Demo

Security Control Accessor

Apavo Corporation
Reston, VA Full Time
POSTED ON 1/15/2025
AVAILABLE BEFORE 4/12/2025

Job Description

Job Description

Description :

Job Title : Security Control Assessor

Location : On-site in Reston, VA, College Park, MD, Joint Base Anacostia Bolling, DC

Department : Cyber Security Services

Reports To : Management

FLSA Status : Full Time / Non-exempt

Apavo is at the forefront of cybersecurity, providing services to military, defense, and critical infrastructure industries. Joining the Apavo team means becoming part of a company rooted in the principles of quality, and communication. We value positive, candid interactions and the belief that everyone has valuable contributions to make. Apavo stands out for its commitment to a work-life balance and fostering a growth mindset among all team members. If you are looking to make a meaningful impact in the cybersecurity world while growing professionally in a supportive environment, Apavo is the place for you.??

Job Purpose

The security control assessor (SCAs) supports a critical, objective role to evaluate the effectiveness of implemented controls in mitigating security risks. The SCA will support a critical mission within the intelligence community. In the role as a SCA, you are expected to use automated scanning tools, manual techniques, and specialized testing methodologies to identify weaknesses and vulnerabilities. The SCA is expected to be a collaborative member of the RMF program of the organization, to provide intelligent input to system security architectures in order to align with RMF principles and guidelines. This includes ensuring to guide the RMF process so that security controls are integrated seamlessly into system designs to provide comprehensive protection against threats and vulnerabilities.

Duties & Responsibilities

The SCA's specific duties include :

  • Developing, reviewing, and approving a plan to assess the security controls.
  • Assessing the security controls in accordance with the assessment procedures defined in the security assessment plan
  • Preparing the security assessment report documenting the issues, findings, and recommendations from the security control assessment
  • Conducting initial remediation actions on security controls based on the findings and recommendations of the security assessment report and reassessing remediated controls, as appropriate.
  • Assessing a selected subset of the technical, management, and operational security controls employed within and inherited by the information system in accordance with the organization-defined monitoring strategy.?

The SCA is responsible for the RMF deliverables associated with Step 4 of DOD and IC RMF Policies for assigned systems. This includes, but is not limited to :

  • Security Assessment Plans tailored to specific systems control requirements
  • Security control assessment input, which includes narratives for the review of controls and artifacts
  • Security Assessment Reports
  • ATO recommendations or ATO with Condition Memorandums
  • Conduct initial remediation actions once a security assessment has been completed to ensure proper hand off to the ISSM and ISSOs.
  • Assessment of selected controls IAW continuous monitoring strategy
  • The SCA is expected to have additional duties as assigned in support of corporate cyber security services. Additional details are reviewed in accordance with company policies.

    Other

    This is typical office or administrative work, and there is no exposure to adverse environmental conditions.

    This position requires sedentary work. Sedentary work is defined as : Exerting up to 10 pounds of force occasionally and / or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally and all other sedentary criteria are met.

    Apavo Corporation provides equal employment opportunities to all applicants and employees and strictly prohibits any type of harassment or discrimination in regards to race, religion, age, color, sex, disability status, national origin, genetics, sexual orientation, protected veteran status, gender expression, gender identity, or any other characteristic protected under federal, state, and / or local laws.

    Consistent with the Americans with Disabilities Act (ADA), it is the policy of Apavo Corporation to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. The policy regarding requests for reasonable accommodation applies to all aspects of employment, including the application process. If reasonable accommodation is needed, please contact Apavo Human Resources at hr@apavo.com or 571-407-0069

    Employment with Apavo Corporation is on an at-will basis, meaning either you or the Company can terminate the employment relationship, at any time, for any or no reason, and with or without cause or notice. As an at-will employee, your employment with Apavo Corporation is not guaranteed for any length of time.

    Requirements : Qualifications

  • Masters Degree in Computer Science or a related technical discipline and 12 years of professional experience
  • Masters Degree may be substituted by an additional 6 years of experience.
  • Must currently possess an active TS / SCI with the ability to obtain and maintain a CI polygraph.
  • Systems Security Engineering background preferred.
  • Effective communication skills to collaborate with cross-functional teams and stakeholders on implementing security measures organization-wide.
  • Strong analytical skills for identifying system vulnerabilities and documenting control remediation recommendations through collaboration on System Impact Analysis and Documented Risk Acceptance.
  • Detail-oriented with the ability to manage multiple tasks and prioritize effectively.
  • IAM II preferred
  • Comprehensive knowledge of RMF activities at a senior level (ability to articulate to Executive audiences preferred).
  • Familiarity with Federal, NIST, DOD and IC security policies.
  • Familiarity with federal regulatory requirements, contractual obligations, and industry standards related to information security. Evaluate adherence to standards such as Privacy, GDPR, and HIPAA
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Security Control Accessor?

    Sign up to receive alerts about other jobs on the Security Control Accessor career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $59,454 - $77,232
    Income Estimation: 
    $74,206 - $95,716
    Income Estimation: 
    $65,440 - $83,454
    Income Estimation: 
    $102,189 - $143,024
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Not the job you're looking for? Here are some other Security Control Accessor jobs in the Reston, VA area that may be a better fit.

    Junior Security Control Accessor

    Judge Group, Inc., Washington, DC

    Security Control Assessor II

    P-11 SECURITY, Washington, DC

    AI Assistant is available now!

    Feel free to start your new journey!