Security Control Assessor (SCA)

Naval Supply Systems Command - Department of the Navy

A total of 8 years of experience, consisting of the following combination: Qualified candidates must be U.S. Citizens. GENERAL EXPERIENCE: 3 years’ experience in security, technical or investigative work which demonstrated the ability and aptitudes required to perform technical, managerial or analytical work involving management information systems. OR SUBSTITUTION OF EXPERIENCE FOR EDUCATION: One year of related academic study above the high school level may be substituted for 9 months of experience up to a maximum of a 4 year bachelor’s degree in IT security or computer information systems for 3 years of general experience. AND SPECIALIZED EXPERIENCE: 5 years of demonstrated experience in at least two of the following: Risk management validation; IT security compliance and reporting; Technical risk analysis; and Authorization and accreditation. And experience in the performance of: System Security Assurance: ensuring that entire systems meet security requirements, function securely, and undergo comprehensive testing for overall security assurance. Security Assessments: conducting security assessments and developing Security Assessment Plans (SAPs). Technical Understanding: interpreting network diagrams, vulnerability scans, and compliance scans. Security Documentation: creating and maintaining various security documents, including Security Assessment Plans. Risk Management Framework: conducting security control assessments following a Risk Management Framework approach, along with conducting risk assessments and developing security assessment reports. And in-depth knowledge of: NIST 800-53, risk mitigation strategies for computer operating systems, networks, or cloud services, and security controls and compliance frameworks. This position is designated in accordance with SECNAV M-5510.30 and will require a favorable Single Scope Background Investigation (SSBI). Candidates must be eligible for and obtain a Top Secret Clearance, within 6 months of appointment. Failure to obtain will result in termination.
Join the Navy Exchange Service Command (NEXCOM) as a Dynamic Security Control Assessor (SCA) with a passion for fortifying IT systems against evolving threats! Expert in evaluating and validating security controls, leveraging cutting-edge risk management frameworks to ensure top-notch cybersecurity.

Show Full Vacancy