Summary
Job DescriptionInsight Global is seeking a Security Control Assessor (SCA) to support a federal customer in Denver, CO. This individual will be responsible for conducting independent assessments of management, operational, and technical security controls within information systems and networks to ensure compliance with Risk Management Framework (RMF) requirements and overall cybersecurity readiness.The ideal candidate will have extensive experience supporting Authorization to Operate (ATO) efforts, performing security assessments, developing accreditation documentation, and advising stakeholders on cybersecurity risk management. This position will work closely with cybersecurity, systems engineering, and program leadership teams to evaluate security posture, identify risks, and ensure compliance with federal security standards.ResponsibilitiesConduct independent assessments of security controls in accordance with NIST SP 800-37 and the Risk Management Framework (RMF).Review and validate accreditation and authorization packages supporting ATO efforts.Plan and execute security authorization reviews for new and existing systems and networks.Evaluate security documentation, assessment results, and risk determinations to ensure acceptable risk levels.Identify security gaps and provide recommendations to improve system security posture.Perform technical risk assessments and develop mitigation strategies.Support the development and maintenance of cybersecurity metrics, POA&Ms, and continuous monitoring activities.Review and validate implementation of security controls and document any deviations from approved configurations.Participate in risk governance activities and provide recommendations regarding cybersecurity risks and associated mitigations.Develop and maintain RMF documentation throughout the system lifecycle.Support vulnerability management activities and validate remediation plans.Assess cloud environments, external services, and supporting infrastructure for compliance with security requirements.Collaborate with technical teams to evaluate how new systems, interfaces, and technologies impact overall security posture.Provide recommendations to support accreditation decisions and authorization activities.We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com. To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: and RequirementsTS/SCI ClearanceBachelor's degreeIAM Level II or IAT Level II certification (Security+, CAP, CASP+, CISSP, or equivalent).Hands-on experience supporting all phases of the Risk Management Framework (RMF).Strong experience managing and supporting Authorization to Operate (ATO) processes.Experience developing, tracking, and maintaining POA&Ms.Experience performing technical risk assessments and accreditation support activities.Experience with RMF Continuous Monitoring (ConMon) programs.Experience using eMASS, XACTA, or similar RMF management tools.Experience utilizing DISA STIG Viewer and applying STIG requirements.Strong written and verbal communication skills. Experience supporting DoD or Intelligence Community programs.Knowledge of DoDIN architecture and DISA cybersecurity guidance.Familiarity with FedRAMP cloud security requirements.Experience assessing cloud service providers or hybrid-cloud environments.Experience supporting enterprise-level accreditation efforts.CISSP, CAP, GSLC, CASP+, or equivalent advanced cybersecurity certification.Experience briefing technical findings and risk recommendations to leadership.#J-18808-Ljbffr
Job Description
Job DescriptionInsight Global is seeking a Security Control Assessor (SCA) to support a federal customer in Denver, CO. This individual will be responsible for conducting independent assessments of management, operational, and technical security controls within information systems and networks to ensure compliance with Risk Management Framework (RMF) requirements and overall cybersecurity readiness.The ideal candidate will have extensive experience supporting Authorization to Operate (ATO) efforts, performing security assessments, developing accreditation documentation, and advising stakeholders on cybersecurity risk management. This position will work closely with cybersecurity, systems engineering, and program leadership teams to evaluate security posture, identify risks, and ensure compliance with federal security standards.ResponsibilitiesConduct independent assessments of security controls in accordance with NIST SP 800-37 and the Risk Management Framework (RMF).Review and validate accreditation and authorization packages supporting ATO efforts.Plan and execute security authorization reviews for new and existing systems and networks.Evaluate security documentation, assessment results, and risk determinations to ensure acceptable risk levels.Identify security gaps and provide recommendations to improve system security posture.Perform technical risk assessments and develop mitigation strategies.Support the development and maintenance of cybersecurity metrics, POA&Ms, and continuous monitoring activities.Review and validate implementation of security controls and document any deviations from approved configurations.Participate in risk governance activities and provide recommendations regarding cybersecurity risks and associated mitigations.Develop and maintain RMF documentation throughout the system lifecycle.Support vulnerability management activities and validate remediation plans.Assess cloud environments, external services, and supporting infrastructure for compliance with security requirements.Collaborate with technical teams to evaluate how new systems, interfaces, and technologies impact overall security posture.Provide recommendations to support accreditation decisions and authorization activities.We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com. To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: and RequirementsTS/SCI ClearanceBachelor's degreeIAM Level II or IAT Level II certification (Security+, CAP, CASP+, CISSP, or equivalent).Hands-on experience supporting all phases of the Risk Management Framework (RMF).Strong experience managing and supporting Authorization to Operate (ATO) processes.Experience developing, tracking, and maintaining POA&Ms.Experience performing technical risk assessments and accreditation support activities.Experience with RMF Continuous Monitoring (ConMon) programs.Experience using eMASS, XACTA, or similar RMF management tools.Experience utilizing DISA STIG Viewer and applying STIG requirements.Strong written and verbal communication skills. Experience supporting DoD or Intelligence Community programs.Knowledge of DoDIN architecture and DISA cybersecurity guidance.Familiarity with FedRAMP cloud security requirements.Experience assessing cloud service providers or hybrid-cloud environments.Experience supporting enterprise-level accreditation efforts.CISSP, CAP, GSLC, CASP+, or equivalent advanced cybersecurity certification.Experience briefing technical findings and risk recommendations to leadership.#J-18808-Ljbffr
Government Careers
Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.
Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.
Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.
MORE JOBS
-
Senior Project Support / Federal Travel Specialist - NASA Marshall
- Reston, Virginia
- ASRC Federal Holding Company
- Sep 03, 2026
-
CBP Officer – Up to $60K Incentive
- Braidwood, Illinois
- U.S. Customs and Border Protection
- Sep 03, 2026
-
CBP Officer – Up to $60K Incentive
- Salida, California
- U.S. Customs and Border Protection
- Sep 03, 2026
-
Senior All-Source Analyst: Space Infrastructure Threats
- Reston, Virginia
- careers-bluehawk
- Sep 03, 2026
-
Entry-Level Customs and Border Protection Officer
- Oskaloosa, Iowa
- U.S. Customs and Border Protection
- Sep 03, 2026
-
Entry-Level Customs and Border Protection Officer
- Durango, Colorado
- U.S. Customs and Border Protection
- Sep 03, 2026