Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Security Assessor image - Rise Careers
Job details

Cyber Security Assessor

Cyber Security AssessorDuration: Direct HireCompensation: Up to $160,000Required Skills & Experience• TS/SCI clearance needed to be considered.• Minimum 10 years hands-on cyber and information assurance experience out of the last 12 years.• Technician-level experience creating, managing, and maintaining RMF packages within security control databases (such as XACTA and eMASS).• Technician-level experience preparing RMF packages for discovery meetings, design reviews, and security assessments.• Reviewing/understanding/applying/implementing RMF security controls; system data flows; hardware/software baselines; POAMs; SSP documentation; security assessment results; CM plans; compliance testing results; package registration and decommissioning actions.• Candidates must fully comprehend the duties of a Cyber/Information Assurance Security Advisor and be DoD 8570.01-M (or current standard) IAM Level II certified.Nice to Have Skills & Experience• Employee should have a bachelor’s degree with at least 8 years of additional experience supporting Air Force and Special Operations Cyber and Information Assurance programs.• Additional years of general experience in the fields of Cyber and IA are highly desiredJob DescriptionEmployee provides cybersecurity administration, cyber assurance management/documentation, and Risk Management Framework (RMF) assistance to aid in the oversight of AFSOC-managed information systems that support Intelligence, Surveillance, and Reconnaissance (ISR) information/activities/operations IAW Intelligence Community (IC) Directive 503 and supporting RMF regulations/policies. Incumbent works autonomously managing and maintaining RMF documentation and security files (such as emission security documents, facility/network accreditation documentation, floor plans, emergency action plans, and standard operating procedures).Employee performs:• Security impact analysis• Software/Hardware product evaluations/assessments• Security assessments• Compliance testing• RMF package registration• RMF package decommissioning• Reviews and submits interconnection security agreements• Ports, protocols, and services registrations• Creates hardware/software baselines• Creates system/software/network data flow diagrams• Network scanning• Vulnerability management• Creates Plans Of Actions And Milestones (POAMs)• Creates System Security Plans (SSPs)• Creates Continuous Monitoring (CM) plansEmployee assists with trusted agent duties for public key infrastructure. Incumbent executes site surveys and security program assessments. Employee assists with the administration, management, facilitation, and remediation of information system/network security incidents and/or negligent disclosure of classified information incidents.
Insight Global Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Insight Global DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Insight Global
Insight Global CEO photo
Bert Bean
Approve of CEO

Average salary estimate

Estimate provided by employer
$103409 / ANNUAL (est.)
min
max
$103K
$103K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Security Assessor, Insight Global

As a Cyber Security Assessor at a leading IT company in Mary Esther, FL, you will dive into the dynamic world of cybersecurity, providing an essential role in safeguarding our information systems. We need someone with a wealth of experience—at least 10 years in cyber and information assurance—to help navigate and implement Risk Management Framework (RMF) processes. Your expertise will shine through as you manage RMF packages and security controls using databases like XACTA and eMASS. This isn't just a job; it's a chance to lead security assessments, documentation, and compliance testing while engaging with the cutting-edge facets of information security. With a TS/SCI clearance, you'll handle sensitive data and ensure that our systems comply with intelligence community policies. You will be autonomous in conducting security impact analyses, evaluating software and hardware products, and developing critical documentation like System Security Plans (SSPs) and Plans Of Action And Milestones (POAMs). Plus, your talent for creating detailed data flow diagrams and managing vulnerabilities will be crucial to our mission. If you’re looking to make a significant contribution to intelligence, surveillance, and reconnaissance (ISR) operations, this position is calling your name. Join us on this exciting journey and help us secure what matters most.

Frequently Asked Questions (FAQs) for Cyber Security Assessor Role at Insight Global
What are the main responsibilities of a Cyber Security Assessor at this company?

As a Cyber Security Assessor for our company in Mary Esther, FL, your primary responsibilities will include managing RMF documentation, conducting security assessments, and ensuring compliance with the latest regulations. You'll also be performing security impact analyses, preparing RMF packages, and facilitating interconnection security agreements. Your role is crucial in maintaining the integrity and security of our information systems.

Join Rise to see the full answer
What qualifications are required to apply for the Cyber Security Assessor position?

To be considered for the Cyber Security Assessor role, you need to have a minimum of 10 years of hands-on experience in cyber and information assurance. Additionally, a TS/SCI clearance is required, along with a current DoD 8570.01-M IAM Level II certification. Technical skills relevant for creating and managing RMF packages, as well as familiarity with tools like XACTA and eMASS, are essential for this position.

Join Rise to see the full answer
What kind of experience is beneficial for candidates applying for the Cyber Security Assessor role?

