CACI

location-iconCACI

Security Controls Assessors Agent

location-iconGreenbelt, MD, 20768

jobtype-iconPart Time, Full Time

estimated-salary-icon$13.69 per hour

dateposted-iconPosted 7 days ago

Apply Now

location-iconActively Hiring

Security Controls Assessor's Agent Job Category: Security Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US * * * The Opportunity: CACI is seeking a Security Controls Assessor's Agent! Our customer is the one-stop maintenance and logistics provider to all of the US Coast Guard's Cutters and Boats. Help them to meet their daily mission of keeping those Cutters and Boats operational for search and rescue, commercial waterways preservation, and border defense. Working directly for the Coast Guard's Surface Security Controls Assessor (SCA), you will help assess and authorize platform information technology (PIT) installed on Cutters and Boats. Responsibilities: * Under general supervision perform the roles and responsibilities of the Security Controls Assessor's Agent (SCA-A). * Perform risk assessment analysis to support PIT security assessment and authorization * Review PIT designation requests and provide recommendations regarding risk assessment and impact levels * Review network information and topology contained in PIT designation requests and provide insights into risk for the system * Develop and review draft plans to assess PIT security controls; provide assessment plan improvement recommendations for SCA approval * Use assessment procedures defined in security assessment plan to assess PIT security controls * Document issues and findings from PIT security control assessments; provide recommendations for SCA approval. * Assess a selected subset of the technical, management, and operational security controls employed within and inherited by the PIT in accordance with the USCG SFLC defined monitoring strategy * Review new cybersecurity policy/regulations, analyze and provide recommendations on security controls to address gaps. * Provide subject matter expertise on security frameworks and requirements, using this knowledge to advise, support policy development, and conduct risk analysis. * Provide on-site cybersecurity consultation regarding security controls and the Risk Management Framework (RMF) process to system owners, system security engineers, ISSOs, and others. * Review and validate system categorizations and security control implementation including interacting with the system owner and ISSO to ensure compliance. * Assess security control implementations for all assigned PIT packages recommending approval or authorization to the Surface SCA and the Authorizing Official's Designated Representative (AODR). * Prepare draft recommendation memos and draft approval memos for AODR and Authorizing Official (AO) signature Qualifications: Required: * Active Secret Clearance * 6+ years of information assurance or cybersecurity experience including assessment and authorization (A&A) packages * Experience assessing Security Controls for IT * DoDI 8570 compliant IAM-III such as: Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), GIAC Security Leadership, or Certified Chief Information Security Officer (CCISO). * Working knowledge of DoDI 8510.01 and the companion online RMF KS as well as security control families, security controls, and assessment procedures. * Knowledge of DoD Cyber policies and NIST and of DoD STIGs and SRGs. * Expertise in the areas of vulnerability and risk management * Experience validating and/or assessing security controls and security plans including review of test documentation on assessment procedures and associated artifacts. * Clearly demonstrate your ability to convey complex cybersecurity data to a wide variety of audiences (colleagues, experts, novices, and new to the concepts) at all levels (leadership, management, and worker). * Excellent oral and written communication skills. Desired: * Demonstrated experience using the Enterprise Mutual Assurance Support Service (eMASS) * Experience writing executive summary for an assessment * Experience generating Security Assessment Reports * Working knowledge of NIST SP 800-82r2 Guide to Industrial Control Systems (ICS) Security desired. - ______________________________________________________________________________ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI takes pride in fostering a diverse and accessible culture where every individual feels supported to chart their own path. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ______________________________________________________________________________ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here . The proposed salary range for this position is: $78,700 - $165,300 CACI is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

What other people searched near you


Security control assessor interview questions

Security controls assessor salary

Security control assessor requirements

Security controls assessor jobs

Security control assessor job interview questions

Security controls assessor training

Security control assessor career path

Security control assessor salary uk

Security controls assessor jobs remote

Searches you may like


CACI jobs vacancies near me

Security Controls Assessors Agent job at CACI

Places hiring near me

Jobs hiring near Greenbelt, MD

Hiring CACI jobs near me


Related Jobs

Hardware Security Engineer

Amazon

location-iconBaltimore, MD

dateposted-iconPosted 12 days ago

Hardware Security Engineer

Amazon

location-iconGaithersburg, MD

dateposted-iconPosted 8 days ago

Hardware Security Engineer

Amazon

location-iconDistrict Heights, MD

dateposted-iconPosted 8 days ago

Hardware Security Engineer

Amazon

location-iconLa Plata, MD

dateposted-iconPosted 8 days ago

Senior Security Engineer

Amazon

location-iconTakoma Park, MD

dateposted-iconPosted 8 days ago

Senior Security Engineer

Amazon

location-iconCapitol Heights, MD

dateposted-iconPosted 8 days ago


FAQ's

Find the answers for the most frequently asked questions below

Are you looking for job openings with CACI near Greenbelt, MD, US? You'll find plenty of opportunities in nearby cities, including Falls Church, VA, Alexandria, VA, Dumfries, VA, Fairfax, VA, Herndon, VA, Manassas, VA, Vienna, VA, Leesburg, VA, Fredericksburg, VA, Warrenton, VA, Lovettsville, VA, Purcellville, VA, Baltimore, MD, Annapolis, MD, Bowie, MD, Laurel, MD, Berryville, VA, Hampstead, MD, Bladensburg, MD, Gaithersburg, MD. These locations offer remote jobs, part-time jobs, and full-time positions with CACI. Check out current job listings in these cities to discover more employment opportunities and local jobs hiring now in your area.

If you're searching for companies hiring now in Greenbelt, MD, US, several top employers are offering a variety of job opportunities. These include Amazon, U.S. Department of Defense, SAIC, Angi, Deloitte, Allied Universal, OneMain Financial and more. Whether you're looking for entry-level positions, work-from-home jobs, or immediate hire roles, you'll find plenty of local job listings in Greenbelt, MD, US.

A Security Control Assessor evaluates and analyzes an organization's security measures, ensuring they comply with established standards and best practices, to identify vulnerabilities and recommend improvements to enhance overall security.

Security controls, in the context of a Security Controls Assessor, are the measures or mechanisms put in place to prevent, detect, or respond to a cybersecurity threat. These can include firewalls, intrusion detection systems, access controls, encryption, and incident response plans. The assessor's role is to evaluate the effectiveness of these controls in protecting an organization's information assets.

A Security Controls Assessor tests security controls by evaluating the effectiveness of implemented security measures through methods such as vulnerability assessments, penetration testing, and compliance audits to ensure they meet established standards and protect against potential threats.

Integrity controls, in the context of a Security Controls Assessor, refer to measures implemented to protect the system's data from unauthorized modification, destruction, or disclosure. These controls ensure the system maintains and enforces the integrity of its data over its entire lifecycle. Examples include access controls, change controls, and backup and recovery procedures.

A Security Controls Assessor conducts a security assessment by evaluating the effectiveness of an organization's security measures, identifying vulnerabilities, and recommending improvements to ensure compliance with industry standards and best practices. This process typically involves reviewing policies, procedures, and system configurations, as well as conducting penetration testing and risk analysis.

A Security Controls Assessor evaluates the effectiveness of security measures (controls) in place to protect an organization's assets. This is done by comparing the implemented controls against established standards, policies, and best practices, and testing their functionality to ensure they are working as intended.