Jobs and Careers
SY
Security Control Assessor Level 2
System High CorporationUnited Statesfull_timeVerifiedPosted 11 Jun 2025
About the role
Job Details
Job Location CHANTILLY, VA 1 - Chantilly, VAPosition Type ContractorJob Category Information TechnologyDescription
Position Overview
The Security Control Assessor (SCA) provides information security Assessment and Authorization (A&A) support throughout a customers programs lifecycle to Contractor and Government facilities processing customers information. SCAs enhance the Information System (IS) security awareness of Directorates' & Offices' staffs, ensure that proper IS security resources are appropriately applied, and act as an IS liaison between the Directorates & Offices and OS&CI.
The SCA Level duties include, but are not limited to the following:
- The SCA shall review information systems for compliance with applicable DCID, ICD, and customers directives and guidance, and make recommendations to the USG.
- Provide IS security advice and guidance in accordance with applicable DCID, ICD, and customer directives and guidance to Government and industry partners for the protection of data at all classification levels including SCI.
- Provide IS technical guidance and support in preparing responses for USG approval to A&A questions asked by Government and industry partners.
- Evaluate and recommend approval, disapproval, or waiver(s) for IS processing national security data at industry and/or Government facilities.
- Support customer Securitys development and implementation of directives and guidance for Customers Information Assurance, Information Technology, and Information Management policies.
- Provide input to customer for consideration in the promulgation of future Customers IS security policy.
- Support and/or conduct site visits and assessments to inspect and verify IS reports and plans at industrial and Government locations as approved by the cognizant COTR or site Government Point of Contact (GPOC) and provide a written report for review and approval by the Government.
- Prepare reports and memoranda, to include, but not limited to: Memoranda for the Record (MFR), Memoranda of Agreement (MOA), Authorization to Proceed, and status and technical briefs for review and approval by the Government.
- Update data and maintain Government-provided databases with current information about Government and industry IS status and representative contact information.
- Prepare, review, and record notification and status messages to indicate A&A state of systems to system owner or programs in a format approved by the Government.
- The contractor shall ensure that appropriate IS security requirements including applicable DCID, ICD, and customer directives and guidance are addressed and applied, and that appropriate documentation is prepared by the system owners or programs. The documentation will be contained in the Security Assessment Package, including, but not limited to the Concept of Operations (CONOPS) Plan, System Security Plans, System Requirements Traceability Matrix, Risk Management Matrix, Test Results, interface control documents, requests for changes, test plans, and other related program security documentation.
- Track completion of the Security Assessment Report (SAR).
- Support the preparation of the SAR, including, but not limited to, the Summary of Assessment results and Authorization Recommendation.
- Review, coordinate, and respond to IS security issues as requested by the Government.
- Perform short term (less than 90 days) CONUS and OCONUS travel to conduct site security inspections when approved by the COTR.
- Provide A&A support to the Government for the protection of special programs and tactical operations related activities.
Qualifications
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s