Candidates with a bachelor’s degree in a relevant field and at least eight additional years of experience supporting Air Force and Special Operations Cyber programs will find themselves at an advantage. Experience in managing cybersecurity incidents and a strong understanding of compliance frameworks will also enhance your application as a Cyber Security Assessor in Mary Esther, FL.

Join Rise to see the full answer
What tools and technologies should a Cyber Security Assessor be familiar with?

A successful Cyber Security Assessor should have hands-on experience with tools like XACTA and eMASS for RMF management. Familiarity with compliance testing tools, network scanning software, and vulnerability management systems will also be beneficial. Knowledge of cybersecurity best practices and the ability to create detailed security documentation are key components of this role.

Join Rise to see the full answer
How does the Cyber Security Assessor contribute to national security efforts?

As a Cyber Security Assessor, you play a critical role in ensuring that information systems used in intelligence, surveillance, and reconnaissance (ISR) operations are secure. By managing security assessments and RMF documentation, you help prevent data breaches, ensure compliance with regulations, and support the overall security posture of national defense efforts. Your expertise aids in the advancement of policies that protect sensitive information.

Join Rise to see the full answer
Common Interview Questions for Cyber Security Assessor
Can you describe your experience with Risk Management Framework (RMF) packages?

When asked about your experience with RMF packages, focus on specific projects where you've developed, managed, or maintained these packages. Discuss the tools you used, such as XACTA or eMASS, and any challenges you faced during the process. Show how you ensured compliance and security through thorough documentation and management practices.

Join Rise to see the full answer
What is your approach to conducting a security impact analysis?

In answering this question, outline your systematic approach to evaluating the potential impacts on security before implementing changes. Emphasize data gathering, reviewing existing security controls, and assessing vulnerabilities. Mention how you communicate your findings to stakeholders to make informed decisions.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity threats and compliance regulations?

Share your strategies for keeping abreast of the rapidly evolving cybersecurity landscape. Highlight any relevant publications, websites, or online courses you follow. Discuss your involvement in professional networks where current threats and regulations are frequently discussed, showcasing your commitment to continuous learning.

Join Rise to see the full answer
What steps do you take when assessing a new software or hardware product for security?

Describe your evaluation process, which might include reviewing the vendor’s security documentation, running vulnerability assessments, and testing in a controlled environment. Discuss how you work collaboratively with other teams to understand the product’s impact on the existing security architecture.

Join Rise to see the full answer
Can you provide an example of a challenging compliance issue you handled?

When sharing an example, be specific about the compliance issue you faced, your approach to solving it, and the results of your actions. Emphasize collaboration with team members and how you documented the entire process to prevent future issues.

Join Rise to see the full answer
How do you handle security incidents or breaches?

Explain the importance of having a clear incident response plan. Describe the steps you follow, from detection and analysis through containment and eradication. Emphasize communication, documentation, and post-incident reviews to strengthen future security measures.

Join Rise to see the full answer
What is your experience with continuous monitoring in cybersecurity?

Discuss your background with continuous monitoring processes, including tools you’ve used and how you integrate them into existing security practices. Explain how continuous monitoring helps in identifying vulnerabilities and maintaining compliance with security requirements.

Join Rise to see the full answer
How do you prioritize security risks?

In your response, highlight your method for assessing the severity and likelihood of potential security risks. Discuss frameworks you've used to prioritize tasks, aligning them with the organization's risk tolerance and resource availability to ensure optimal security measures.

Join Rise to see the full answer
Explain your understanding of Plans of Action and Milestones (POAMs).

Provide insights into what POAMs are and their significance in the RMF process. Discuss how you create and maintain POAMs to document security weaknesses, propose remediation actions, and outline timelines for resolving identified risks.

Join Rise to see the full answer
How do you collaborate with cross-functional teams on security initiatives?

Describe your approach to fostering teamwork among diverse groups, such as IT, compliance, and management. Discuss how you ensure clear communication, set shared goals, and facilitate collaborative decision-making to enhance the organization's security posture.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 6 days ago
Photo of the Rise User
Olo Remote NYC or Remote
Posted 9 hours ago
Inclusive & Diverse
Diversity of Opinions
Collaboration over Competition
Transparent & Candid
Maternity Leave
Mental Health Resources
Equity
Paid Time-Off
Medical Insurance
Dental Insurance
Summer Fridays
Photo of the Rise User
HackerOne Remote No location specified
Posted 9 days ago
Photo of the Rise User
AnaVation Hybrid Chantilly, VA
Posted 8 days ago
Photo of the Rise User
Posted 18 hours ago
Mission Driven
Social Impact Driven
Passion for Exploration
Reward & Recognition
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 8 days ago

Everyone matters. We take care of each other. Leadership is here to serve. High character and hard work are above all else. Always know where you stand.

556 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 5, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!