
SME Security Control Assessor
Posted Sep 16

Posted Sep 16
This is a fully remote position, open to applicants in United States.
• Assist in security control assessment activities for HHS-ACF information systems.
• Implement NIST security controls and frameworks to assess control execution and effectiveness.
• Collect, organize, and document evidence for assessments.
• Perform security testing and evaluations.
• Support vulnerability scanning and analysis efforts.
• Conduct interviews related to security controls.
• Aid in continuous monitoring initiatives.
• Contribute to the creation of assessment reports, briefings, and formal deliverables.
• Maintain documentation for assessments and track artifacts.
• Review security documentation thoroughly.
• Assist in the formulation of Plans of Action and Milestones (POA&Ms).
• Engage in team meetings and technical discussions surrounding compliance, risk management, and system security posture.
• A Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related discipline.
• At least 2 years of experience in conducting security control assessments.
• Basic comprehension of cybersecurity principles and concepts.
• Familiarity with NIST frameworks and security controls.
• Knowledge of common security tools and technologies.
• Exceptional attention to detail.
• Strong organizational abilities.
• Basic technical writing skills.
• Proficient in the Microsoft Office suite.
• Strong analytical and problem-solving capabilities.
• Ability to adhere to detailed instructions and procedures.
• Good communication skills.
• Willingness to learn and enhance professional skills.
• Basic understanding of networking concepts.
• Capacity to work effectively within a team environment.
• Commitment to upholding confidentiality and security protocols.
• Familiarity with the Risk Management Framework (RMF).
• Security+ certification or in progress.
• Basic understanding of FISMA requirements.
• Experience with vulnerability scanning tools.
• Knowledge of basic scripting or programming.
• Familiarity with cloud computing concepts.
• Understanding of basic system administration.
• Experience with documentation management systems.
• Knowledge of compliance frameworks.
• Basic understanding of security assessment methodologies.
• Familiarity with cybersecurity best practices.
• Experience with technical documentation.
• Interest in federal government cybersecurity.
• Basic understanding of privacy principles.
• Must be a United States citizen.
• Ability to successfully obtain and maintain a Public Trust clearance.
• Comprehensive health and wellness benefits.
• Opportunities for professional development and training.
• Retirement savings plan with employer contributions.
• Paid time off and holiday leave.
• Supportive and inclusive work environment.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.