Security Controls Assessor

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cherokee Federal

Cherokee Federal

5001 - 10000 employees

Founded 1969

🏛️ Government

🔐 Security

🏢 Enterprise

Government • Security • Enterprise

Cherokee Federal is a U. S. federal systems integrator and government contractor that empowers mission success for more than 60 U. S. federal agencies. With a global workforce of over 5,000, it delivers advanced technology (cloud, cybersecurity, data & analytics), health services, intelligence analysis and operational support, logistics and sustainment, mission-critical manufacturing, program and engineering technical services, and dynamic contracting solutions to support federal priorities and national security. Cherokee Federal is part of Cherokee Nation Businesses and focuses on mission-focused, U. S. -made solutions.

📋 Description

• Provide independent assessments of MARAD information systems in support of system authorization, reauthorization, and continuous monitoring activities. • Evaluate management, operational, and technical security controls in accordance with NIST Risk Management Framework (RMF) requirements. • Support Authority to Operate (ATO) decisions. • Develop assessment documentation and reports. • Collaborate with MARAD, DOT, and cybersecurity stakeholders to ensure compliance, risk visibility, and mission assurance. • Assess MARAD systems in one of three states: System Authorization: Initial Authorization, Reauthorization, or Continuous Monitoring Assessment (CMA). • Provide annual assessment support to the NSMV and MARAD CIO programs. • Conduct independent assessments of specified MARAD information systems following the System Authorization process. • Execute and conduct analysis of network and systems to validate appropriate security control implementation. • Develop security assessment plans and assessment reports compliant with latest revisions of NIST Special Publication 800-53A Recommended Security Controls. • Develop security assessment executive summary documents including summative presentation further providing an overview of activities, findings, risks and mitigation recommendations.

🎯 Requirements

• Bachelor's Degree in Cybersecurity or related IT field may be substituted for 4 years of experience • Bachelors Degree in an IT Related Field. • Certified Information Systems Auditor (CISA), Advanced in AI Audit (AAIA), or equivalent certification • 12 years of related work experience • Prior experience supporting US Navy or Coast Guard Maritime Cyber Assessments • Clearance: Must possess or be able to obtain a public Trust. • Prior Department of Transportation experience is a plus. • Must pass pre-employment qualifications of Cherokee Federal

🏖️ Benefits

• Medical • Dental • Vision • 401K • Other possible benefits as provided. Benefits are subject to change with or without notice.

Apply Now

Similar Jobs

🔥 9 minutes ago

GovWorx

11 - 50

🤖 Artificial Intelligence

🏛️ Government

☁️ SaaS

IT & Security Engineer responsible for architecture, hands-on delivery, and technical leadership at GovWorx. Focused on security operations, identity management, and compliance in a remote setting.

🇺🇸 United States – Remote

💵 $110k - $130k / year

🔥 Funding within the last year

💰 Private equity on 2025-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

Jamf

MacOS

Python

🔥 37 minutes ago

GoFundMe.org

11 - 50

🤲 Charity

🤝 Non-profit

🌍 Social Impact

Senior Security Engineer at GoFundMe responsible for improving security through consultations and assessments. Collaborating with engineering teams to secure development practices and technologies.

JavaScript

Kotlin

PHP

Python

TypeScript

🔥 48 minutes ago

General Dynamics Information Technology

10,000+ employees

🔒 Cybersecurity

🤖 Artificial Intelligence

Cloud Security Information Analyst supporting modernization initiatives for federal courts. Collaborating on cybersecurity architecture and programming while ensuring compliance and security measures.

AWS

Cloud

Cyber Security

Linux

Node.js

Python

Splunk

🔥 48 minutes ago

General Dynamics Information Technology

10,000+ employees

🔒 Cybersecurity

🤖 Artificial Intelligence

Information Systems Security Officer for the CMM Program, building enterprise-class software applications and supporting ATO process. Work in cloud engineering to enhance security and compliance.

AWS

Cloud

Firewalls

SDLC

🔥 2 hours ago

Rithum

501 - 1000

🛍️ eCommerce

Staff AI-First Information Security Engineer at Rithum bridging AI adoption and information security. Responsible for designing security controls, automating tools, and collaborating with engineering teams.

AWS

Cloud

Python

SDLC

Terraform