involves conducting comprehensive assessments, providing recommendations for security controls, and managing documentation for authorization processes.
Responsibilities:
• Assess, identify, and provide to the Government, for AO approval, a listing of recommended enterprise security controls/enhancements that provide mission assurance for cyber USTRANCOM terrain systems supporting USTRANSCOM’s mission.
• Provide SME support for RMF activities within and/or outside Enterprise Mission Assurance Support Service (eMASS) or other tool as designated by the Government.
• Provide technical and operational analyses of supporting artifacts and provide risk analysis recommendations to the SCA.
• Perform triage of authorization, POA&M, System Security Plan, System Categorization, and risk acceptance requests using the Govt RMF Artifact Quality Rubric.
• Identify non-compliant submissions, document in the Package Return Report (PRR), and submit to the Government SCA for approval and signature.
• Review security artifacts provided by program offices or other organizations and assess both technical and functional adequacy of cybersecurity/Information Assurance (IA) controls
• Perform the Independent Verification and Validation (IV&V) role within eMASS on NIPRNet and SIPRNet, verifying that controls are in-place, operating as intended, producing desired outcomes, and providing feedback to submitters on non-compliant security controls, adequacy of artifacts, and POA&M items, and provide the required PRR as needed.
• Compile Authorization Official package to include risk assessment, required artifacts, and required approval documents to support risk recommendations to the AO in accordance with Government guidance.
• Review and coordinate RMF packages such as categorizations, security plans and POA&Ms for signature by approved authorities as designated by the Government and IAW suspense assigned by the Government.
• Manage eMASS user accounts (i.e., add, delete, and assign/update roles) for the customers instance of eMASS per Government direction.
• Track status of checklists and packages from submission through approval or disapproval decision by the AO.
Qualifications:
Required:
• Requires Active IAM-III certification (e.g. CISSP, CISM)
• Minimum of 5 years of related experience
• Requires Active DoD Secret security clearance
• BA/BS degree from an accredited university
• Thorough understanding and experience with DoD RMF tool eMASS
• Excellent written and verbal communication skills, demonstrating the ability to present material to senior DoD and non-DoD officials.
• Able to communicate effectively with senior leaders and customers to clearly present technical approaches and findings.
• Demonstrated knowledge and understanding of the DoD mission
Preferred:
• Experience with Ports, Protocols, Services Management (PPSM) is desired
Company:
Electrosoft delivers technology-based solutions and services with a focus on cybersecurity. Founded in 2001, the company is headquartered in Reston, USA, with a team of 51-200 employees. The company is currently Growth Stage.