Security Control Assessor (SCA) III
Company: General Dynamics Information Technology
Location: Los Angeles
Posted on: April 1, 2025
Job Description:
Type of Requisition:RegularClearance Level Must Currently
Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top
Secret SCI + PolygraphPublic Trust/Other Required:NoneJob
Family:Information SecurityJob Qualifications:Skills:Information
Security, Information Security Management, Information System
SecurityCertifications:CASP CE+ - CompTIA, CCNP - CiscoExperience:9
+ years of related experienceUS Citizenship Required:YesJob
Description:The Security Control Assessor (SCA) III is responsible
for conducting a comprehensive assessment of the management,
operational, and technical security controls employed within or
inherited by an IS to determine the overall effectiveness of the
controls (i.e., the extent to which the controls are implemented
correctly, operating as intended, and producing the desired outcome
with respect to meeting the security requirements for the system).
SCAs also provide an assessment of the severity of weaknesses or
deficiencies discovered in the IS and its environment of operation
and recommend corrective actions to address identified
vulnerabilities.Responsibilities will cover Collateral, Sensitive
Compartmented Information (SCI) and Special Access Program (SAP)
activities within the customer's area of responsibility.Performance
shall include:
- Perform oversight of the development, implementation and
evaluation of IS security program policy; special emphasis placed
upon integration of existing SAP network infrastructure
- Perform assessment of ISs, based upon the Risk Management
Framework (RMF) methodology in accordance with the Joint Special
Access Program (SAP) Implementation Guide (JSIG)
- Advise the Information System Owner (ISO), Information Data
Owner (IDO), Program Security
- Officer (PSO), and the Delegated and/or Authorizing Official
(DAO/AO) on any assessment and authorization issues
- Evaluate Authorization packages and make recommendation to the
AO and/or DAO for authorization
- Evaluate IS threats and vulnerabilities to determine whether
additional safeguards are required
- Advise the Government concerning the impact levels for
Confidentiality, Integrity, and Availability for the information on
a system
- Ensure security assessments are completed and results
documented and prepare the Security Assessment Report (SAR) for the
Authorization boundary
- Initiate a Plan of Action and Milestones (POA&M) with
identified weaknesses for each Authorization Boundaries assessed,
based on findings and recommendations from the SAR
- Evaluate security assessment documentation and provide written
recommendations for security authorization to the Government
- Discuss recommendation for authorization and submit the
security authorization package to the AO/DAO
- Assess proposed changes to Authorization boundaries operating
environment and mission needs to determine the continuation to
operate.
- Review and concur with all sanitization and clearing procedures
in accordance with Government guidance and/or policy
- Assist the Government compliance inspections
- Assist the Government with security incidents that relate to
cybersecurity and ensure that the proper and corrective measures
have been taken
- Ensure organization are addressing and conducting all phases of
the system development life cycle (SDLC)
- Evaluate Hardware and Software to determine security impact
that it might have on Authorization boundaries
- Evaluate the effectiveness and implementation of Continuous
Monitoring Plans
- Evaluate the differences and have a working knowledge of
Information Systems and Network
- Appliances operating at Protection Level 3 (PL3) and Protection
Level 4 (PL4)
- Differentiate the differences between the various types of
Cross-Domain Solutions (CDS)
- Assist with joint assessments of Cross-Domain Solutions with
other DoD agenciesExperience:
- 9+ years related experience
- 2+ years SAP experience required
- Minimum of nine (9) years' experience in SAP, SCI or Collateral
Information Systems (IS) Security and the implementation of
regulations identified in the description of duties
- Prior performance in the role of ISSO and ISSM or SCAEducation:
- Bachelor's degree in a related area or equivalent experience (4
years)Certifications:
- IAT or IAM Level III or IAAE Level I - within 6 months of hire
(CISSP, CASP+ CE, CCNP Security, CISA, etc.)Clearance Required to
Start:
- TS/SCI required
- Must be able to Attain - TS/SCI with CI PolygraphGDIT IS YOUR
PLACE:
- 401K with company match
- Comprehensive health and wellness packages
- Internal mobility team dedicated to helping you own your
career
- Professional growth opportunities including paid education and
certifications
- Cutting-edge technology you can learn from
- Rest and recharge with additional paid vacation and
holidays#GDITPriority #AirforceSAPOpportunities #CIPoly
#LevelIIIcertification #8570 #SCA3 #kmp #security #SCAsThe likely
salary range for this position is $161,158 - $201,250. This is not,
however, a guarantee of compensation or salary. Rather, salary will
be set based on experience, geographic location and possibly
contractual requirements and could fall outside of this
range.Scheduled Weekly Hours:40Travel Required:10-25%Telecommuting
Options:OnsiteWork Location:USA CA Los AngelesAdditional Work
Locations:Total Rewards at GDIT:Our benefits package for all
US-based employees includes a variety of medical plan options, some
with Health Savings Accounts, dental plan options, a vision plan,
and a 401(k) plan offering the ability to contribute both pre and
post-tax dollars up to the IRS annual limits and receive a company
match. To encourage work/life balance, GDIT offers employees full
flex work weeks where possible and a variety of paid time off
plans, including vacation, sick and personal time, holidays, paid
parental, military, bereavement and jury duty leave. To ensure our
employees are able to protect their income, other offerings such as
short and long-term disability benefits, life, accidental death and
dismemberment, personal accident, critical illness and business
travel and accident insurance are provided or available. We
regularly review our Total Rewards package to ensure our offerings
are competitive and reflect what our employees have told us they
value most.We are GDIT. A global technology and professional
services company that delivers consulting, technology and mission
services to every major agency across the U.S. government, defense
and intelligence community. Our 30,000 experts extract the power of
technology to create immediate value and deliver solutions at the
edge of innovation. We operate across 30 countries worldwide,
offering leading capabilities in digital modernization, AI/ML,
Cloud, Cyber and application development. Together with our
clients, we strive to create a safer, smarter world by harnessing
the power of deep expertise and advanced technology.We connect
people with the most impactful client missions, creating an
unparalleled work experience that allows them to see their impact
every day. We create opportunities for our people to lead and learn
simultaneously. From securing our nation's most sensitive systems,
to enabling digital transformation and cloud adoption, our people
are the ones who make change real.Equal Opportunity Employer /
Individuals with Disabilities / Protected Veterans
Keywords: General Dynamics Information Technology, Los Angeles , Security Control Assessor (SCA) III, Other , Los Angeles, California
Didn't find what you're looking for? Search again!
Loading more jobs...