Guidehouse

Senior IT Security Control Assessor

Guidehouse$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree in cybersecurity or related field
  • 5+ years of experience in cybersecurity
  • Ability to obtain and maintain a 'SECRET' security clearance
  • Familiarity with FISMA and RMF security assessments
  • Strong knowledge of NIST SP 800-53 and related standards
  • Experience with cloud-based security assessments
  • Excellent documentation skills for audit reporting
  • Team leadership experience

Responsibilities

  • Lead FISMA security assessments per NIST guidelines
  • Support system authorization throughout the RMF lifecycle
  • Conduct control testing and reviews
  • Document evaluation results and risks in SARs
  • Identify and recommend remediation for control weaknesses
  • Coordinate with stakeholders during assessments
  • Support ongoing monitoring and ad hoc reviews
  • Review team deliverables, providing feedback and coaching

Benefits

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Life Insurance options
  • Flexible Spending Accounts for health and dependent care
  • Short-Term & Long-Term Disability insurance
  • Student Loan PayDown program
  • Tuition Reimbursement and Learning Opportunities
  • Skills Development & Certifications support
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend
Full Job Description

Job Family:

Cyber Consulting


Travel Required:

Up to 25%


Clearance Required:

Ability to Obtain Secret

What You Will Do:

  • Lead teams conducting FISMA security control assessments in accordance with NIST SP 800-53 and NIST SP 800-53A
  • Support system authorization efforts across the RMF lifecycle
  • Perform control testing, interviews, and evidence reviews for management, operational, and technical controls
  • Document assessment results, findings, and risk determinations in SARs and related ATO artifacts
  • Identify control gaps, weaknesses, and POA&M items with clear, actionable remediation guidance
  • Coordinate with system owners, ISSOs, engineers, and program stakeholders during assessments
  • Support continuous monitoring activities, including ongoing control assessments and ad hoc reviews
  • Ensure assessments align with agency-specific cybersecurity compliance and information security policies
  • Oversee team deliverable reviews, offering real-time feedback and coaching to improve quality and performance. 


What You Will Need:

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field
  • Minimum of FIVE (5) years of experience in cybersecurity
  • Must be able to OBTAIN and MAINTAIN a Federal or DoD "SECRET" security clearance; candidates must obtain approved adjudication of clearance prior to onboarding with Guidehouse. Candidates with an ACTIVE "SECRET" or higher-level clearance are preferred.
  • Demonstrated experience performing FISMA or RMF-based security control assessments
  • Strong working knowledge of FISMA, NIST SP 800-53, NIST SP 800-53A, NIST SP 800-37
  • Experience assessing cloud-based systems, including inherited controls 
  • Ability to clearly document technical and non-technical findings for audit-ready reporting
  • Understanding of federal cybersecurity compliance requirements and governance processes
  • Relevant certifications preferred (e.g., CISSP, CISA, CAP, GSLC)
  • Team leadership experience


What Would Be Nice To Have:

  • Master’s Degree in in computer science, Information Technology, Cybersecurity, or related field
  • Certified Information Systems Security Professional (CISSP)
  • Knowledge of cloud security (FedRAMP)
  • Experience with security tools (ACAS/Nessus, Splunk, etc.)
  • Project management experience


What We Offer:

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include:

  • Medical, Rx, Dental & Vision Insurance

  • Personal and Family Sick Time & Company Paid Holidays

  • Position may be eligible for a discretionary variable incentive bonus

  • Parental Leave and Adoption Assistance

  • 401(k) Retirement Plan

  • Basic Life & Supplemental Life

  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts

  • Short-Term & Long-Term Disability

  • Student Loan PayDown

  • Tuition Reimbursement, Personal Development & Learning Opportunities

  • Skills Development & Certifications

  • Employee Referral Program

  • Corporate Sponsored Events & Community Outreach

  • Emergency Back-Up Childcare Program

  • Mobility Stipend

About Guidehouse

Guidehouse is a management consulting firm headquartered in Washington, D.C. The firm provides consulting services to clients in the public and commercial sectors, with a focus on energy, financial services, healthcare, national security, and aerospace and defense. Guidehouse was founded in 2018 as a spin-off from PwC. The firm has over 7,000 employees and operates in more than 50 locations worldwide.
Learn more about Guidehouse
Size
8,000 employees
Industry
Founded
2018

Similar Jobs

More Jobs at Guidehouse

More Information Technology Jobs

Find similar Senior IT Security Control Assessor jobs: