Demo

Senior Security/Technical Risk Asssessor

Chameleon Integrated Services
Jefferson, MO Contractor
POSTED ON 10/9/2025 CLOSED ON 11/5/2025

What are the responsibilities and job description for the Senior Security/Technical Risk Asssessor position at Chameleon Integrated Services?


 
         

We are a growing information technology company that offers its employees a culture of success, the chance to work on revolutionary federal IT infrastructure, and the opportunity to grow alongside cutting-edge technology that is reshaping the industry. We are seeking forward thinking candidates that have strong experience in operational support and can help take to the next level in a pro-active stance.
 
Chameleon Integrated Services has expertise in operations management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense and for other U.S. federal government agencies. We are known for the great care we take with clients and employees, and we believe in promoting from within.
 
 
We offer a Full Benefits package including:
  • Competitive Employee Health Insurance options including dental
  • 100% company paid vision plan
  • 401K plan with generous company match and no vesting period
  • 100% company paid life insurance
  • 100% company paid long and short-term disability insurance
  • Training allowance
  • PTO and more
 
The Position:
 
Chameleon Integrated Services is currently looking for a Senior Security/Technical Risk Assessor to support one of our state level client in Jefferson City, MO.
 
This is a hybrid role that requires you to live within 50 miles of Jefferson City, MO.
 
Overview:
 
The Senior Security/Technical Risk Assessor will be responsible for performing advanced technical and analytical assessments of State of Missouri information systems, data exchanges, and network configurations supporting the MO HealthNet Division (MHD) and Information Technology Services Division (ITSD). Identify vulnerabilities, quantify risk exposure, and produce actionable mitigation recommendations. Work under the direction of the Project Manager/Lead Risk Assessment Manager to develop formal Security Assessment Reports (SARs), Risk Registers, and Mitigation Plans consistent with NIST and CMS MARS-E standards.


Responsibilities:
  • Conduct end-to-end technical vulnerability assessments and threat modeling for applications, databases, interfaces, and network segments supporting Medicaid operations.
  • Evaluate implemented controls against NIST SP 800-53, NIST SP 800-30, HIPAA Security Rule, CMS MARS-E, and ISO/IEC 27005 control baselines.
  • Execute authenticated and unauthenticated scans using authorized tools such as Tenable Nessus, ACAS, Qualys, or comparable platforms; analyze results for exploitability, configuration drift, and residual risk.
  • Assess hybrid infrastructures (on-premises, Azure Gov, AWS GovCloud, vendor-hosted) for compliance with FedRAMP and state security policy.
  • Develop and maintain risk documentation packages, including Security Assessment Plans (SAPs), SARs, and detailed POA&M entries.
  • Recommend technical, administrative, and procedural controls to reduce identified risk to acceptable thresholds.
  • Support workshops, interviews, and documentation reviews with vendors, system owners, and State security officers.
  • Provide traceability between findings, control families, and remediation actions to satisfy CMS audit and state oversight requirements.
  • Contribute to the preparation of executive summaries and briefings for MHD/ITSD leadership and external auditors.

Skills & Abilities:
  • Comprehensive understanding of NIST SP 800-30, NIST SP 800-37 RMF, ISO/IEC 27005, and HIPAA/HITECH frameworks.
  • Familiarity with FedRAMP, Azure Government, and AWS GovCloud security control baselines.
  • Proficient in developing risk registers, assessment reports, and POA&M tracking for systems containing Protected Health Information (PHI) and Personally Identifiable Information (PII).
  • Understanding of AI Risk Management Framework (AI RMF) and its application to analytical systems supporting Medicaid operations.
  • Strong analytical, documentation, and technical-writing abilities for drafting SARs, POA&Ms, and mitigation plans.
  • Capable of articulating complex technical findings to executive and non-technical stakeholders.
  • Team-oriented mindset with disciplined task tracking, version control, and evidence management to support audits.
  • Proven reliability in meeting short-turn deliverable deadlines under multi-agency oversight.
Education & Experience
  • Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related technical discipline.
  • Minimum 5 years of cybersecurity or information-assurance experience.
  • Minimum 3 years conducting comprehensive security risk assessments or vulnerability analyses for enterprise IT systems or Medicaid-related programs.
  • Demonstrated authorship of SARs or equivalent technical deliverables under NIST or ISO frameworks.

Certs:
 
  • CISSP, CISM, CRISC, CISA, CEH, GSEC, or CompTIA Security
 
 
The Location:   Jefferson City, MO (hybrid)
 
 
 
“We are an equal opportunity employer and all Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status”

Security
The Lumiere of Chesterfield Senior Living... -
Chesterfield, MO
Security
Tutera Senior Living and Health Care -
Chesterfield, MO
Senior Underwriting Specialist, Retail Property
Risk Specialists Companies Insurance Agency, Inc. -
Madison, IL

Hourly Wage Estimation for Senior Security/Technical Risk Asssessor in Jefferson, MO
$48.00 to $57.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Security/Technical Risk Asssessor?

Sign up to receive alerts about other jobs on the Senior Security/Technical Risk Asssessor career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$172,312 - $227,739
Income Estimation: 
$180,701 - $280,528
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$123,246 - $161,441
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other Senior Security/Technical Risk Asssessor jobs in the Jefferson, MO area that may be a better fit.

  • Edward Jones Saint Louis, MO
  • This job posting is anticipated to remain open for 30 days, from 03-Dec-2025. The posting may close early due to the volume of applicants. Join a financial... more
  • 1 Month Ago

  • Professional Risk Management, Inc. Maryland Heights, MO
  • DEA AFISS 2 JOB DESCRIPTION Senior Financial Investigator (SFI) and Financial Investigator (FI): Organizes and conducts detailed examinations of informatio... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!