Security Control Assessor
About Us:
Gen3 Technology Consulting is an SBA-certified Woman-Owned Small Business (WOSB) providing a diverse set of technology services and solutions to federal and commercial clients. Founded in 2017, Gen3 leverages over 25 years of information technology management and leadership experience to help our clients define, plan, manage, and achieve their strategic vision while protecting their critical IT assets. We attract and retain the highest caliber of talent by supporting an inclusive work environment, cultivating growth and leadership both professionally and personally, and encouraging work-life balance. We strive to make it our priority to be compassionate, family-friendly, respectful, and flexible.
About The Role:
Gen3 is seeking a Security Controls Assessor (SCA) to support UNICOR’s mission of maintaining the security, confidentiality, and integrity of systems operated by Federal Prison Industries. The SCA will be responsible for assessing, analyzing, and validating security controls across both on-premise and cloud-based environments, particularly within the Amazon Web Services (AWS) cloud. This role involves identifying vulnerabilities, recommending remediation actions, and ensuring compliance with federal cybersecurity frameworks.
Location: Remote
Key Responsibilities:
- Conduct comprehensive assessments of management, operational, and technical security controls.
- Evaluate security controls to identify vulnerabilities and recommend effective remediation actions.
- Perform assessments across on-premise and cloud-based environments, including AWS.
- Analyze system and network data to determine vulnerability levels and potential compromises.
- Prepare detailed assessment reports and documentation outlining findings, risks, and mitigation recommendations.
- Develop and document plans of action to address vulnerabilities and track remediation progress.
- Utilize CSAM or other RMF-approved systems of record to document and manage assessment activities.
- Collaborate with stakeholders and system owners to ensure continuous monitoring and compliance with security standards.
- Bachelor of Arts or Bachelor of Science degree in a related discipline and a minimum of 3
- Bachelor’s degree in information technology, cybersecurity, computer science, or a related technical field.
- Minimum of 2 years of experience in information security or security control assessments.
- AWS Certified Cloud Practitioner certification.
- At least one of the following certifications: CompTIA Security+, Certified Ethical Hacker (CEH), CompTIA Advanced Security Practitioner (CASP/CASP+), Certified Information Systems Auditor (CISA), or Certified Information Systems Security Professional (CISSP).
- Demonstrated experience evaluating security controls, identifying vulnerabilities, and developing mitigation strategies.
- Familiarity with the Risk Management Framework (RMF) and NIST SP 800-53 Rev 5 controls.
- Experience using CSAM or other RMF-approved systems of record.
What's In It for You (full-time Gen3 employees):
- Competitive compensation.
- Comprehensive health, vision, and dental benefits.
- Generous PTO and 11 days of paid Federal Holidays.
- $3k annual tuition reimbursement.
- 401(k) with a matching plan.
- Pet insurance.
- Life and AD&D insurance.
- Short-term and Long-term disability insurance.
Employment Eligibility: Eligible to work for any employer in the United States without requiring sponsorship. Most of our positions require a government security clearance, you must be a US Citizen or Green Card holder for consideration. Certain positions require at least three (3) of the past five (5) years of residence in the United States.
Other Requirements:
- A minimum of three (3) out of the past five (5) years of residency in the United States is mandatory.
- Candidates must possess either an active green card or citizenship.
- Prospective employees offered a position must have work authorization that does not necessitate employer-sponsored visa sponsorship, both presently and in the future.
- Those selected for this role may undergo a government security investigation and must meet the eligibility criteria for accessing classified information or be eligible for security clearances.
- Location: Gen3 is currently focusing its hiring efforts in these states: Alabama, Arizona, Colorado, DC, Florida, Georgia, Kentucky, Maryland, Missouri, North Carolina, New York, Ohio, Oklahoma, Oregon, Texas, Virginia, and Wisconsin.
Veteran and HubZone-friendly employer.
E-Verify Employer. EOE Statement: Gen3 is an equal opportunity employer. We adhere to all federal regulations and ensure that our hiring practices are based solely on merit. We do not discriminate against any applicant based on race, color, sex, sexual orientation, gender identity, religion, national origin, disability, or veteran status. All qualified applicants will receive consideration for employment.
Accommodation: Please contact the recruiting team at recruiting@gen3technology.com if you would like to request a reasonable accommodation during the application or interviewing process.