Security Control Assessor (SCA) Job in Virginia Beach, VA

Vacancy No. 240002PS Department Naval Supply Systems Command
Salary $88,520.00 to $113,629.00 Grade 5 to 5
Perm/Temp Permanent FT/PT Full-time
Open Date 11/5/2024 Close Date 2/4/2025
Job Link Apply Online Who may apply Public
Locations:
Virginia Beach, VA


Summary

Join the Navy Exchange Service Command (NEXCOM) as a Dynamic Security Control Assessor (SCA) with a passion for fortifying IT systems against evolving threats! Expert in evaluating and validating security controls, leveraging cutting-edge risk management frameworks to ensure top-notch cybersecurity.

Duties

Skilled at conducting in-depth assessments that uncover vulnerabilities and delivering innovative solutions to bolster security posture. Driven to protect critical information and support organizational resilience in an ever-changing digital landscape!

Requirements

Conditions of Employment

Key Requirements

  1. Candidate must meet all qualification requirements by the closing date of this announcement.
  2. A one-year probationary period will be required upon selection.
  3. Social Security Card must be presented at time of appointment.
  4. If you are selected for this position, the documentation that you present for purposes of completing the Department of Homeland Security (DHS) Form I-9 will be verified through the DHS E-verify system. Federal Law requires verifying eligibility of all new hires. The Navy Exchange Service Command is an E-Verify Participant.
  5. Incumbents of this position must be U.S. Citizens.
  6. Candidates/Incumbent must be eligible for and obtain a Secret Clearance.
Other Requirements

Must be US Citizen.

SECNAV M-5239.2, DoN, Information Assurance (IA) Workforce Manual requires incumbents of this position to possess and maintain current, two types of certifications as follows:
  • IA Certification: Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP+), GIAC Security Leadership Certification (GSLC).
  • Technical Certification: Operating System/Computing Environment (OS/CE) certificate of training as dictated by Supervisor and approved by Command Cyber IT/CSWF-PM.
Candidate is also required to sign a Privileged Access Agreement.

Candidates without the required certification may be placed into this job but must obtain the required certification within 6 months of appointment; failure to obtain this requirement will result in termination of employment.

This position in accordance with SECNAV M-5510.30 will require a favorable Single Scope Background Investigation (SSBI).

Qualifications

A total of 8 years of experience, consisting of the following combination:

Qualified candidates must be U.S. Citizens.

GENERAL EXPERIENCE: 3 years' experience in security, technical or investigative work which demonstrated the ability and aptitudes required to perform technical, managerial or analytical work involving management information systems.

OR

SUBSTITUTION OF EXPERIENCE FOR EDUCATION: One year of related academic study above the high school level may be substituted for 9 months of experience up to a maximum of a 4 year bachelor's degree in IT security or computer information systems for 3 years of general experience.

AND

SPECIALIZED EXPERIENCE: 5 years of demonstrated experience in at least two of the following:
  • Risk management validation;
  • IT security compliance and reporting;
  • Technical risk analysis; and
  • Authorization and accreditation.
And experience in the performance of:
  • System Security Assurance: ensuring that entire systems meet security requirements, function securely, and undergo comprehensive testing for overall security assurance.
  • Security Assessments: conducting security assessments and developing Security Assessment Plans (SAPs).
  • Technical Understanding: interpreting network diagrams, vulnerability scans, and compliance scans.
  • Security Documentation: creating and maintaining various security documents, including Security Assessment Plans.
  • Risk Management Framework: conducting security control assessments following a Risk Management Framework approach, along with conducting risk assessments and developing security assessment reports.
And in-depth knowledge of:
  • NIST 800-53, risk mitigation strategies for computer operating systems, networks, or cloud services, and security controls and compliance frameworks.
This position is designated in accordance with SECNAV M-5510.30 and will require a favorable Single Scope Background Investigation (SSBI). Candidates must be eligible for and obtain a Top Secret Clearance, within 6 months of appointment. Failure to obtain will result in termination.

Education

4-year bachelor's degree in a related field preferred.

Additional information

How You Will Be Evaluated

You will be evaluated for this job based on how well you meet the qualifications above.

Your qualifications will also be evaluated on the Minimum Qualification Requirements as described in your profile and resume. Credit will be given for appropriate paid and unpaid experience or volunteer work.

Required Documents

To apply for this position, you must provide a complete Application package which includes:
a) Your Resume.
b) Completion of Automated Application.
c) Any documents you wish to be reviewed.

If you are relying on your education to meet qualification requirements:

Education must be accredited by an accrediting institution recognized by the U.S. Department of Education in order for it to be credited towards qualifications. Therefore, provide only the attendance and/or degrees from schools accredited by accrediting institutions recognized by the U.S. Department of Education.

Failure to provide all of the required information as stated in this vacancy announcement may result in an ineligible rating or may affect the overall rating.

How to Apply

Applicants must apply online via the Navy Exchange website, https://www.mynavyexchange.com/nex/work-for-us, and click "Work for Us."

To apply, please access our website by clicking on the link below and search for job number 240002PS

https://nexcom.taleo.net/careersection/.nexcom_ext_prof_cs/jobdetail.ftl?job=240002PS&tz=GMT-04%3A00&tzname=America%2FNew_York.

Agency contact information

Human Resources
Address
Navy Exchange Service Command - NEXCOM
3280 Virginia Beach Boulevard
Virginia Beach, VA 23452
US
Learn more about this agency

Next steps

  • After we receive your complete application package, your qualifications will be reviewed.
  • You may follow the status of your application through the automated hiring system.
  • Only those candidates chosen for an interview will be contacted.


Note: We cannot accept applications on behalf of Federal Agencies. Application instructions are listed within the Job Description.