PitchMeAI
Valiant Solutions

Security Controls Assessor

Valiant Solutions · United States

  • Hybrid
  • Full-time
  • $120,000 / year
  • United States
Tailored resumekeyword-matched to this role.
Hiring managerwe find who's hiring.
Intro emaildrafted to reach them directly.

Job highlights

  • Lead security control assessments for government clients.
  • Provide FISMA and FedRAMP subject matter expertise.
  • Mentor junior analysts and guide assessment teams.
  • Work 100% remotely with a strong company culture.
  • Utilize GRC, scanning, and SIEM tools.

About the role

About the Role

Valiant Solutions is seeking a Security Controls Assessor to join our rapidly growing and innovative cybersecurity team! This role is 100% telework.

Key Responsibilities

  • Lead hands-on technical security control assessments and provide FISMA and FedRAMP subject matter expertise.
  • Guide assessment teams through Security Assessment and Authorization (SA&A), Annual Security Controls Assessment (ASCA), and Event-Driven assessments against NIST SP 800-53.
  • Produce audit-defensible packages and mentor junior analysts.
  • Assess the impact of new laws, regulations, policies, and guidance on client assessment requirements.
  • Recommend automation approaches to improve assessment efficiency and accuracy.
  • Support FedRAMP package reviews and responses to data calls and audits.
  • Provide knowledge transfer and upskilling to federal staff.

Qualifications

  • Five (5) or more years of progressively responsible experience in information security, security control assessment, or cyber risk management.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field, or an additional three (3) to five (5) years of relevant experience in lieu of a degree.
  • Demonstrated hands-on experience assessing NIST SP 800-53 controls and producing A&A artifacts.
  • Knowledge of FISMA, NIST SP 800-37, FedRAMP, ISCM, and CDM.
  • Experience with cloud systems, cloud service providers, and FedRAMP requirements.
  • Experience with GRC platforms, SharePoint, scanning tools, and SIEM.
  • Familiarity with FIPS 199 security categorization and privacy control assessment.
  • Strong written and verbal communication and stakeholder engagement skills.
  • U.S. Citizenship required due to federal contract obligations.
  • Ability to pass a federal background investigation.

Preferred Certifications

  • CISSP, CISM, CISA, or CAP certification preferred.

Why Valiant Solutions?

Valiant Solutions is a security-focused IT solutions provider named one of the Best Places to Work in the Washington DC area for 12 consecutive years. We offer great benefits and career development opportunities, including:

  • 99% Paid Medical, Dental, and Vision Coverage
  • 100% Paid Short Term Disability and Life Insurance
  • 100% Paid Certifications
  • 401K Matching
  • Paid Time Off
  • Valiant University – Online Education and Training Portal

Key skills/competency

  • Security Controls Assessor
  • FISMA
  • FedRAMP
  • NIST SP 800-53
  • Security Assessment and Authorization (SA&A)
  • Cyber Risk Management
  • Information Security
  • NIST Risk Management Framework (RMF)
  • Cloud Security
  • GRC Platforms

Skills & topics

  • Security Controls Assessor
  • FISMA
  • FedRAMP
  • NIST SP 800-53
  • SA&A
  • Cyber Risk Management
  • Information Security
  • NIST RMF
  • Cloud Security
  • GRC
  • Cybersecurity
  • Remote
  • Government Contractor

How to get hired

  • Tailor your resume: Highlight experience with NIST SP 800-53, FISMA, FedRAMP, and A&A artifacts. Quantify achievements in security control assessment and cyber risk management.
  • Emphasize remote work readiness: Showcase your ability to work independently and communicate effectively in a 100% telework environment. Mention experience with collaboration tools.
  • Showcase technical expertise: Detail your hands-on experience with GRC platforms, scanning tools, SIEM (like Splunk), and cloud security assessments.
  • Prepare for technical interviews: Be ready to discuss specific assessment methodologies, NIST controls, and your experience with A&A packages.
  • Address citizenship and clearance: Ensure you meet the U.S. Citizenship requirement and are able to pass a federal background investigation.

Technical preparation

Master NIST SP 800-53 control assessments.,Practice producing A&A documentation.,Familiarize with GRC and SIEM tools.,Understand FedRAMP and cloud security.

Behavioral questions

Describe a complex security assessment challenge.,How do you mentor junior analysts effectively?,How do you handle conflicting stakeholder feedback?,How do you stay updated on security regulations?

Frequently asked questions

What are the primary responsibilities of a Security Controls Assessor at Valiant Solutions?
The Security Controls Assessor will lead hands-on technical security control assessments, provide FISMA and FedRAMP expertise, guide SA&A and ASCA processes against NIST SP 800-53, mentor junior analysts, and produce audit-defensible packages. You will also assess the impact of new regulations and recommend process improvements.
Is this a remote position, and what are the requirements for remote work at Valiant Solutions?
Yes, this position is 100% telework. Remote work requires a high level of trust, a distraction-free workspace, adequate internet, full attention during working hours, and alignment with core business hours. Employees must also disclose outside employment and obtain approval.
What experience is required for the Security Controls Assessor role?
A minimum of five years of experience in information security, security control assessment, or cyber risk management is required. A Bachelor's degree in a related field is preferred, or equivalent experience. Hands-on experience with NIST SP 800-53 controls and A&A artifacts is essential.
Does Valiant Solutions offer career development and certifications for this role?
Yes, Valiant Solutions is committed to career development and offers 100% paid certifications. They also provide access to Valiant University, an online education and training portal, to support employee growth.
What security frameworks and standards are most important for this Security Controls Assessor position?
Key frameworks and standards include FISMA, NIST SP 800-53, NIST SP 800-37 (Risk Management Framework), and FedRAMP. Familiarity with ISCM, CDM, and FIPS 199 is also important.
What are the benefits of working at Valiant Solutions?
Valiant Solutions is recognized as a Best Place to Work and offers comprehensive benefits, including 99% paid medical, dental, and vision coverage, 100% paid short-term disability and life insurance, 401K matching, paid time off, and extensive training opportunities.
What kind of tools will a Security Controls Assessor use at Valiant Solutions?
You will likely use GRC platforms (e.g., Qmulos, ServiceNow GRC), SharePoint, various scanning tools, and SIEM solutions such as Splunk. Experience with these tools is required.
Are there any specific citizenship or background check requirements for this role?
Yes, U.S. Citizenship is required due to federal contract obligations. Candidates must also be able to successfully pass a federal background investigation.