Security Controls Assessor

🕒 6 dias atrás

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Valiant Solutions

Valiant Solutions

201 - 500 funcionários

Fundada em 2005

🔒 Cibersegurança

🏛️ Governo

Cybersecurity • Government • Information Technology

A Valiant Solutions é uma empresa de serviços de cibersegurança e TI que se especializa em proteger o futuro ao fornecer soluções abrangentes e personalizadas para desafios enfrentados pelo Governo Federal. Com foco em engenharia de segurança, operações e governança de risco estratégico, a empresa enfrenta desafios complexos de segurança da informação por meio de desenvolvimento de aplicativos inovadores e arquitetura corporativa. Reconhecida por seu compromisso com a excelência, a Valiant Solutions recebeu vários contratos e honras por suas contribuições impactantes na área de cibersegurança.

Descrição

• Lead hands-on technical NIST SP 800-53 security control assessments, including applicable overlays (e.g., high-value assets, artificial intelligence, critical software, and FedRAMP). • Serve as a FISMA and FedRAMP technical subject matter expert across SA&A, ASCA, and Event-Driven Security Controls Assessment efforts. • Guide the Discovery, Assessment, Risk Validation, and Finalization stages, including Security Assessment Plan development, evidence collection, control assessment meetings, and Security Assessment Report finalization. • Coordinate and conduct stakeholder meetings and findings reviews, and brief stakeholders on draft Security Assessment Report findings and risk decisions. • Maintain and update assessment package templates (Security Assessment Plan, System Security Plan, Security Controls Traceability Matrix, Security Assessment Report, and Action Item List) for consistency and compliance. • Assess the impact of new laws, regulations, policies, and guidance on the client’s assessment requirements and recommend process changes. • Provide day-to-day technical direction and mentorship to other security analysts. • Incorporate threat modeling and threat hunting into the assessment process to proactively identify and mitigate risks. • Recommend automation approaches, including robotic process automation, workflow orchestration, and data transformation, to improve assessment efficiency and accuracy. • Support FedRAMP package reviews for cloud efforts and responses to data calls and audits from the agency inspector general, GAO, and OMB. • Provide knowledge transfer and upskilling to federal staff so they can perform assessments and serve as backup to contractor assessors.

🎯 Requisitos

• Five (5) or more years of progressively responsible experience in information security, security control assessment, or cyber risk management. • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field, or an additional three (3) to five (5) years of relevant experience in lieu of a degree. • Demonstrated hands-on experience assessing NIST SP 800-53 controls and producing A&A artifacts (System Security Plan, Security Assessment Plan, Security Assessment Report, Security Controls Traceability Matrix, and Plan of Action and Milestones). • Knowledge of FISMA, the NIST Risk Management Framework (NIST SP 800-37), FedRAMP, ISCM, and CDM. • Demonstrated experience with technology risk assessments, security engineering, and security architecture principles. • Experience with cloud systems, cloud service providers, and FedRAMP requirements. • Experience with GRC platforms (e.g., Qmulos Q-Compliance, ServiceNow GRC), SharePoint, scanning tools, and SIEM (e.g., Splunk). • Familiarity with FIPS 199 security categorization and privacy control assessment. • Strong written and verbal communication and stakeholder engagement skills. • Preferred Certifications CISSP, CISM, CISA, or CAP certification preferred.

🏖️ Benefícios

• Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time Employees • Valiant contributes 25% towards Health Coverage for Family and Dependents • 100% Paid Short Term Disability and Life Insurance Policy for Full-time Employees • 100% Paid Certifications • 401K Matching up to 4% • Paid Time Off • Paid Federal Holidays • Wellness & Fitness Program • Valiant University – Online Education and Training Portal • FSA programs for: Medical Costs, Dependent Care, Transit, and Parking • Referral Bonuses

Candidatar-se

Vagas Similares

🕒 6 dias atrás

Humana

10.000+ funcionários

⚕️ Seguro de Saúde

Senior Security Architect leading AI security architecture and requirements for Humana's technology solutions. Engaging with stakeholders to ensure effective security threat mitigation and alignment with business priorities.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 6 dias atrás

Humana

10.000+ funcionários

⚕️ Seguro de Saúde

Senior Technology & CyberSecurity Compliance Professional at Humana. Supporting critical compliance and governance activities across applications and access-related controls.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 6 dias atrás

Ignite IT - Innovation & Technology

51 - 200

🏢 Corporativo

🔐 Segurança

🏛️ Governo

Senior Network Security Engineer designing and implementing network security services for the U.S. Census Bureau. Focused on firewall engineering, VPN and remote access services, and compliance support.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 6 dias atrás

Trase

11 - 50

🤖 Inteligência Artificial

🏢 Corporativo

Senior Security Assurance Manager at Trase managing SOC 2 and HIPAA compliance programs. Overseeing security policies and collaborating across teams for effective governance.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $170.000 - $230.000 / ano

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 6 dias atrás

Mariani Landscape

1001 - 5000

👥 B2C

🤝 B2B

Manage information security program for Mariani Premier Group, overseeing cybersecurity operations and team collaboration. Perform technical security tasks and improve the company’s security posture.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $119.200 - $146.600 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório