Lead Security Control Assessor

Security AnalystSecurity AnalystFull TimeRemoteLeadTeam 201-500

Location

United States

Posted

3 days ago

Salary

Not specified

Seniority

Lead

No structured requirement data.

Job Description

Harmonia Holdings Group, LLC is an award-winning, rapidly growing federal government contractor committed to providing innovative, high-performing solutions to our government clients and focused on fostering a workplace that encourages growth, initiative, creativity, and employee satisfaction.  

Description

Title:  Security Control Assessor

Location: Remote

Terms: Full-time

Clearance: Public Trust

Travel: <10%

 

Position Description

We have an opening for a full-time Security Control Assessor to join our talented, dynamic team in support of the Department of Veterans Affairs. As a Security Control Assessor, you will be trusted to support the delivery of our cybersecurity solutions and services. In this role, you will be a part of a security control assessment team working on the tasks outlined below.

Veterans are encouraged to apply.

Responsibilities: 

  • Lead a small team in coordinating and conducting security control assessment activities, stakeholder interviews, and report generation.
  • Conducts independent comprehensive assessments of the management, operational, and technical security controls and control enhancements employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the controls (as defined in NIST SP 800-37).
  • Plans and conducts security authorization reviews and assurance case development for initial installation of systems and networks.
  • Reviews authorization and assurance documents to confirm that the level of risk is within acceptable limits for each software application, system, and network.
  • Verifies that application software/network/system security postures are implemented as stated, document deviations, and recommend required actions to correct those deviations.
  • Develops security compliance processes and/or audits for external services (e.g., cloud service providers, data centers).
  • Performs security reviews and identifies security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy.
  • Performs risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
  • Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials).

Requirements

  • Bachelor's degree in computer science, electronics engineering or other engineering or technical discipline is required, and will accept relevant experience in lieu of degree.
  • 2+ years hands-on experience with Cybersecurity policy, risk management, or security and privacy control assessments.
  • Knowledge of cybersecurity and privacy principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Knowledge of system and application security threats and vulnerabilities.
  • Knowledge of Personally Identifiable Information (PII), Payment Card Industry (PCI), and Personal Health Information (PHI) data security standards.

 Desired

  • Experience with security control assessments within the VA using the NIST Risk Management Framework (RMF) is a plus. 
  • Certifications such as SCA and CISA are a plus.
  • Exceptional written and verbal communication skills.
  • Strong planning, organizational, and time management skills.
  • Exceptional analytical and conceptual thinking skills.
  • Ability to work collaboratively with a team of peers.

___________________________________________________________________________________________________________

Here at Harmonia we are pleased to have been repeatedly recognized for our outstanding work culture, the innovative work we do, and the employees on our team who make a difference each day.  Some of these recognitions include:  

  • Recognized as a Top 20 "Best Place to Work in Virginia"
  • Recipient of Department of Labor's HireVets Gold Medallion
  • Great Place to Work Certification for five years running
  • A Virginia Chamber of Commerce Fantastic 50 company
  • A Northern Virginia Technology Council Tech 100 company 
  • Inc. 5000 list of fastest growing companies for eleven years
  • Two-time SBA SBIR Tibbett's Award winner
  • Virginia Values Veterans (V3) Certification

We recognize that every bit of our success is the result of our teams of hard-working, motivated, and innovative professionals who are proud to call themselves part of the Harmonia family!   In addition to competitive compensation, a family-focused culture, and a dynamic, productive work environment, we offer all full-time employees a variety of benefits including, but not limited to

  • Traditional and HSA- eligible medical insurance plans 
  • 100% employer-paid dental and vision insurance options 
  • 100% employer-sponsored STD, LTD, and life insurance
  • 5% 401(k) company matching
  • Flexible-schedules and teleworking options
  • Paid holidays and PTO Accrual Plans
  • Paid Parental Leave
  • Professional development and career growth opportunities 
  • Team and company-wide events, recognition, and appreciation-- and so much more! 

Check out our LinkedInFacebook, and Instagram to find out a little more about who we are and if we are the right next step for your career!   

Harmonia is an Equal Opportunity Employer providing equal employment opportunity to all employees and applicants for employment without regard to race, color, religion, national origin, age, gender, gender identity, sexual orientation, disability, or genetics. Harmonia does and will take affirmative action to employ and advance in employment individuals with disabilities and protected veterans.  To perform the above job successfully, an individual must possess the knowledge, skills, and abilities listed; meet the education and work experience required; and must be able to perform each essential duty and responsibility satisfactorily.  Other duties in addition to those listed may be assigned as necessary to meet business needs.  Reasonable accommodation will be made to enable an applicant with a disability to successfully apply for and/or perform the essential duties of the job.  If you are in need of an accommodation, please contact HR@harmonia.com.  

Related Job Pages

More Security Analyst Jobs

Full TimeRemoteTeam 1,001-5,000

This role involves leading, advising, and supporting the development and monitoring of enterprise-wide compliance programs related to privacy and security. Key duties include interpreting regulations, developing awareness initiatives, and partnering with entities to ensure appropriate data safeguards.

PrivacyData protectionGDPRGLBAHIPAAFERPARisk managementRegulatory complianceIT security
United States
$61.8K - $89.6K / year
BioCatch logo

Threat Analyst

BioCatch

We fight to make banking safer every day.

Security Analyst4 days ago
Full TimeRemoteTeam 201-500Since 2011

The role involves maintaining strong relationships with customers to maximize value from Company solutions, providing subject matter expertise, and collaborating with Data Science to optimize fraud detection rates while minimizing friction for genuine users. Key tasks include educating customers, deploying rules for acute attacks, driving product strategy internally, and researching emerging threats.

SQLPythonRData AnalysisStatistical ModelingPresentation SkillsFraud Detection
United States
$115K - $135K / year
Full TimeRemoteTeam 201-500

We have an opening for a full-time Security Control Assessor to join our talented, dynamic team in support of the Department of Veterans Affairs. As a Security Control Assessor, you will be trusted to support the delivery of our cybersecurity solutions and services. In this role,...

United States
Security Analyst4 days ago
Full TimeRemoteTeam 10,001+H1B No Sponsor

The participant will gain exposure and experience in the healthcare field, covering governance, risk, and compliance areas within Information Security. Responsibilities include providing work experience directly related to the student's course of study through active engagement and meaningful activities.

United States
$20 / hour