Security Control Assessor

General Dynamics

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Bethesda, MD
Salary
$148,750–$201,250 / yr
Posted
3 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $159k
This role $175k
$123k most similar roles pay here $210k

This role pays more than 69% of similar roles. Most pay $131,800–$186,888 — the shaded band above. At the midpoint, this role pays about $175k versus about $159k for comparable roles.

Based on 240 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1234 open roles on FindRole.

Listed pay typically runs $120,000–$150,385 across 1062 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Security Control Assessor

Security Control Assessor - TS/SCI with Polygraph serves as a critical role within the Cyber and IT Risk Management team. The individual will perform security assessments, conduct hands-on testing, and analyze vulnerabilities to provide risk mitigation recommendations for complex systems. Key responsibilities include developing security evaluation test plans, drafting Standard Operating Procedures, and participating in Technical Exchange Meetings to document results. The role requires expertise in the Risk Management Framework (RMF), NIST SP 800-53, ICD 503, and the MITRE ATT&CK Framework. Candidates must possess experience with cloud environments including AWS, Google, IBM, Azure, and Oracle, alongside knowledge of PKI, TCP/IP, and DNS. The position focuses on ensuring the integrity and confidentiality of assessment processes while improving cyber threat protection for intelligence community systems through rigorous technical research and reporting.

What you'll do

  • Conduct hands-on security testing to identify vulnerabilities and assess system risks.
  • Develop and document security evaluation test plans, procedures, and Standard Operating Procedures (SOPs).
  • Analyze vulnerabilities and exploitations to determine risk levels based on identified threats.
  • Review program-level documentation including system architecture, design documents, and security plans.
  • Provide detailed reports to customers regarding test results, risks, and recommended countermeasures.
  • Research and develop Information Security policies and guidance for the organization.
  • Lead Technical Exchange Meetings (TEMs) and application review boards to document action items.
  • Recommend improvements to cyber threat protection strategies for the CISO or designated officials.

What we're looking for

  • Must be a United States citizen.
  • Must possess an active Top Secret SCI with Polygraph clearance.
  • Bachelor's degree in Computer Engineering, Computer Science, Electrical Engineering, Information Systems, Information Technology, Cybersecurity, or a related field.
  • 6+ years of relevant experience.
  • Three years of cybersecurity experience including at least one year conducting SCAs under ICD 503/CNSSI 1253 NIST RMF or similar frameworks.
  • One full year of SCA experience within the last three calendar years.
  • Three years of experience performing security assessments in a cloud computing environment (AWS, Google, IBM, Azure, or Oracle).
  • Security Clearance Level : TS/SCI with active polygraph.

More like this

Similar roles

Security Control Assessor

General Dynamics

Bethesda, MD 9 days ago $139,400$188,600
AWS Azure Cloud NIST SP 800-53 Risk Management Framework MITRE ATT&CK PKI TCP/IP DNS Cyber Defense Information Assurance ICD 503 CNSSI 1253
6+ yrs exp

Penetration Tester

General Dynamics

Bethesda, MD 16 days ago $172,144$232,900
Penetration Testing Vulnerability Assessment Risk Management NIST 800-53 Risk Management Framework TCP/IP DNS PKI Static Source Code Analysis identity, and access management Security Review Data Reporting
8+ yrs exp

Tester

General Dynamics

Herndon, VA 76 days ago $161,500$218,500
Software Testing Automated Testing Quality Control Quality Assurance SAFe
10+ yrs exp

Cyber Technical Analyst

General Dynamics

Herndon, VA 16 days ago $170,000$230,000
NIST 800-53a Risk Management Framework A&A Process Vulnerability Scanning Information Technology Security CompTIA Security+ cyber security Security Compliance Remediation Body of Evidence (BoE)
8+ yrs exp

IT Monitoring Specialist

General Dynamics

Fort Belvoir, VA 5 days ago $85,000$115,000
Dynatrace Nagios Zabbix SolarWinds SCOM ServiceNow Remedy ITIL Windows Server Active Directory Group Policy DNS DHCP Microsoft Exchange Linux CompTIA Security+ CompTIA Network+ CCNA
1+ yrs exp

IT Monitoring Specialist

General Dynamics

Fort Belvoir, VA 5 days ago $85,000$115,000
Dynatrace Nagios Zabbix SolarWinds SCOM ServiceNow Remedy ITIL Windows Server Active Directory Group Policy DNS DHCP Microsoft Exchange Linux CompTIA Security+ CompTIA Network+ CCNA
1+ yrs exp