Security Control Assessor (SCA) - Cybersecurity jobs in United States
cer-icon
Apply on Employer Site
company-logo

Global Engineering & Technology, Inc. (GET) · 17 hours ago

Security Control Assessor (SCA) - Cybersecurity

Global Engineering and Technology (GET) is seeking qualified applicants for the Security Control Assessor (SCA) in support of the cybersecurity program at a U.S. Department of Energy national security facility. The SCA conducts independent comprehensive assessments of security controls and enhancements within IT systems to determine their overall effectiveness.

AnalyticsInformation TechnologyMarket Research
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

The SCA conducts independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the controls (as defined in NIST SP 800-37)
Implementing and maintaining security controls aligned with approved baselines and organizational requirements
Supporting system authorization activities, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms)
Monitoring system security posture and identifying risks, vulnerabilities, and compliance gaps
Tracking and managing POA&Ms and coordinating remediation activities with system stakeholders
Assessing the security impact of system changes and supporting configuration and change management processes
Supporting continuous monitoring activities, including vulnerability management and security reporting
Serving as a security liaison between system teams, cybersecurity operations, and governance bodies
Preparing systems for security assessments, audits, and Authorizing Official reviews

Qualification

NIST SP 800-37NIST SP 800-53Security documentationSecurity controls implementationVulnerability managementOperational Technology experienceTechnical field experienceSoft skills

Required

This position requires a current DoD Top Secret security clearance or DOE Q security clearance
The candidate must demonstrate a firm understanding of NIST SP 800-37 and NIST SP 800-53
Must have demonstrated experience in implementing and maintaining security controls aligned with approved baselines and organizational requirements
Supporting system authorization activities, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms)
Monitoring system security posture and identifying risks, vulnerabilities, and compliance gaps
Tracking and managing POA&Ms and coordinating remediation activities with system stakeholders
Assessing the security impact of system changes and supporting configuration and change management processes
Supporting continuous monitoring activities, including vulnerability management and security reporting
Serving as a security liaison between system teams, cybersecurity operations, and governance bodies
Preparing systems for security assessments, audits, and Authorizing Official reviews

Preferred

Operational Technology/Industrial Control System experience is highly sought after
Although this position generally requires a bachelor's degree in a related field, technical field experience will be weighted greater than minimum education

Benefits

Medical plan options with United Health Care
Dental
AD&D
Life
Long-/Short term Disability with MetLife
401(k) match with Principal Financial
All benefits are effective on day one of employment.

Company

Global Engineering & Technology, Inc. (GET)

twittertwitter
company-logo
Visit our Careers page for a listing of the extraordinary opportunities with GET: https://www.getinc.org/careers.htm Global Engineering & Technology (GET) executes a wide scope of classified support functions in areas such as nuclear information classification and declassification analysis, nuclear safety basis analysis and engineering, cybersecurity analysis and engineering, and management support services for the federal government.

Funding

Current Stage
Growth Stage
Company data provided by crunchbase