
Security Controls Assessor
Valiant Solutions · United States
- Hybrid
- Full-time
- $120,000 / year
- United States
Tailored resume — keyword-matched to this role.
Hiring manager — we find who's hiring.
Intro email — drafted to reach them directly.
Job highlights
- Lead security control assessments for government clients.
- Provide FISMA and FedRAMP subject matter expertise.
- Mentor junior analysts and guide assessment teams.
- Work 100% remotely with a strong company culture.
- Utilize GRC, scanning, and SIEM tools.
About the role
About the Role
Valiant Solutions is seeking a Security Controls Assessor to join our rapidly growing and innovative cybersecurity team! This role is 100% telework.
Key Responsibilities
- Lead hands-on technical security control assessments and provide FISMA and FedRAMP subject matter expertise.
- Guide assessment teams through Security Assessment and Authorization (SA&A), Annual Security Controls Assessment (ASCA), and Event-Driven assessments against NIST SP 800-53.
- Produce audit-defensible packages and mentor junior analysts.
- Assess the impact of new laws, regulations, policies, and guidance on client assessment requirements.
- Recommend automation approaches to improve assessment efficiency and accuracy.
- Support FedRAMP package reviews and responses to data calls and audits.
- Provide knowledge transfer and upskilling to federal staff.
Qualifications
- Five (5) or more years of progressively responsible experience in information security, security control assessment, or cyber risk management.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field, or an additional three (3) to five (5) years of relevant experience in lieu of a degree.
- Demonstrated hands-on experience assessing NIST SP 800-53 controls and producing A&A artifacts.
- Knowledge of FISMA, NIST SP 800-37, FedRAMP, ISCM, and CDM.
- Experience with cloud systems, cloud service providers, and FedRAMP requirements.
- Experience with GRC platforms, SharePoint, scanning tools, and SIEM.
- Familiarity with FIPS 199 security categorization and privacy control assessment.
- Strong written and verbal communication and stakeholder engagement skills.
- U.S. Citizenship required due to federal contract obligations.
- Ability to pass a federal background investigation.
Preferred Certifications
- CISSP, CISM, CISA, or CAP certification preferred.
Why Valiant Solutions?
Valiant Solutions is a security-focused IT solutions provider named one of the Best Places to Work in the Washington DC area for 12 consecutive years. We offer great benefits and career development opportunities, including:
- 99% Paid Medical, Dental, and Vision Coverage
- 100% Paid Short Term Disability and Life Insurance
- 100% Paid Certifications
- 401K Matching
- Paid Time Off
- Valiant University – Online Education and Training Portal
Key skills/competency
- Security Controls Assessor
- FISMA
- FedRAMP
- NIST SP 800-53
- Security Assessment and Authorization (SA&A)
- Cyber Risk Management
- Information Security
- NIST Risk Management Framework (RMF)
- Cloud Security
- GRC Platforms
Skills & topics
- Security Controls Assessor
- FISMA
- FedRAMP
- NIST SP 800-53
- SA&A
- Cyber Risk Management
- Information Security
- NIST RMF
- Cloud Security
- GRC
- Cybersecurity
- Remote
- Government Contractor
How to get hired
- Tailor your resume: Highlight experience with NIST SP 800-53, FISMA, FedRAMP, and A&A artifacts. Quantify achievements in security control assessment and cyber risk management.
- Emphasize remote work readiness: Showcase your ability to work independently and communicate effectively in a 100% telework environment. Mention experience with collaboration tools.
- Showcase technical expertise: Detail your hands-on experience with GRC platforms, scanning tools, SIEM (like Splunk), and cloud security assessments.
- Prepare for technical interviews: Be ready to discuss specific assessment methodologies, NIST controls, and your experience with A&A packages.
- Address citizenship and clearance: Ensure you meet the U.S. Citizenship requirement and are able to pass a federal background investigation.
Technical preparation
Master NIST SP 800-53 control assessments.,Practice producing A&A documentation.,Familiarize with GRC and SIEM tools.,Understand FedRAMP and cloud security.
Behavioral questions
Describe a complex security assessment challenge.,How do you mentor junior analysts effectively?,How do you handle conflicting stakeholder feedback?,How do you stay updated on security regulations?
Frequently asked questions
- What are the primary responsibilities of a Security Controls Assessor at Valiant Solutions?
- The Security Controls Assessor will lead hands-on technical security control assessments, provide FISMA and FedRAMP expertise, guide SA&A and ASCA processes against NIST SP 800-53, mentor junior analysts, and produce audit-defensible packages. You will also assess the impact of new regulations and recommend process improvements.
- Is this a remote position, and what are the requirements for remote work at Valiant Solutions?
- Yes, this position is 100% telework. Remote work requires a high level of trust, a distraction-free workspace, adequate internet, full attention during working hours, and alignment with core business hours. Employees must also disclose outside employment and obtain approval.
- What experience is required for the Security Controls Assessor role?
- A minimum of five years of experience in information security, security control assessment, or cyber risk management is required. A Bachelor's degree in a related field is preferred, or equivalent experience. Hands-on experience with NIST SP 800-53 controls and A&A artifacts is essential.
- Does Valiant Solutions offer career development and certifications for this role?
- Yes, Valiant Solutions is committed to career development and offers 100% paid certifications. They also provide access to Valiant University, an online education and training portal, to support employee growth.
- What security frameworks and standards are most important for this Security Controls Assessor position?
- Key frameworks and standards include FISMA, NIST SP 800-53, NIST SP 800-37 (Risk Management Framework), and FedRAMP. Familiarity with ISCM, CDM, and FIPS 199 is also important.
- What are the benefits of working at Valiant Solutions?
- Valiant Solutions is recognized as a Best Place to Work and offers comprehensive benefits, including 99% paid medical, dental, and vision coverage, 100% paid short-term disability and life insurance, 401K matching, paid time off, and extensive training opportunities.
- What kind of tools will a Security Controls Assessor use at Valiant Solutions?
- You will likely use GRC platforms (e.g., Qmulos, ServiceNow GRC), SharePoint, various scanning tools, and SIEM solutions such as Splunk. Experience with these tools is required.
- Are there any specific citizenship or background check requirements for this role?
- Yes, U.S. Citizenship is required due to federal contract obligations. Candidates must also be able to successfully pass a federal background investigation.