Demo

Security Control Assessor

Jobs via Dice
Washington, DC Full Time
POSTED ON 12/12/2025 CLOSED ON 1/6/2026

What are the responsibilities and job description for the Security Control Assessor position at Jobs via Dice?

Dice is the leading career destination for tech experts at every stage of their careers. Our client, Protos IT, is seeking the following. Apply via Dice today!

Security Control Assessor

Public Trust

Washington DC (5 days a week on-site)

This role will involve performing security control assessments, utilizing the NIST Risk Management Framework (RMF), and supporting the overall cybersecurity efforts to safeguard systems and information. The ideal candidate will have a strong background in security control assessments, specifically utilizing the NIST RMF and related publications.

This is an on-site position based in the D.C. area with occasional travel.

Responsibilities:

  • Perform security control assessments using the NIST Risk Management Framework (RMF) for ATR systems.
  • Leverage the Joint Cybersecurity Authorization Management (JCAM) system (formerly CSAM) to conduct assessments, manage security controls, and provide recommendations.
  • Collaborate with Information System Security Officers (ISSOs) and other teams to obtain required information and support system security assessments.
  • Develop and maintain Plans of Actions and Milestones (POAMs) and provide recommendations for mitigating security risks.
  • Review and assess system security documentation, including System Security Plans (SSPs), security assessments, and continuous monitoring activities.
  • Conduct vulnerability management activities, including assessing remediation efforts and verifying controls.
  • Provide recommendations on account management, configuration management, incident response, cloud computing environments, and contingency planning.
  • Maintain and update knowledge of federal security requirements and industry standards.
  • Work independently and manage tasks effectively while maintaining flexibility to adapt to changes in tasking.

Personal Skills:

  • Analytical: Ability to assess complex security issues and propose solutions.
  • Independent: Able to work autonomously with little to no supervision.
  • Team-Oriented: Collaborates effectively with ISSOs and other stakeholders.
  • Flexible: Adaptable to changes in priorities or tasking.
  • Inquisitive: Strong ability to ask the right questions to gather information and clarify requirements.
  • Outgoing: Comfortable interacting with multiple teams to gather necessary information and support security efforts.

Job Requirements:

Education & Experience:

  • Bachelor's degree with 8 years of relevant experience. Additional experience may be considered in lieu of a degree.
  • Minimum of 3 to 5 years performing security control assessments using the NIST Risk Management Framework (RMF).
  • Experience with or Federal Law Enforcement Agency organizations is preferred but not required.
  • Knowledge of NIST Risk Management Framework (RMF):
  • SP 800-53A Rev. 5: Assessing Security and Privacy Controls in Information Systems and Organizations
  • SP 800-53 Rev. 5: Security and Privacy Controls for Information Systems and Organizations
  • SP 800-37 Rev. 2: Risk Management Framework for Information Systems and Organizations
  • SP 800-137: Information Security Continuous Monitoring (ISCM)
  • SP 800-18 Rev. 1: Guide for Developing Security Plans for Federal Information Systems
  • FIPS 200: Minimum Security Requirements for Federal Information and Information Systems
  • FIPS 199: Standards for Security Categorization of Federal Information and Information Systems
  • Experience with Joint Cybersecurity Authorization Management (JCAM) system (formerly CSAM):
  • Use of JCAM for assessment and management of security controls for Federal LEA systems.
  • In-depth Knowledge in the following principles:
  • Account Management
  • Configuration Management
  • Vulnerability Management
  • Identity Credentials and Authorization Management
  • Contingency Plans/Planning
  • Audit and Accountability
  • Incident Response
  • Media Protection
  • Cloud Computing Environments
  • POAM Creation and Management

Additional Qualifications:

  • Active Public Trust clearance or ability to obtain one.
  • Ability to travel up to 25% for site assessments, meetings, and other required duties.
Security Control Assessor (SCA)
Cymertek -
Tysons, VA
Security Control Assessor (SCA)
Chenega MIOS SBU -
Oakton, VA
Security Control Assessor
ASRC Federal -
Washington, DC

Salary.com Estimation for Security Control Assessor in Washington, DC
$142,331 to $174,474
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Control Assessor?

Sign up to receive alerts about other jobs on the Security Control Assessor career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$91,971 - $119,923
Income Estimation: 
$114,980 - $148,259
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$220,784 - $286,649
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Jobs via Dice

  • Jobs via Dice Fargo, ND
  • Brand New Civil Engineer Opening With Leader In Land Development, Utilities and Drainage Design! This Jobot Job is hosted by: Brian Perkins Are you a fit? ... more
  • 12 Days Ago

  • Jobs via Dice Anchorage, AK
  • Dice is the leading career destination for tech experts at every stage of their careers. Our client, Healthcare IT Leaders, is seeking the following. Apply... more
  • 12 Days Ago

  • Jobs via Dice Middletown, RI
  • Job ID: 2511899 Location: MIDDLETOWN, RI, US Date Posted: 2025-11-26 Category: Wage Determination (SCA) Subcategory: Service Contract Act Schedule: Full-ti... more
  • 12 Days Ago

  • Jobs via Dice Smithfield, RI
  • RESPONSIBILITIES: Kforce has a client that is seeking a 50/50 FS Java Angular AWS in Smithfield, RI. Responsibilities: Communicating technical needs and ca... more
  • 12 Days Ago


Not the job you're looking for? Here are some other Security Control Assessor jobs in the Washington, DC area that may be a better fit.

  • NewGen Technologies Springfield, VA
  • The Security Control Assessor (SCA) will conduct and document a comprehensive assessment of the management, operational, and technical security controls em... more
  • 1 Month Ago

  • Cymertek Chantilly, VA
  • Security Control Assessor (SCA) LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMM... more
  • 14 Days Ago

AI Assistant is available now!

Feel free to start your new journey!