Demo

Security Control Assessor-Risk Management

AERMOR
Suffolk, VA Full Time
POSTED ON 4/17/2026
AVAILABLE BEFORE 5/16/2026
AERMOR, LLC. is hiring a Security Control Assessor-Risk Management to provide guidance to government personnel in the execution of the Cyber Red Team Cybersecurity. Managing cybersecurity, certification, and accreditation and configuration change boards of the NRT networks. The selected individual will look to support onsite daily to the Suffolk, VA area. This is not a remote position.

Responsibilities Include

  • Create, review, update, and validate Cybersecurity Standard Operations Procedures (SOPs) as required
  • Review and maintain an inventory of authorized software (software custodian)
  • Review and maintain an inventory of devices and media
  • Audit and validate configurations deployed on laptops, workstations, and servers
  • Audit and validate configurations of network devices based on DISA STIGs or defining and implementing compensating controls of such STIGs as required to ensure mission execution
  • Maintain and update all Risk Management Framework (RMF) and C&A documentation to ensure the relevancy and currency of Navy Red Team assets to include required revisions and updates in eMass
  • Conduct comprehensive annual RMF package reviews to ensure continued compliance of the Navy Red Team tool suite and/or Networks
  • Ensure traceability is maintained throughout the RMF submission process (e.g.: C&A Plan, POAM, RAR, Topology, Software, Ports Protocols and Services, Test Plan)
  • Maintain network and system documentation in DITPR-DON / DADMS
  • Maintain documentation and registration of Network Ports, Protocols, and Services
  • Maintain circuit registrations in Global Interconnection Approval Process System (GIAP) and Systems/Network Approval Process (SNAP).
  • Maintain and report on the status of all outstanding C&A items and supporting documentation.
  • As a member of the Configuration Control Board (CCB), ensures CCB approved changes are timely and accurately reflected in the C&A documentation
  • Support compliance validation of current and future directives (e.g.: IAVs, STIGs, CTOs)
  • Provide recommendations for corrective action of any non-compliant security controls
  • Execute DISA STIG validations for systems in conjunction with C&A package reviews annually
  • Provide security expertise to ensure security controls are implemented and the resulting documentation and artifacts are current
  • Prepare reports on scanning results and configuration management observations monthly.
  • Document assessment activities and results in sufficient detail to enable an external review of all assessment processes, activities, results, and conclusions
  • Conduct and document a semi-annual tabletop exercise (two times) each calendar year
  • Produce test plans, draft after actions, and other documents for review and comment
  • Review and/or revise Business Impact Analysis (BIA) to include business processes, IT dependency, and physical security assessments annually
  • Review and analyze IT contingency/disaster recovery plans for NIST and DoN compliance and produce checklists for IT systems
  • Assist with exercise and/or training and documentation of IT contingency plan and execution.

Skills And Experience Requirements

  • Must currently possess an active U.S. Government issued Top Secret Security Clearance SCI access, for consideration
  • Minimum of 3 years of experience with Assured Compliance Assessment System (ACAS) and/or Nessus
  • Minimum of 3 years Certification and Accreditation (C&A) package assembly experience
  • Commute to the Suffolk, VA area daily.

Education/Certification Requirements

  • Bachelor's degree in related field.
  • DoD IAT Level II Certification: CompTIA - Security
  • Risk Management Framework (RMF) training and certification is desired, though not required.
  • Certified Information Systems Security Professional (CISSP) certification is required.

Powered by JazzHR

Salary.com Estimation for Security Control Assessor-Risk Management in Suffolk, VA
$80,903 to $98,198
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs with skills like those required for the Security Control Assessor-Risk Management.

Click the checkbox next to the jobs that you are interested in.

  • Disaster Recovery Planning Skill

    • Income Estimation: $112,492 - $138,850
    • Income Estimation: $121,346 - $138,513
  • Cloud Security Skill

    • Income Estimation: $125,027 - $157,872
    • Income Estimation: $149,432 - $188,965
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at AERMOR

  • AERMOR Norfolk, VA
  • Location: Norfolk, VA Clearance: Secret Position Type: Full-Time AERMOR is seeking a MBSE focused Senior Systems Engineer who will provide advanced technic... more
  • 13 Days Ago

  • AERMOR Ogden, UT
  • Location: Hill AFB, Utah Clearance Required: TS/SCI Employment Type: Full-Time AERMOR is seeking a highly skilled Systems Engineer to support the United St... more
  • 1 Day Ago

  • AERMOR Suffolk, VA
  • Employee Type: Full-Time Location: Suffolk, VA Job Type: HBSS/ACAS Watch Floor Experience: 1 Years Clearance: Secret AERMOR LLC is seeking to hire ESS / AC... more
  • 1 Day Ago

  • AERMOR Norfolk, VA
  • Position Type: Full-Time Location: Norfolk Clearance: Secret AERMOR is seeking a highly motivated and experienced Data Engineer to support data analysis an... more
  • 1 Day Ago


Not the job you're looking for? Here are some other Security Control Assessor-Risk Management jobs in the Suffolk, VA area that may be a better fit.

  • Davies Risk Services Heathsville, VA
  • Seeking Independent Contractors to Perform Insurance Property Surveyors! Davies Risk Services is looking for independent contractors to perform insurance p... more
  • 9 Days Ago

  • Davies Risk Services Topping, VA
  • Seeking Independent Contractors to Perform Insurance Property Surveyors! Davies Risk Services is looking for independent contractors to perform insurance p... more
  • 9 Days Ago

AI Assistant is available now!

Feel free to start your new journey!