Full-Time

National Security Systems Security Controls Assessor

Posted on 1/2/2025

Leidos

Leidos

10,001+ employees

Provides technology solutions for defense and healthcare

Data & Analytics
Enterprise Software
Cybersecurity
Defense

Compensation Overview

$85.2k - $153.9kAnnually

Mid, Senior

Springfield, VA, USA

Must be local to D.C. or Virginia with ability to work on-site for classified work.

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
Splunk
Requirements
  • Bachelor's Degree in Information Technology, Cybersecurity, or a related technical field AND 4-8 years experience OR Masters of Science in Information Technology, Cybersecurity, or a related field AND 6+ years experience. Additional experience may be considered in lieu of a degree.
  • 4-8 years of experience with NIST RMF and CNSS policy frameworks, with the ability to apply them to secure National Security Systems.
  • Strong background in cybersecurity risk analysis and reporting, with experience in creating detailed BoE artifacts.
  • Proficiency in using cybersecurity tools for vulnerability scanning and continuous monitoring
  • Experience in conducting SCAs and cybersecurity assessments for NSS in accordance with NIST RMF and CNSS guidelines.
  • Local to D.C. or Virginia with ability to work on-site for classified work
  • Active Top-Secret clearance with SCI eligibility.
Responsibilities
  • Execute in-depth security control assessments (SCAs) for National Security Systems (NSS) in compliance with NIST RMF and CNSS policy, ensuring the highest level of system security.
  • Develop and maintain formal documentation, including NSS-specific SOPs and Concept of Operations (CONOPs), to streamline and enhance the authorization process.
  • Analyze cyber risk indicators stemming from system threats and vulnerabilities and provide detailed cybersecurity risk recommendations in support of NSS continuous monitoring activities.
  • Research, develop, and implement policies to improve the effectiveness and efficiency of the security authorization process while minimizing operational impacts on critical NSS systems.
  • Conduct vulnerability scans, create Body of Evidence (BoE) artifacts, and produce Security Assessment Reports (SARs) to document risk levels and recommended mitigations.
  • Provide in-depth analysis of cyber threat actor behavior and create detailed white papers to inform DHS NSS of potential risks and threat trends.
  • Actively participate in security meetings, including engineering review boards and cybersecurity supply chain risk management (C-SCRM) sessions, to inform and support NSS initiatives.
  • Develop automated assessment tools and dashboards to support continuous monitoring and ongoing authorization processes, leveraging tools like Splunk, Tenable, and Axonius.
Desired Qualifications
  • Knowledge of risk management and mitigation techniques tailored to high-security environments, such as those encountered in NSS.
  • Experience developing and maintaining cybersecurity SOPs and CONOPs, with a focus on streamlining the risk assessment and authorization process.
  • Proficiency in using vulnerability assessment tools such as Nessus, Splunk, and AppDetective, along with MGMT compliance tools like CSAM-S.
  • Strong analytical skills to assess cyber threats, identify trends, and create actionable risk mitigation strategies through continuous monitoring.
  • Adept at creating Body of Evidence (BoE) artifacts, security reports, and other documentation required for high-risk systems.
  • Demonstrated ability to lead cross-functional teams in high-security environments and collaborate with government leads and stakeholders.
  • Certifications such as CISSP, CEH, GPEN, or CNSS-related credentials.
  • In-depth knowledge of supply chain risk management and its impact on national security.
  • Experience with federal cybersecurity policies, including DHS 4300B.
  • Hands-on experience developing cybersecurity risk assessments and strategies in classified environments.

Leidos operates in the technology, science, and engineering sectors, focusing on enhancing safety, health, and efficiency. The company provides specialized solutions in defense, aviation, information technology, and biomedical research, catering to government agencies, private companies, and healthcare organizations. Leidos offers services such as cybersecurity, data analytics, systems integration, and software development, which are tailored to meet the unique needs of its clients. The company generates revenue through long-term contracts and service agreements, ensuring a steady income stream. Leidos is distinguished by its commitment to sustainability, corporate responsibility, and a diverse workplace, earning recognition as a top employer and for its innovative solutions.

Company Stage

IPO

Total Funding

$36.5M

Headquarters

Reston, Virginia

Founded

1969

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for AI-driven cybersecurity solutions benefits Leidos' offerings.
  • Growing interest in sustainable technology aligns with Leidos' sustainability commitment.
  • Rising government defense spending could boost Leidos' defense sector operations.

What critics are saying

  • Increased competition in AI and data science may challenge Leidos' market position.
  • Multiple new VP appointments may lead to strategic misalignment.
  • Investor pressure for short-term gains may impact long-term strategies.

What makes Leidos unique

  • Leidos excels in defense, aviation, IT, and biomedical research markets.
  • The company is recognized for its commitment to sustainability and corporate responsibility.
  • Leidos is a top employer for veterans and promotes workplace diversity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Medical, dental, & vision insurance

Health Savings account

Income protection

PTO

Paid parental leave

Jury duty pay

Bereavement leave

401(k) Retirement Plan

Employee Stock Purchase Plan

Family Benefits

INACTIVE