Mid-Level Security Controls Assessor - DoD Cloud & AI

decision point security, inc. • United State
Remote
Apply
AI Summary

Conduct security control assessments on DoD cloud environments and AI workloads. Collaborate with engineers to ensure secure design. Manage RMF artifacts and support continuous monitoring.

Key Highlights
Integrated into technical lifecycle
Bridging engineering and RMF compliance
Active DoD Secret clearance required
Key Responsibilities
Perform comprehensive security control assessments on complex DoD cloud environments and emerging AI/ML workloads
Actively participate in engineering working groups to provide technical compliance recommendations
Translate NIST SP 800-53, DoD Cloud Computing SRG, and CMMC requirements into actionable engineering tasks
Review system architectures, network diagrams, and data flows to identify vulnerabilities and engineer mitigation strategies
Develop and manage RMF artifacts utilizing tools like eMASS
Support continuous monitoring and guide the integration of automated compliance validation in cloud environments
Technical Skills Required
NIST SP 800-53 DoD Cloud Computing SRG CMMC RMF artifacts (SSPs, SARs, POA&Ms) eMASS AWS/Azure cloud environments
Benefits & Perks
Competitive compensation ($110,000 - $178,000)
Generous 401(k) contribution
Fully remote work environment
Nice to Have
Previous experience as a Security Control Assessor Representative (SCAR) or technical Information Systems Security Engineer (ISSE)
Familiarity with container orchestration (Kubernetes) and securing CI/CD pipelines
Understanding of security engineering principles applied to Artificial Intelligence (AI) threat modeling and data pipeline security

Job Description


Company Description:


Decision Point Security Inc. specializes in Independent Verification and Validation (IV&V) cyber testing and consulting services. Our approach centers on developing pragmatic solutions grounded in research principals and real-world operational experience. We are committed to questioning established assumptions and fostering critical thinking to provide decision-quality information required to proactively manage operational risks, enabling our clients to stay ahead of emerging security threats. We are expanding our team of skilled cybersecurity analysts and engineers to meet the growing demand.


Position Description:


We are looking for a driven, mid-level Security Controls Assessor who brings a strong technical engineering background to our Cyber Security team. Unlike traditional compliance roles, this position is deeply integrated into the technical lifecycle. You will participate directly in engineering working groups, providing actionable recommendations to systems and software engineers to ensure Department of Defense (DoD) cloud architectures and AI deployments are secure by design. If you are passionate about bridging the gap between hands-on engineering and Risk Management Framework (RMF) compliance, we want you on our team!


Responsibilities:

  • Perform comprehensive security control assessments (SCA) on complex DoD cloud environments and emerging AI/ML workloads.
  • Actively participate in engineering working groups, collaborating closely with DevSecOps, systems, and network engineers to provide technical compliance recommendations.
  • Translate NIST SP 800-53, DoD Cloud Computing SRG, and CMMC requirements into actionable engineering tasks.
  • Review system architectures, network diagrams, and data flows to identify vulnerabilities and engineer mitigation strategies.
  • Develop and manage RMF artifacts (SSPs, SARs, POA&Ms) utilizing tools like eMASS.
  • Support continuous monitoring and guide the integration of automated compliance validation in cloud environments (AWS/Azure).


Required Qualifications:

  • Clearance: Active DoD Secret (or higher) security clearance.
  • Experience: 3–5+ years in cybersecurity, systems engineering, or network architecture within the Defense Industrial Base (DIB).
  • Engineering Competency: Demonstrated technical background in systems engineering, cloud architecture (e.g., Azure GCC High, AWS GovCloud), or network design.
  • Certifications: DoDD 8570/8140 IAM or IAT Level II/III professional certification (e.g., CISSP, CASP+, or Security+).
  • Communication: Exceptional ability to articulate complex security risks and deliver practical recommendations to both technical engineers and non-technical leadership.


Preferred Qualifications:

  • Previous experience as a Security Control Assessor Representative (SCAR) or technical Information Systems Security Engineer (ISSE).
  • Familiarity with container orchestration (Kubernetes) and securing CI/CD pipelines.
  • Understanding of security engineering principles applied to Artificial Intelligence (AI) threat modeling and data pipeline security.


What we Offer:

  • Competitive compensation and comprehensive benefits package
  • Generous 401(k) contribution (matching not required)
  • Fully remote work environment with a home office stipend
  • Paid training and certification support


Salary Range: $110,000 - $178,000 per year.


The above salary range represents a general guideline; however, Decision Point Security considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.


Benefits:


  • Generous 401(k) contribution, matching not required
  • Company Paid Health Insurance
  • Company Paid Dental insurance
  • Company Paid Vision Insurance
  • Company Paid Life Insurance
  • Paid Training
  • Home Office Stipend
  • 11 Federal Holidays
  • Paid Time Off


Location:


Remote with occasional travel


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

cyber focus ai

United State

Associate Account Manager - B2B Sales (Remote)

Cyber Security
•
5h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Keeper Security, Inc.

United State

Product Security Architect

Cyber Security
•
5h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

The College Board

United State

Subscribe our newsletter

New Things Will Always Update Regularly