More jobs:
Traveling Security Control Assessor
Job in
Silver Spring, Montgomery County, Maryland, 20900, USA
Listed on 2026-07-21
Listing for:
Jobtailor
Full Time
position Listed on 2026-07-21
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Responsibilities
- Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN
- Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing
- Adhere to policies and processes for each assessment type
- Support assessment development and execution to ensure security expertise is properly applied
- Coordinate logistics, test plans, and scope with the SCA Team Lead
- Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS
- Analyze security gaps and provide mitigation recommendations
- Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines
- Provide risk analysis and assessment results for authorization recommendations
- Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R
- Mentor and guide personnel by providing technical expertise, best practices, and professional development support to enhance team capabilities and knowledge
- Active DoD Top Secret clearance with SCI eligibility required
- Current DoD 8570 IAM II or IAT II certification
- Ability and willingness to travel for assessments as required, up to 85% of the time
- Bachelor's degree (IT-related field preferred) and eight (8) years of cybersecurity or network security experience, including five (5) years of experience in a Certification and Accreditation/A&A role
- Demonstrated experience with STIGs, SRGs, POA&Ms and cybersecurity best practices, as well as relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS
- Strong understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253, as well as key technologies areas/domain such as:
Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications - Strong written and verbal communication skills for reporting assessment findings.
Demonstrates expertise in conducting cybersecurity assessments and audits for DoD organizations, with a strong focus on vulnerability assessments, risk analysis, and compliance with DoD policies. Proficient in utilizing tools such as eMASS and STIG Viewer to document findings and provide mitigation recommendations.
#J-18808-LjbffrTo View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×