Security Control Assessor

General Dynamics

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$139,400–$188,600 / yr
Posted
5 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $161k
This role $164k
$126k most similar roles pay here $198k

This role pays less than 51% of similar roles. Most pay $133,399–$188,477 — the shaded band above. At the midpoint, this role pays about $164k versus about $161k for comparable roles.

Based on 240 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1123 open roles on FindRole.

Listed pay typically runs $124,093–$150,385 across 984 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Security Control Assessor

Security Control Assessor - TS/SCI with Polygraph works within the Cyber and IT Risk Management team to evaluate and strengthen security systems. The role involves conducting vulnerability scans, performing technical research, and assessing the robustness of system designs across cloud environments including AWS, Google, IBM, Azure, and Oracle. Key responsibilities include writing final reports to defend findings on risks or mitigation strategies, drafting penetration testing Rules of Engagement, and developing Standard Operating Procedures. The position requires expertise in networking protocols like TCP/IP and DNS, identity management via PKI, and the MITRE ATT&CK Framework. Candidates must navigate complex regulatory landscapes including NIST SP 800-53, ICD 503, and NISPOM. This role addresses critical security threats to ensure information assurance for government and intelligence projects by validating controls within high-security infrastructure environments.

What you'll do

  • Conduct vulnerability scans and identify security flaws in cloud environments like AWS, Azure, and Google.
  • Perform Independent Verification & Validation (IV&V) of security controls.
  • Assess the robustness of security systems and designs against known attack strategies.
  • Write final reports to document findings, risk levels, mitigation strategies, and technical references.
  • Report identified vulnerabilities and provide research to improve security defense mechanisms.
  • Author penetration testing Rules of Engagement (RoE), Test Plans, and Standard Operating Procedures (SOP).
  • Evaluate system and application security threats based on NIST SP 800-53 and other ICD standards.

What we're looking for

  • Must be a United States citizen.
  • Must possess an active Top Secret SCI with Polygraph clearance.
  • Must have a Bachelor's degree in Computer Science, Engineering, Information Technology, or a related field.
  • Must have at least 6 years of relevant experience.
  • Must meet DoD 8570.01-Manual (M) IAM Level III requirements (CISM, CISSP, Associate GSLC, or CCISO).
  • Must have three years of cybersecurity experience including one year of SCAs under ICD 503/CNSSI 1253 or similar frameworks.
  • Must have at least one year of SCA experience within the last three calendar years.
  • Security Clearance Level : TS/SCI with active polygraph.

More like this

Similar roles

Penetration Tester

General Dynamics

Bethesda, MD 12 days ago $172,144$232,900
Penetration Testing Vulnerability Assessment Risk Management NIST 800-53 Risk Management Framework TCP/IP DNS PKI Static Source Code Analysis identity, and access management Security Review Data Reporting
8+ yrs exp

Information Systems Security Manager

General Dynamics

McLean, VA 12 days ago $161,500$218,500
AWS RMF NIST 800-53 Xacta ServiceNow Tenable SCAP STIGs ICD 503 CNSSI 1253 POA&M A&A ATO Configuration Management cyber security risk management
8+ yrs exp

Tester

General Dynamics

Herndon, VA 72 days ago $161,500$218,500
Software Testing Automated Testing Quality Control Quality Assurance SAFe
10+ yrs exp

Database Administrator

General Dynamics

Bethesda, MD 57 days ago $164,382$218,500
AWS MySQL SQL Python Linux XML Data Modeling Scrum Agile Cybersecurity Audit and Logging System Monitoring Rapid Prototyping
10+ yrs exp

Cyber Technical Analyst

General Dynamics

Herndon, VA 12 days ago $170,000$230,000
NIST 800-53a Risk Management Framework A&A Process Vulnerability Scanning Information Technology Security CompTIA Security+ cyber security Security Compliance Remediation Body of Evidence (BoE)
8+ yrs exp

Cyber Threat Intelligence Analyst

General Dynamics

Reston, VA +1 23 days ago $144,500$195,500
Cyber Threat Intelligence MITRE ATT&CK Framework OSINT SIEM Forensic Analysis Indicators of Compromise (IOC) TTPs Network Infrastructure File Hashing Certificates Risk Assessment Cybersecurity Information Technology
8+ yrs exp