Guidehouse

Security Assessor

Guidehouse$113K — $188K *
US-AnywhereRemote in United States
Education, Government & Non-Profit
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of three years of experience in security control assessments or audits.
  • Bachelor's degree required.
  • US citizenship required.
  • Hands-on experience with security assessment documentation (SSPs, SARs, POA&Ms or equivalents).
  • Working knowledge of NIST SP 800-53 security and privacy controls.
  • Understanding of risk-based assessment concepts.
  • Ability to analyze assessment evidence and document findings clearly.

Responsibilities

  • Perform security and privacy control assessments based on established plans.
  • Review security documentation and analyze technical evidence.
  • Validate control implementation through evidence inspection and documentation review.
  • Contribute to various assessment artifacts like SSP updates and SARs.
  • Document assessment results, highlighting control gaps and associated risks.
  • Maintain objectivity and independence during assessments.
  • Identify opportunities to enhance assessment efficiency through standardization and automation.

Benefits

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Discretionary variable incentive bonus eligibility
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Life Insurance options
  • Health Savings and Flexible Spending Accounts
  • Short-Term & Long-Term Disability coverage
  • Student Loan PayDown assistance
  • Tuition Reimbursement and Learning Opportunities
  • Skills Development & Certifications support
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend
Full Job Description

Job Family:

Technology Consulting


Travel Required:

None


Clearance Required:

None

What You Will Do:

The Security Assessor supports security and privacy control assessments for public‑sector systems by evaluating control effectiveness, validating evidence, and contributing to formal assessment documentation under the direction of a Senior Security Assessor.

This role is primarily focused onassessmentexecution and documentation; however, it also provides exposure to more technical aspects of system architecture and control implementation. Candidates shoulddemonstratecuriosity and interest in expanding their skillset towardsecurity engineering, automation, and emergingAIenabledapproaches to compliance and assessment activities.

This role focuses on assessment execution and documentation, not system engineering or operational security responsibilities.

Key job responsibilities include the following:

  • Perform security and privacy control assessments in accordance with established assessment plans
  • Review security documentation and technical evidence
  • Validate control implementation through:
    • Evidence inspection
    • Architecture and system documentation review
    • Interviews with system owners and technical staff
  • Contribute to assessment artifacts, including:
    • SSP updates
    • SARs
    • ISRAs
    • POA&Ms
  • Document assessment results and clearly articulate control gaps and risks
  • Maintain assessment independence and objectivity
  • Identifyopportunities to improve assessment efficiency throughstandardization, tooling, or automation of evidence collection and validation
  • Support the use ofdata-driven or AI-assisted techniquesto enhance analysis, traceability, and reporting over time


What You Will Need:

  • Minimum of THREE (3) years of experience supporting security control assessments, audits, or authorization activities
  • Bachelors Degree is required.
  • US Citizenship is required.
  • Hands-on experience contributing to formal security assessment documentation (SSPs, SARs, POA&Ms, or equivalents)
  • Working knowledge of NIST SP 800-53 security and privacy controls
  • Understanding of risk-based assessment concepts
  • Ability to analyze assessment evidence and clearly document findings


What Would Be Nice To Have:

  • Experience supporting government or other regulated environments
  • Exposure to CMS, healthcare, or publicsector security compliance frameworks
  • Familiarity with A&A, RMF, or Security Control Assessment processes
  • Relevant certifications (CISA, CISSP, CISM, Security+, or similar)
  • Prior background in or exposure tosecurity engineering, cloud security, or system implementation
  • Familiarity withmodern architectures (cloud platforms, IAM, logging/monitoring, APIs)and how controls are implemented in those environments
  • Exposure toautomation tools, scripting, or GRC platformssupporting assessment or compliance activities
  • Interest in applyingAI/automation to improve audit readiness, evidence analysis, or continuous monitoring processes

The annual salary range for this position is $113,000.00-$188,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs.


What We Offer:

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical, Rx, Dental & Vision Insurance

  • Personal and Family Sick Time & Company Paid Holidays

  • Position may be eligible for a discretionary variable incentive bonus

  • Parental Leave and Adoption Assistance

  • 401(k) Retirement Plan

  • Basic Life & Supplemental Life

  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts

  • Short-Term & Long-Term Disability

  • Student Loan PayDown

  • Tuition Reimbursement, Personal Development & Learning Opportunities

  • Skills Development & Certifications

  • Employee Referral Program

  • Corporate Sponsored Events & Community Outreach

  • Emergency Back-Up Childcare Program

  • Mobility Stipend

About Guidehouse

Guidehouse is a management consulting firm headquartered in Washington, D.C. The firm provides consulting services to clients in the public and commercial sectors, with a focus on energy, financial services, healthcare, national security, and aerospace and defense. Guidehouse was founded in 2018 as a spin-off from PwC. The firm has over 7,000 employees and operates in more than 50 locations worldwide.
Learn more about Guidehouse
Size
8,000 employees
Industry
Founded
2018

Similar Jobs

More Jobs at Guidehouse

More Education, Government & Non-Profit Jobs

Find similar Security Assessor jobs: