Назад
Company hidden
2 дня назад

Security Control Assessor Representative (SCAR)

150 000 - 190 000$
Формат работы
onsite
Тип работы
fulltime
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Control Assessor Representative (SCAR) (Cybersecurity): Assessing DoD security controls and cybersecurity systems for TRMC and the RDT&E community with an accent on Risk Management Framework authorizations, vulnerability analysis, and compliance audits. Focus on developing assessment processes, managing A&A packages, evaluating residual risk, and supporting system authorization for defense and cloud environments.

Location: Huntsville, Alabama, United States. Travel required 25% of the time.

Salary: $150,000–$190,000 annually for Alabama.

Company

hirify.global delivers engineering, logistics, operations, science, program management, mission IT, and cybersecurity solutions for defense and space programs.

What you will do

  • Assess management, operational, and technical security controls across TRMC and RDT&E systems and applications.
  • Identify vulnerabilities, analyze their impact, prepare assessment reports, and recommend corrective actions.
  • Develop and oversee independent cybersecurity audits for applications, networks, systems, cloud services, and data centers.
  • Manage Assessment and Authorization packages, assurance materials, POA&Ms, SARs, and SAPs.
  • Perform vulnerability analysis, validate security postures, determine residual risk, and draft preliminary or residual risk statements.
  • Provide RMF guidance to system engineers and program managers and participate in security assessment meetings with technical and program stakeholders.

Requirements

  • Proven subject matter expertise in the Risk Management Framework and DoD security control assessments.
  • Experience conducting security risk assessments for RMF authorizations and working with the RDT&E community.
  • Familiarity with vulnerability scanning tools, cyber threats, vulnerabilities, and confidentiality, integrity, and availability principles.
  • Knowledge of SaaS, IaaS, and PaaS cloud service models, STIGs, automated vulnerability scans, and DoD cybersecurity policies.
  • Bachelor’s degree in engineering, computer science, information technology, or a related field, plus data security experience; strong communication, teamwork, and project management skills.
  • Advanced IAM III certification for SCA under DoD Manual 8140.03 and Top Secret / SSBI clearance required.

Culture & Benefits

  • Collaborative environment focused on innovation and cybersecurity solutions.
  • Potential 401(k) plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability coverage, and paid time off.
  • Professional training, development, and career advancement opportunities.
  • Additional compensation may include bonuses, commissions, relocation benefits, and short- or long-term incentives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →