Security Controls Assessor

Lakewood, SC, US • Posted 6 days ago • Updated 1 hour ago
Contract Independent
On-site
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • IT Security
  • Management
  • DoD
  • Nessus
  • HBSS
  • Regulatory Compliance
  • SolarWinds
  • Continuous Monitoring
  • System Security
  • ISO 9000
  • Software Security
  • Traceability Matrix
  • SCTM
  • Security Analysis
  • Information System Security
  • Security Controls
  • Documentation
  • SSP
  • SAR
  • Reporting
  • RAR
  • Information Systems
  • Authorization
  • RMF
  • Risk Management Framework
  • Information Technology
  • Policies and Procedures
  • BMC Remedy
  • Information Assurance
  • Information Architecture
  • Impact Analysis
  • Training
  • Trend Analysis
  • Risk Assessment
  • Security Clearance
  • Mergers and Acquisitions
  • Privacy
  • Marketing

Summary

Location: Lakewood, SC Description:

Position; Security Control Assessor

Location: SHAW AFB (fully onsite)

Duration: Direct hire/permanent

Secret Clearance

Proof of IAT-III or IAM-III Certification

requires some CONOCONUS travel throughout the year. Not extremely frequent, but they must have a passport and willingness to travel if needed.

In this role you will perform comprehensive IT security control assessments on AFCENT systems and software applications. Assessments shall require physical travel to various contractor and Government sites inside and outside the continental United States (CONUS and OCONUS). Assessments shall determine the condition of the management, operational, and technical security controls employed within or inherited by an information system or software to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system).

Duties for this role include, but are not limited to:

Perform initial and continual security control assessment and validation for AFCENT networks, systems, and software applications.
Utilize DOD approved tools such as, but not limited to - Assured Compliance Assessment Solution (ACAS), Nessus, Host Based Security Systems (HBSS), Continuous Monitoring Risk Scoring (CMRS), Online Compliance Reporting System (OCRS), and SolarWinds - to generate initial and continuous monitoring reports.
Complete reports to support risk decisions from the AO, both as required and as requested.
Provide an assessment on the severity of weaknesses or deficiencies discovered in the information system or software application and its environment of operation and recommend corrective actions to address identified vulnerabilities.
Review the System Security Plan (SSP), prior to initiating the security control assessment and ensure the plan provides a set of security controls for the information system or software application that meet the stated security requirements.
Advise the Information System Owner (ISO) concerning the impact values for confidentiality, integrity, and availability for the information on a system or software application.
Evaluate threats and vulnerabilities to information systems or software application to ascertain the need for additional safeguards.
Assist in creating, reviewing, and approving the information system or software application security assessment plan, which is comprised of the SSP, the Security Controls Traceability Matrix (SCTM), and the Security Control Assessment Procedure.
Ensure security control assessments are completed for each information system or software application and ensure controls are working as intended and these controls protect the confidentiality, integrity and availability of IT resources at the appropriate levels.
Assist with preparing the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity.
Ensure a Plan of Action and Milestones (POA&M) is initiated by the Information System Security Officer (ISSO) for the information system based on findings and recommendations from the SAR.
Evaluate security control assessment documentation and provide written recommendations for security authorization to the AO.
Provide expertise to execute vulnerability assessments on Platform IT systems.
Assist with assembling and submitting the security authorization artifacts to the AO (consisting of, at a minimum, the SSP, the SAR, the POA&M, and a Risk Assessment Report (RAR).
Assess the proposed changes to information systems or software application, their environment of operation, and mission needs to determine if they are security-relevant and could therefore affect system authorization.
Utilize the RMF methodology to successfully implement an information technology process which shall effectively protect the element's information assets and its ability to perform its mission.
Provide guidance to other assessors on the policies and procedures of the job; Provide detailed assessment findings using Government-specified processes and procedure.
Provide solutions and recommendations to remedy security vulnerabilities, threats, to ultimately improve the protection of IT resources and to execute the AFCENT mission.
Utilize assessment results to identify trends and to improve IA training, policies and processes.
Develop reports and trend analysis's to support risk assessment decisions.

Qualified candidates must meet the following mandatory requirements:

Must possess and maintain a Secret Clearance

Proof of IAT-III or IAM-III Certification

Senior (III) and higher positions (Preferred):

- MA/MS in related field AND 3 or more years' relevant experience; or

- BS in related field AND 5 or more years' relevant IT experience; or

- 7 or more years' relevant IT experience.

Mid-level (II) or lower positions:

- BS in related field AND 1 or more years' relevant experience; or

- Associates in related field and 3 or more years' relevant IT experience; or

- 5 or more years' of relevant IT experience.

By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact:
This job and many more are available through The Judge Group. Please apply with us today!
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxjudgpa
  • Position Id: 1147545
  • Posted 6 days ago

Company Info

About Judge Group, Inc.

The Judge Group, is a leading professional services firm specializing in talent, technology, and learning solutions. We consult, staff, train, and solve. Through our work we make people and organizations better.

Our services are successfully delivered through a network of more than 30 offices across the United States, Canada, and India. The Judge Group is proud to partner with the best and brightest companies in business today, including over 60 of the Fortune 100. We serve organizations in financial services, healthcare, life sciences, insurance, government (including aerospace and defense), manufacturing, and technology and telecommunications.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Charlotte, North Carolina

Today

Contract

USD 49.00 - 53.00 per hour

Charlotte, North Carolina

Today

Contract

USD 40.00 - 48.00 per hour

Charlotte, North Carolina

Today

Contract

USD 49.00 - 53.00 per hour

Charlotte, North Carolina

Today

Contract

Compensation information provided in the description

Search all similar jobs