Security Control Assessor Representative (SCAR)
We're looking for a SCAR to support a DoD customer. You'd be the independent set of eyes on behalf of the Government SCA and Authorizing Official — the person who decides whether security controls are actually holding up or just look good on paper. It spans more than 40 Programs of Record across the enterprise, so there's plenty of variety in what crosses your desk. Most days you're assessing management, operational, privacy, and technical controls, writing up what you find, and pushing risk recommendations up to the AO. You'll also keep the authorization documentation in shape so the next person doesn't inherit a mess.
What you'll be doing:
- Recommending enterprise security controls and enhancements that give the mission real assurance
- Acting as the SME on RMF work, in eMASS and outside it
- Digging into supporting artifacts and getting risk analysis in front of the SCA
- Triaging authorization requests, POA&Ms, SSPs, categorizations, and risk acceptances against the Government's RMF Artifact Quality Rubric
- Catching non-compliant submissions, writing them up in the Package Return Report, and sending them to the SCA for signature
- Reviewing artifacts from program offices and judging whether the cybersecurity/IA controls hold up technically and functionally
- Running IV&V in eMASS on both NIPRNet and SIPRNet — confirming controls are in place, working, and producing the right outcomes, then telling submitters plainly where the gaps are
- Building the AO package: risk assessment, artifacts, approval docs, all of it
- Coordinating RMF packages for signature and hitting the suspense dates
- Managing eMASS accounts and role assignments
- Tracking checklists and packages from submission all the way to an approval or disapproval
What you need:
- Active DoD Secret clearance
- A current 8140-compliant cert — CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySa+, GSLC, or GSNA
- 5–7 years in related work
- Real hands-on time in eMASS
- Master's or higher in Computer Science, Cybersecurity, Data Science, Information Systems, IT, or Software Engineering
- Communication skills that hold up in front of senior DoD and civilian leadership
- A working feel for how the DoD mission operates
- Experience with Ports, Protocols, Services Management (PPSM) is nice to have
Security Control Assessor Representative (SCAR)
We're looking for a SCAR to support a DoD customer. You'd be the independent set of eyes on behalf of the Government SCA and Authorizing Official — the person who decides whether security controls are actually holding up or just look good on paper. It spans more than 40 Programs of Record across the enterprise, so there's plenty of variety in what crosses your desk. Most days you're assessing management, operational, privacy, and technical controls, writing up what you find, and pushing risk recommendations up to the AO. You'll also keep the authorization documentation in shape so the next person doesn't inherit a mess.
What you'll be doing:
- Recommending enterprise security controls and enhancements that give the mission real assurance
- Acting as the SME on RMF work, in eMASS and outside it
- Digging into supporting artifacts and getting risk analysis in front of the SCA
- Triaging authorization requests, POA&Ms, SSPs, categorizations, and risk acceptances against the Government's RMF Artifact Quality Rubric
- Catching non-compliant submissions, writing them up in the Package Return Report, and sending them to the SCA for signature
- Reviewing artifacts from program offices and judging whether the cybersecurity/IA controls hold up technically and functionally
- Running IV&V in eMASS on both NIPRNet and SIPRNet — confirming controls are in place, working, and producing the right outcomes, then telling submitters plainly where the gaps are
- Building the AO package: risk assessment, artifacts, approval docs, all of it
- Coordinating RMF packages for signature and hitting the suspense dates
- Managing eMASS accounts and role assignments
- Tracking checklists and packages from submission all the way to an approval or disapproval
What you need:
- Active DoD Secret clearance
- A current 8140-compliant cert — CCISO, CISA, CISM, CISSP, CISSP-ISSEP, CySa+, GSLC, or GSNA
- 5–7 years in related work
- Real hands-on time in eMASS
- Master's or higher in Computer Science, Cybersecurity, Data Science, Information Systems, IT, or Software Engineering
- Communication skills that hold up in front of senior DoD and civilian leadership
- A working feel for how the DoD mission operates
- Experience with Ports, Protocols, Services Management (PPSM) is nice to have
Government Careers
Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.
Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.
Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.
MORE JOBS
-
92R - Parachute Rigger - Find Success in US Army (70778)
- Sorrento, Louisiana
- U.S. Army
- Aug 05, 2026
-
Unit Supply Specialist - Start Your Career with the US Army
- Billingsley, Alabama
- U.S. Army Reserve
- Aug 05, 2026
-
Activity Security Representative (ASR) II ~ Washington, DC area
- Andrews Air Force Base, Maryland
- General Dynamics Information Technology
- Aug 05, 2026
-
HUMINT Targeting Officer
- Mc Lean, Virginia
- Orbis Operations
- Aug 05, 2026
-
13U - Field Artillery Recruit - Find Success in US Army (28610)
- Claremont, North Carolina
- U.S. Army
- Aug 05, 2026
-
Crossing Guard - Oak Park
- Chicago, Illinois
- ANDY FRAIN SERVICES
- Aug 05, 2026