About this role
Job title: IT Security Control Assessor
About the Role Guidehouse is seeking an IT Security Control Assessor to conduct FISMA security control assessments and support RMF authorizations. The role focuses on testing, documenting, and coordinating security controls to help agencies meet NIST and policy requirements.
What You'll Do
- Conduct FISMA security control assessments in accordance with NIST SP 800-53 and NIST SP 800-53A
- Support system authorization efforts across the RMF lifecycle
- Perform control testing, interviews, and evidence reviews for management, operational, and technical controls
- Document assessment results, findings, and risk determinations in SARs and related ATO artifacts
- Identify control gaps, weaknesses, and POA&M items with clear, actionable remediation guidance
- Coordinate with system owners, ISSOs, engineers, and program stakeholders during assessments
- Support continuous monitoring activities, including ongoing control assessments and ad hoc reviews
- Ensure assessments align with agency-specific cybersecurity compliance and information security policies
What We're Looking For
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field
- Minimum of THREE (3) years of experience in cybersecurity
- MUST be able to OBTAIN and MAINTAIN a Federal or DoD "SECRET" security clearance; candidates must obtain approved adjudication of clearance prior to onboarding with Guidehouse. Candidates with an ACTIVE "SECRET" or higher-level clearance are preferred.