Security Controls Assessor (SCA) - Senior @Avint
All Others
Salary usd 125,000 - 1..
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2wks ago

[Hiring] Security Controls Assessor (SCA) - Senior @Avint

2wks ago - Avint is hiring a remote Security Controls Assessor (SCA) - Senior. 💸 Salary: usd 125,000 - 141,000 per year 📍Location: USA

Role Description

Avint is seeking a highly motivated Senior Security Controls Assessor (SCA) in support of a critical federal contract. The Senior SCA is a subject matter expert responsible for executing comprehensive, independent assessments of the organization’s most complex information systems, applications, and cloud infrastructures. Operating as a senior-level individual contributor, this role focuses on verifying the implementation, correctness, and effectiveness of technical, operational, and management security controls. The Senior SCA handles the most complex, critical, or sensitive system assessments, serving as a technical mentor to junior assessors and a primary technical advisor to system owners during the Risk Management Framework (RMF) lifecycle.

Qualifications

  • Bachelor’s degree (BS/BA) OR equivalent professional experience.
  • Security+; higher certifications such as CISSP, CAP, or CASP desired.
  • Minimum of 8-10 years of dedicated experience in cybersecurity, information assurance, or IT auditing.
  • At least six (6) years of dedicated experience performing hands-on security controls assessments of the most complex (C4) systems.

Requirements

  • Must be a U.S. citizen (no dual citizenship).
  • Ability to pass a background investigation.
  • Able to obtain and maintain DHS Suitability/Entry on Duty (EOD).

Soft Skills

  • Strong analytical, critical thinking, and problem-solving skills with a high level of technical professional skepticism.
  • Excellent technical writing skills, with the ability to clearly document complex technical findings and defend assessment results to stakeholders.
  • Exceptional interpersonal and diplomatic skills, allowing for productive collaboration with system administrators, developers, and management.

Position Responsibilities

  • Security Assessment and Validation
    • Lead comprehensive security control assessments of complex information systems using interview, examination, and testing methods.
    • Verify compliance with established frameworks such as NIST SP 800-37, NIST SP 800-53, NIST SP 800-171, FISMA, and/or FedRAMP, depending on organizational requirements.
    • Analyze system architectures, network diagrams, configuration settings, and policies to identify vulnerabilities and compliance gaps.
    • Review vulnerability scanning results (e.g., Nessus, Qualys) and penetration testing reports to validate the implementation of technical controls.
  • Technical Mentorship and Quality Assurance
    • Act as a senior technical escalation point and mentor for mid- and junior-level Security Controls Assessors on the team.
    • Perform peer reviews of assessment documentation, test results, and reports generated by other team members to ensure technical accuracy and consistency.
    • Support the SCA Team Lead in defining, refining, and standardizing assessment methodologies, testing procedures, and reporting templates.
  • Reporting and Risk Management
    • Author, review, and finalize high-quality Security Assessment Reports (SAR) detailing assessment findings, risks, and recommended remediations.
    • Present assessment findings and risk postures to Authorizing Officials (AO), system owners, and other stakeholders in clear, actionable terms.
    • Assist system owners in the development of realistic Plans of Action and Milestones (POA&M) to remediate identified deficiencies.
    • Collaborate with the Risk Management team to ensure assessment data accurately informs the organization’s continuous monitoring strategy.
  • Continuous Improvement and Strategy
    • Stay current on emerging cyber threats, vulnerabilities, regulatory changes, and assessment techniques.
    • Identify opportunities to automate assessment processes and integrate modern tooling into the assessment lifecycle.
    • Participate in the development and refinement of enterprise information security policies, standards, and guidelines.
  • Technical Areas of Expertise
    • Advanced knowledge of security control frameworks (specifically NIST SP 800-53, NIST SP 800-37, and NIST SP 800-171).
    • Familiarity with cloud security concepts (AWS, Azure, Google Cloud) and cloud compliance frameworks (FedRAMP).
    • Knowledge of operating system security, network protocols, access control mechanisms, and vulnerability management tools.

Benefits

  • Competitive salaries.
  • Full health insurance.
  • Generous time off and observation of federal holidays.
  • Reimbursement for courses, exams, and tuition for professional development.

Salary Range

$125,000-$141,000

Before You Apply
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Security Controls Assessor (SCA) - Senior @Avint
All Others
Salary usd 125,000 - 1..
Remote Location
🇺🇸 USA Only
Employment Type full-time
Posted 2wks ago
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Application Denied
Unlock 125,000+ Remote Jobs
🇺🇸 Be aware of the location restriction for this remote position: USA Only
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Application Denied
Unlock 125,000+ Remote Jobs
×

Apply to the best remote jobs
before everyone else

Access 125,000+ vetted remote jobs and get daily alerts.

4.9 ★★★★★ from 500+ reviews
Unlock All Jobs Now

Maybe later