Security Control Assessor, CISSP
Published | March 7, 2023 |
Location | Washington, DC |
Category | Default |
Job Type | Full-time |
Description
If you are looking for a rewarding career with a highly successful company that puts people first, Halvik Corp is the place for you! We are committed to delivering smarter IT-driven solutions bolstered by quality and innovation to help the US Federal Government succeed. Join our growing team and make a difference!
What You Will Do:
Function in a collaborative, virtual environment, seeking continuous consultation with other analysts and experts—both internal and external to the organization—to leverage analytical and technical expertise
The Security Controls Assessor will conduct independent, comprehensive assessments of the management, operational, and technical security and privacy controls and control enhancements to determine the overall effectiveness of the controls (as defined in NIST SP 800-37). Conducting system vulnerability and risk assessments and reviews and nterpret vulnerability scanner results to identify vulnerabilities. Identify gaps in security architecture, and develop a security risk management plan with recommendations for inclusion in the risk mitigation strategy. Plan and conduct security authorization reviews to confirm that the level of risk is within acceptable limits for each software application, system, and network. Provide input to the Risk Management Framework process activities. Develop security compliance processes and/or audits for external services (e.g., cloud service providers, data centers). Review Accreditation Packages.
What You Need:
A College Degree in a related field and active CISSP is required.
Ability to obtain a Public Trust Clearance. US Citizen or Green Card required.
7 years total of relevant cybersecurity experience which includes 3 to 4 years of SCA experience. Your experience must include the following:
Assessing security controls and security systems designs, conducting system vulnerability and risk assessments and reviews. Conducting vulnerability scans and recognizing vulnerabilities in security systems.
Communicating complex information in a confident and well-organized manner through verbal, written, and/or visual means.
Identifying systemic security issues based on the analysis of vulnerability and configuration data.
Applying cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
This position is currently 100% remote, but may require on site attendance at a future date.
Halvik offers a competitive full benefits package including:
Company-supported medical, dental, vision, life, STD, and LTD insurance
Benefits include 11 federal holidays and PTO.
401(k) with company matching
Flexible Spending Accounts for commuter, medical, and dependent care expenses
Tuition Assistance
Charitable Contribution matching
To comply with the guidance provided by theSafer Federal Workforce Task Force (Task Force) (https://www.saferfederalworkforce.gov/overview/)for Federal Contractors and Subcontractors, Halvik is requiring COVID-19 vaccinations for all their employees except where an employee is legally entitled to an accommodation.
Halvik Corp is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status.
Job Category: FDIC