Cyber Security Assessor Job at SHR Consulting Group, LLC, Alexandria, VA

THFYUmc3aEJFbjNFSkJ3N0k4T20vWVhRRXc9PQ==
  • SHR Consulting Group, LLC
  • Alexandria, VA

Job Description

Job Title: Cyber Security Assessor

Job Category: IT

Location: Arlington VA

Clearance Level: Top-Secret Clearance with SCI Eligibility

SHR is a premier technology integrator solving our nation’s most complex modernization and readiness challenges across the defense, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and AI. With an intimate understanding of our customers’ challenges and deep expertise in existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective, and efficient solutions.

The Security Control Assessor (SCA) is responsible for evaluating the security controls and procedures of an organization to ensure compliance with industry standards, government regulations, and internal policies. The SCA plays a critical role in assessing and verifying the effectiveness of security measures, identifying potential vulnerabilities, and recommending improvements to safeguard the organization's information systems and data. The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an information system (IS) to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities.

Job Responsibilities:

  • Security Assessment: Conduct comprehensive assessments of security controls for systems, networks, and applications to determine their compliance with relevant security frameworks (e.g., NIST, ISO, CIS).
  • Perform assessment of ISs, based upon the Risk Management Framework methodology.
  • Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer, and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues.
  • Evaluate security assessment documentation and provide written recommendations for security authorization to the Government. Assist the Government compliance inspections.
  • Risk Analysis: Identify and evaluate potential security risks, vulnerabilities, and threats. Provide recommendations for mitigating identified risks and improving overall security posture.
  • Documentation: Prepare detailed assessment reports, including findings, recommendations, and remediation plans. Maintain accurate and up-to-date documentation of security controls and assessment results.
  • Compliance: Ensure that security controls comply with regulatory requirements, industry standards, and organizational policies. Assist in preparing for audits and responding to audit findings.
  • Continuous Monitoring: Develop and implement continuous monitoring strategies to track and evaluate the effectiveness of security controls over time.
  • Collaboration: Work closely with IT, cybersecurity, and compliance teams to implement security controls and ensure alignment with organizational goals and objectives.
  • Training and Awareness: Provide guidance and training to staff on security best practices and control implementation.
  • Experience in security control assessment or auditing is preferred. - Knowledge: Strong understanding of security frameworks (e.g., NIST SP 800-53, ISO 27001, CIS Controls), risk assessment methodologies, and compliance requirements.

Education:

  • Bachelor's degree or equivalent additional experience of 5 years

Experience:

  • Minimum 5 years of experience in information security, cybersecurity, risk management, or related fields.

Certifications:

  • CISSP

Why Join Us:

At SHR, you will join a team that fosters growth, supports innovation, and encourages continuous learning. You will have the opportunity to impact significant government initiatives and contribute to national security and public welfare. We offer competitive compensation, comprehensive benefits, and a flexible work environment. SHR is committed to diversity and inclusion, welcoming applicants from all backgrounds. Join us and make a difference!





PIf577fafc6916-30492-35288610

Job Tags

Flexible hours,

Similar Jobs

OED Solutions

Public Relations & Communications Assistant - Entry Level Job at OED Solutions

 ...We are actively seeking individuals to join our team as Entry Level Public Relations and Communications Assistants. This role offers an excellent opportunity for those looking to start their career in PR and communications. Responsibilities: Assist in the development... 

Farmers State Bank

Compliance & BSA Specialist Job at Farmers State Bank

 ...candidate will be responsible for ensuring that our organization complies with all relevant laws, regulations, and industry standards, as well as implementing and maintaining our Bank Secrecy Act (BSA) program. Responsibilities: - Assist in maintaining the... 

EAS Roofing

Direct Marketing Consultant Job at EAS Roofing

 ...We are seeking a Direct Marketing Consultantto join our growing team. In this role, you will be responsible for generating new leads in neighborhoods we are currently help restore. In return you have the ability to make over $1000 weekly!You will be expected to engage... 

Overland Park Garden Center

Cashier Job at Overland Park Garden Center

Description The role of Cashier is to engage with customers and offer outstanding customer experience to Family Tree shoppers. They ensure that customers are promptly and happily tended to in the checkout area, that transactions are thorough, accurate, and efficient...

Pride Health

Mammography Technologist Job at Pride Health

 ...Pride Health is hiring a Mammography Technologist to support our client's hospital facility in Maryville, IL. This is a 13-weeks travel contract role with possible extension opportunity. Job ROLE: In mammography we perform outpatient screening and diagnostic exams...