Senior Security Controls Assessor

ECS Federal LLC

Washington, DC

JOB DETAILS
SKILLS
Access Authorization, Analysis Skills, Best Practices, Change Requests/Orders, Communication Skills, Computer Security, Contingency Plans, Continuous Improvement, Customer Relations, Documentation, Emerging Technology, Enterprise Protection, FIPS (Federal Information Processing Standards) 199, Federal Government, Federal Laws and Regulations, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Interviewing Skills, Maintain Compliance, Policy Development, Privacy Controls, Problem Solving Skills, Publications, Regulations, Risk Management, Security Analysis, Technical Research, Test Plan/Schedule, Testing, Time Management, U.S. National Institute of Standards and Technology (NIST), Vulnerability Scanners
LOCATION
Washington, DC
POSTED
2 days ago

Everforth ECS is seeking a Senior Security Controls Assessor who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency. This is a full-time position that is available immediately for a qualified candidate.

As a Security Controls Assessor, you will support the assessment, authorization, and continuous monitoring of federal information systems in accordance with the NIST RMF, IRS Publication 1075, and applicable federal security and privacy requirements. Working closely with system owners, security personnel, and agency stakeholders, you will assess controls, identify compliance gaps, and deliver actionable recommendations that reduce risk across the enterprise.

Position Responsibilities:

  • Support the review, assessment, and maintenance of Security Assessment and Authorization (SA&A) artifacts, including:
  • IRS Publication 1075 artifacts
  • FIPS 199, PTA, PIA
  • NIST SP 800-60 Digital Identity documentation
  • System Security Plans (SSPs)
  • Security Assessment Plans (SAPs) and Security Assessment Reports (SARs)
  • Information System Contingency Plans and Contingency Test Plans
  • Plans of Action & Milestones (POA&Ms)
  • Analyze hardware/software inventories, network diagrams, data flow diagrams, system change requests, vulnerability scan results, and test reports to evaluate control effectiveness and identify gaps.
  • Develop and deliver enterprise-specific implementation guidance to help system owners achieve and maintain compliance with NIST SP 800-53, IRS Publication 1075, agency-specific control overlays.
  • Present assessment findings, control deficiencies, and remediation recommendations to both technical teams and non-technical stakeholders in a clear, actionable format.
  • Review, update, and maintain information security policies, standards, and procedures to ensure alignment with federal regulations and agency requirements.
  • Conduct stakeholder interviews to document procedures and validate the implementation of security and privacy controls.
  • Analyze federal legislation, OMB mandates, and NIST guidance to identify required policy updates and inform program improvements.
  • Research emerging technologies and threats to support the development of current, effective security and privacy policies, standards, and procedures.
  • Serve as a trusted liaison between client personnel and assessment teams, facilitating clear communication and timely issue resolution.
  • Assist in the development and continuous improvement of a comprehensive enterprise information security and privacy program grounded in the latest laws, regulations, and industry best practices.

About the Company

E

ECS Federal LLC

ECS was founded in 2001 by experienced IT professionals with a commitment to quality processes, people and performance. Led by our Chairman, Roy Kapani, and an experienced executive leadership team, ECS provides our customers with solutions and services that support their critical needs and further mission objectives. This commitment has paved the way for expansive growth, year over year.

ECS gained market share in 2011 in the Department of Defense and Federal spaces through both organic and acquisition growth. In May, ECS completed its first strategic acquisition with the purchase of OAK Management, Inc., a leading provider of marine environmental services, ship systems engineering, maritime consulting and platform acquisition management. The OAK acquisition kicked off ECS’ intention to add tactical acquisitions as a part of its long term strategy to supplement and expand upon organic growth and to build enterprise value. ECS closed out 2011 with the acquisition of Paradigm Technologies, Inc. The Paradigm transaction added approximately 200 employees to ECS’ existing 900+ employees. Paradigm also added new Defense clients for ECS, including the Missile Defense Agency, the Navy’s Program Executive Officer for Integrated Warfare Systems, the United States Marine Corps, and the U.S. Marshals Service.

In 2012, ECS completed the acquisition of iLuMinA Solutions, Inc. iLuMinA brings large-scale Enterprise Resource Planning (ERP) software implementation and infrastructure design and development to ECS’ expanding capabilities.

ECS will continue to invest in corporate infrastructure and quality processes as we grow and enhance our ability to offer professional excellence to both our customers and our employees.

COMPANY SIZE
50 to 99 employees
INDUSTRY
Staffing/Employment Agencies
FOUNDED
2000
WEBSITE
http://www.ecs-federal.com/