Security Control Assessor (SCA)
System High CorporationAbout the role
Job Details
Job Location ARLINGTON, VA 3 (DARPA) - Arlington, VAPosition Type Full TimeJob Shift DayDescription
Position Overview
The Security Control Assessor must fulfill a variety of cybersecurity functions, to include: System Administrator, Enterprise Oversight, certification and accreditation, SAP and SCI assessment and authorization (A&A), Platform Information Technology (PIT) assessment and authorization, Information Assurance and Technical Security for AIS, Information Technology (IT) Network Administration & Support, and Information System Security Officer support. Will perform the IA tasks necessary to ensure that the existing DARPA IA program meets National, DoD, and DARPA IA standards, and continues to protect and defend DARPA information and Information Systems (IS) by ensuring the confidentiality integrity, availability, authentication, and non-repudiation of the systems.
The Senior Cybersecurity Specialist possesses experience in successfully participating in DoD Special Access Program Joint Certification and Accreditation, Assessment, and Approval events for DoD Joint cyber ranges and/or jointly accredited SAP information systems. The DARPA systems to be protected include systems that process and store information from controlled unclassified (CUI) up to Top Secret, including SAP and SCI caveats/compartments.
Duties shall include, but are not limited to the following:
- Must possess experience in successfully meeting and participating in Defense Information System Agency (DISA), National Security Agency, and USCBYERCOM Computer Network Defense Program (CNDSP) and CBYERCOM Computer Readiness Inspections (CCRI)
- Experience with network security devices, classified Local Area Networks, Wide Area Networks, public key infrastructure (PKI), virtual machines, and end-point security solutions.
- Must be thoroughly familiar with, understand, and be able to apply the standards and requirements contained in the following:
- DoD Instruction 5220.22 National Industrial Security Program (NISPOM) Operating Manual, Chapter 8
- Defense Security Service Manual for the Certification and Accreditation of Classified Systems under the NISPOM Version 3.2
- DoD Directive 5205.16 The DoD Insider Threat Program
- NIST SP 800-53 Rev. 4, Security and Privacy Controls for Federal Information Systems and Organizations
- DoD Joint Special Access Program Implementation Guide (JSIG)
- Committee for National Security System Policy (CNSSP) Policy (CNSSP) No. 22 on Information Assurance Risk Management for National Security Systems
- CNSSP No. 26 National Policy on Reducing the Risk of Removable Media
- Committed for National Security Systems Directive (CNSSD) No. 504 Directive on Protecting National Security Systems From Insider Threat
- Committee for National Security System Instruction (CNSSI) No. 1253 Security categorization and Control Selection for National Security Systems
- DoDD 8000.1, Management of DoD Information Resources and Information Technology
- DoD Directive 8100.2, Use of Commercial Wireless Devices, Services, and Technologies in the DoD Global Information Grid (GIG)
- DoDD 8140.01 Cyberspace Workforce Management
- DoDI 8500.01 Cybersecurity
- DoD Instruction 8510.01 Risk Management Framework (RMF) for DoD Information Technology
- DoD Directive 8530.1, Computer Network Defense (CND)
- DoD Instruction 8530.2, Support to CND
- DoD Instruction 8551.1, Ports, Protocols, and Services Management (PPSM)
- DoD Manual 8570.01-M Information Assurance Workforce Improvement Program
- DCID 6/3, Protecting SCI within Information Systems
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s