Security Control Assessor
Job in
Oak Ridge, Anderson County, Tennessee, 37830, USA
Listed on 2026-09-11
Listing for:
DivIHN Integration Inc
Full Time
position Listed on 2026-09-11
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Please apply or call one of us to learn more For further inquiries regarding the following opportunity, please contact our Talent Specialist, Abdul at
Title:
Security Control Assessor
Location:
Oak Ridge, TN Duration: 12 Months
Note:
Candidates must currently reside within 50 miles of the client site Candidates must have an ACTIVE DOE Q clearance OR an active equivalent clearance that can reciprocate to a Q. Only W2 candidates are eligible for this position. Third-party or C2C candidates will not be considered. This position requires U.S. Citizens only to meet the DoD requirements
Job Description:
Scope:
Client is looking for experienced Security Control Assessors supporting its Cybersecurity Program. These individuals will support RMF/system authorization activities, develop and maintain SSPs and POA&Ms, monitor security posture and vulnerabilities, coordinate remediation, assess the security impact of system changes, support continuous monitoring, and prepare systems for assessments, audits, and Authorizing Official reviews. A key deliverable is the delivery of System Security Plans to the client Field Office for Approval to Operate (ATO).
Technical Experience Please prioritize candidates with hands-on experience taking systems through RMF and ATO processes, particularly candidates who have personally developed or maintained SSPs and POA&Ms. Candidates need a firm understanding of NIST SP 800-37 and NIST SP 800-53. CNSSI 1253 experience is a plus. We are looking for genuine system security/authorization experience, not simply general cybersecurity or SOC experience.
Knowledge, Skillset, and Abilities (KSAs) Implements and maintains security controls aligned with approved baselines and organizational requirements. Supports system authorization activities, including the development and maintenance of security documentation such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms). Monitors system security posture and identifies risks, vulnerabilities, and compliance gaps. Tracks and manages POA&Ms and coordinates remediation activities with system stakeholders.
Assesses the security impact of system changes and supports configuration and change management processes. Supports continuous monitoring activities, including vulnerability management and security reporting. Serves as a security liaison between system teams, cybersecurity operations, and governance bodies. Prepares systems for security assessments, audits, and Authorizing Official reviews. Experience Technical Field Experience weighted greater than minimum education
About us:
DivIHN, the 'IT Asset Performance Services' organization, provides Professional Consulting, Custom Projects, and Professional Resource Augmentation services to clients in the Mid-West and beyond. The strategic characteristics of the organization are Standardization, Specialization, and Collaboration. DivIHN is an equal opportunity employer. DivIHN does not and shall not discriminate against any employee or qualified applicant on the basis of race, color, religion (creed), gender, gender expression, age, national origin (ancestry), disability, marital status, sexual orientation, or military status.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×