Demo

Security Control Assessor

NewGen Technologies
Springfield, VA Full Time
POSTED ON 12/4/2025
AVAILABLE BEFORE 2/3/2026

The Security Control Assessor (SCA) will conduct and document a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an information system. The SCA will determine the overall control effectiveness through documentation review, inspections, testing, and interviews. The role will provide an assessment of the severity of weakness or deficiencies and recommend corrective actions to address identified vulnerabilities. The SCA will provide initial mitigation of Cybersecurity incidents, support incident investigations, and closure of the incidents. The position will provide assessment of proposed technology (hardware, software, and firmware) for Cybersecurity vulnerabilities.

Responsibilities

  • Assessment Package Feedback which focuses on the documentation submitted to support the various steps of Risk Management Framework (RMF). Recommend a format for this document for government approval.
  • Security Assessment Report which focuses on the assessment of an information system in support of the authorization determination. Shall provide a draft report using the government provided template; may recommend format changes for government consideration.
  • Periodic Cybersecurity Assessment Report or Security Compliance Report which focuses on the assessment of a Cybersecurity program at a location. Shall provide a draft report using the government provided template; may recommend format changes for government consideration
  • Cybersecurity Incident Reports which focus on documenting Cybersecurity incidents. Shall provide a draft report using the government provided template; may recommend format changes for government consideration.
  • Technical Assessment of Hardware, Software, or Firmware. Shall document the technical assessment addressing Cybersecurity vulnerabilities via a government agreed format, such as a Help Desk ticket application, electronic mail, memorandum, etc.
  • Develop an annual compilation of findings and observations based upon the Security Assessment Reports and Periodic Cybersecurity Assessment Reports or Security Compliance Reports based upon fiscal year assessments. The format shall be recommended for government approval. The compilation shall be void of system names, system identification numbers, government or contractor locations, and individual names.
  • Draft and/or preliminary documents shall be presented in one of the following electronic formats: Microsoft Office version 2007 compatible (.docx, .xlsx, or .pptx) or the standard Portable Document Format (PDF) format. Final and/or approved format shall be determined by the government; may recommend additional formats.
  • Incumbent travel requirements are approximately 30% annually to support critical business needs. Travel location are CONUS and some OCONUS locations.

Requirements

  • US Citizenship; Active TS/SCI Clearance with ability to obtain and maintain a CI Poly
  • Bachelor’s Degree in Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering from an ABET accredited or NCAE designated institution; OR Certifications: Certified in Governance Risk and Compliance (CGRC); or CompTIA Security ce; or CompTIA Cloud ; or CompTIA PenTest ; or CompTIA SecurityX (formerly CASP )
  • 4 or more years of experience in the validation of security configuration of operating systems
  • 2 or more years of experience applying Risk Management Framework (RMF) as described in the National Institute of Standards and Technology Special Publications
  • Meet the Cyber IT/Cybersecurity Workforce (CSWF) Security Control Assessor (612); Intermediate Level for SECNAV M-5239.2 compliance
  • Travel approximately 30% annually. Travel location are CONUS and some OCONUS locations

Desired Skills

  • Strongly desired experience with application of the Defense Information Systems Agency (DISA) Security Technical Implementation Guides
  • Operating System/Computing Environment certificate for Windows Server 2012 or newer UNIX (Linux (Red Hat), Solaris)
  • Experience with vulnerability scanners
  • Experience with Cloud technologies
  • Documented (certificate) RMF training provided by the Intelligence Community or DoD SAP community
  • Experience with assessing security relevant applications
  • Experience as a System Administrator, Information System Security Manager, or Information System Security Officer
  • Experience applying the requirements of the DoD Joint Special Access Program Implementation Guide (JSIG) to information systems or Cybersecurity programs
  • A cyber credential at the Master proficiency level for specialty area Securely Provision – Risk Management as outlined in SECNAV M-5239.2
  • Experience with Cross Domain Solutions (CDS)


About Us
For more than 20 years, NewGen Technologies has solved our clients’ toughest IT challenges with integrity, security, and outstanding service by delivering both technology and talent. We have helped secure borders, have used artificial intelligence (AI) to fight terror, aided the identification of criminals, and have helped to prevent crime through the introduction of biometrics. Our team of Highly Cleared Specialists have hard-to-find skills and expertise in a wide spectrum of technologies to provide solutions that transform business processes and solve problems of national significance. #CJ

Salary.com Estimation for Security Control Assessor in Springfield, VA
$128,513 to $161,704
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Control Assessor?

Sign up to receive alerts about other jobs on the Security Control Assessor career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$91,971 - $119,923
Income Estimation: 
$114,980 - $148,259
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at NewGen Technologies

  • NewGen Technologies Tysons, VA
  • As a Data/AI Solution Architect , you will be thrust into the forefront of technological innovation, where your expertise will shape the future of Generati... more
  • 13 Days Ago

  • NewGen Technologies Washington, DC
  • Conducts research in design, development, testing and utilization of electronic data processing software. Designs, develops, documents, tests and debugs ap... more
  • 14 Days Ago

  • NewGen Technologies Chantilly, VA
  • We are seeking a Junior Hardware Benchmark Engineer to support our hardware performance testing initiatives. This role blends hands-on technical work with ... more
  • 15 Days Ago

  • NewGen Technologies Washington, DC
  • The Strategic Communications Consultant designs and executes corporate and strategic communication initiatives for government and industry executives. The ... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Security Control Assessor jobs in the Springfield, VA area that may be a better fit.

  • Cymertek Chantilly, VA
  • Security Control Assessor (SCA) LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMM... more
  • 14 Days Ago

  • Pendleton Solutions Arlington, VA
  • Position: Security Control Assessor (SCA) Clearance: Top Secret (TS) Security Clearance w/SCI is required and current within the last five years Work Locat... more
  • 2 Months Ago

AI Assistant is available now!

Feel free to start your new journey!