FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Controls Assessor
Valiant SolutionsSecurity Controls Assessor leading hands-on technical assessments for government information systems. Offering FISMA and FedRAMP expertise while mentoring junior analysts in a remote role.
Tech Stack
Tools & technologiesCloudCyber SecurityRPAServiceNowSplunk
About the role
Key responsibilities & impact- Lead hands-on technical NIST SP 800-53 security control assessments, including applicable overlays (e.g., high-value assets, artificial intelligence, critical software, and FedRAMP).
- Serve as a FISMA and FedRAMP technical subject matter expert across SA&A, ASCA, and Event-Driven Security Controls Assessment efforts.
- Guide the Discovery, Assessment, Risk Validation, and Finalization stages, including Security Assessment Plan development, evidence collection, control assessment meetings, and Security Assessment Report finalization.
- Coordinate and conduct stakeholder meetings and findings reviews, and brief stakeholders on draft Security Assessment Report findings and risk decisions.
- Maintain and update assessment package templates (Security Assessment Plan, System Security Plan, Security Controls Traceability Matrix, Security Assessment Report, and Action Item List) for consistency and compliance.
- Assess the impact of new laws, regulations, policies, and guidance on the client’s assessment requirements and recommend process changes.
- Provide day-to-day technical direction and mentorship to other security analysts.
- Incorporate threat modeling and threat hunting into the assessment process to proactively identify and mitigate risks.
- Recommend automation approaches, including robotic process automation, workflow orchestration, and data transformation, to improve assessment efficiency and accuracy.
- Support FedRAMP package reviews for cloud efforts and responses to data calls and audits from the agency inspector general, GAO, and OMB.
- Provide knowledge transfer and upskilling to federal staff so they can perform assessments and serve as backup to contractor assessors.
Requirements
What you’ll need- Five (5) or more years of progressively responsible experience in information security, security control assessment, or cyber risk management.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field, or an additional three (3) to five (5) years of relevant experience in lieu of a degree.
- Demonstrated hands-on experience assessing NIST SP 800-53 controls and producing A&A artifacts (System Security Plan, Security Assessment Plan, Security Assessment Report, Security Controls Traceability Matrix, and Plan of Action and Milestones).
- Knowledge of FISMA, the NIST Risk Management Framework (NIST SP 800-37), FedRAMP, ISCM, and CDM.
- Demonstrated experience with technology risk assessments, security engineering, and security architecture principles.
- Experience with cloud systems, cloud service providers, and FedRAMP requirements.
- Experience with GRC platforms (e.g., Qmulos Q-Compliance, ServiceNow GRC), SharePoint, scanning tools, and SIEM (e.g., Splunk).
- Familiarity with FIPS 199 security categorization and privacy control assessment.
- Strong written and verbal communication and stakeholder engagement skills.
- Preferred Certifications CISSP, CISM, CISA, or CAP certification preferred.
Benefits
Comp & perks- Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time Employees
- Valiant contributes 25% towards Health Coverage for Family and Dependents
- 100% Paid Short Term Disability and Life Insurance Policy for Full-time Employees
- 100% Paid Certifications
- 401K Matching up to 4%
- Paid Time Off
- Paid Federal Holidays
- Wellness & Fitness Program
- Valiant University – Online Education and Training Portal
- FSA programs for: Medical Costs, Dependent Care, Transit, and Parking
- Referral Bonuses
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
NIST SP 800-53security control assessmentcyber risk managementsecurity engineeringsecurity architecturetechnology risk assessmentsthreat modelingthreat huntingrobotic process automationworkflow orchestration
Soft Skills
technical directionmentorshipstakeholder engagementcommunication
Certifications
CISSPCISMCISACAP