Government Careers
  • Senior Security Control Assessor

  • Chugachmiut
  • Arlington, Virginia 22201 United States View Map

Strategic Analysis, Inc. is seeking an experienced System Compliance Auditor to support Risk Management Framework (RMF) activities, including assessment, authorization, and continuous monitoring of information systems. This role focuses on evaluating security controls, identifying risks, and supporting authorization decisions within DoD and/or IC environments. Responsibilities:

• Assess the effectiveness of security controls in accordance with RMF • Perform security reviews to identify gaps in system architecture and design • Conduct risk analysis and develop mitigation recommendations • Execute security authorization reviews and support ATO decisions • Validate security posture of systems, networks, and applications • Monitor and evaluate compliance across information systems • Develop Statements of Risk (SORs) and document security findings • Provide authorization recommendations to the Authorizing Official (AO) Qualifications & Requirements:

  • 7+ years' experience supporting compliance activities to include RMF
  • Previous experience in SCA, ISSM, ISSO, or ISSE roles
  • Strong working knowledge of Secure Systems & Cloud/AI/ML Environments and NIST RMF frameworks in advanced R&D portfolios
  • Experience with GRC/RMF tools such as XACTA, eMASS, or ServiceNow (SNOW)
  • Required Certifications: IAM I (CAP, CND, Cloud+, Security+ CE)
  • Ability to assess vulnerabilities, analyze risk, and document findings clearly
Preferred: • Experience supporting DoD, IC, or SAP environments • Knowledge of FedRAMP and cloud security requirements • Familiarity with STIGs, SRGs, and continuous monitoring practices Travel: Up to 50% travel required during the first year. Clearance • Active TS/SCI w/ CI Poly or willingness to take and pass a CI Poly

Strategic Analysis, Inc. is an Equal Opportunity employer and is committed to non-discrimination in employment. All qualified applicants will receive consideration for employment without regard to race, color, religions, sex (including pregnancy, sexual orientation, or gender identity), national origin, disability (physical or mental), age (40 or older), protected veteran status, genetic information (including family medical history) or any other characteristic protected by law. This policy includes but is not limited to the following employment actions: recruitment, hiring, firing, promotion, demotion, compensation, fringe benefits, training, mentoring and sponsorship programs.

Strategic Analysis, Inc. is seeking an experienced System Compliance Auditor to support Risk Management Framework (RMF) activities, including assessment, authorization, and continuous monitoring of information systems. This role focuses on evaluating security controls, identifying risks, and supporting authorization decisions within DoD and/or IC environments. Responsibilities:

• Assess the effectiveness of security controls in accordance with RMF • Perform security reviews to identify gaps in system architecture and design • Conduct risk analysis and develop mitigation recommendations • Execute security authorization reviews and support ATO decisions • Validate security posture of systems, networks, and applications • Monitor and evaluate compliance across information systems • Develop Statements of Risk (SORs) and document security findings • Provide authorization recommendations to the Authorizing Official (AO) Qualifications & Requirements:

  • 7+ years' experience supporting compliance activities to include RMF
  • Previous experience in SCA, ISSM, ISSO, or ISSE roles
  • Strong working knowledge of Secure Systems & Cloud/AI/ML Environments and NIST RMF frameworks in advanced R&D portfolios
  • Experience with GRC/RMF tools such as XACTA, eMASS, or ServiceNow (SNOW)
  • Required Certifications: IAM I (CAP, CND, Cloud+, Security+ CE)
  • Ability to assess vulnerabilities, analyze risk, and document findings clearly
Preferred: • Experience supporting DoD, IC, or SAP environments • Knowledge of FedRAMP and cloud security requirements • Familiarity with STIGs, SRGs, and continuous monitoring practices Travel: Up to 50% travel required during the first year. Clearance • Active TS/SCI w/ CI Poly or willingness to take and pass a CI Poly

Strategic Analysis, Inc. is an Equal Opportunity employer and is committed to non-discrimination in employment. All qualified applicants will receive consideration for employment without regard to race, color, religions, sex (including pregnancy, sexual orientation, or gender identity), national origin, disability (physical or mental), age (40 or older), protected veteran status, genetic information (including family medical history) or any other characteristic protected by law. This policy includes but is not limited to the following employment actions: recruitment, hiring, firing, promotion, demotion, compensation, fringe benefits, training, mentoring and sponsorship programs.
Government Careers

Government Careers

Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.

Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.

Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.

Show more

MORE JOBS