About this role
SAIC is seeking a highly motivated entry-level Cybersecurity Assessor to support security assessments and continuous monitoring activities for federal information systems. You will work under close supervision, assisting senior cybersecurity professionals with evaluating the implementation and effectiveness of security controls (e.g., NIST SP 800-53 Rev 5), reviewing technical documentation, and supporting basic automation or scripting tasks that improve assessment efficiency.
This role is ideal for recent graduates or early-career professionals with a foundational understanding of cybersecurity principles and relevant programming coursework who are interested in risk management, security controls, and secure systems.
Key Responsibilities
- Assist federal staff, project managers, and cybersecurity professionals in performing Continuous Monitoring and Security Assessments of information systems and applications.
- Support the review of policies, procedures, system documentation, artifacts, and other evidence to determine system compliance with applicable federal and organizational policies.
- Help identify and document security weaknesses, assess the significance of vulnerabilities, and clearly describe potential risk factors.
- Under the guidance of senior staff, communicate identified weaknesses and recommended remediation steps to federal staff and other stakeholders.
- Maintain accurate, well-organized assessment documentation that is clear, defensible, and traceable to stated objectives.
- Request, review, track, and validate large volumes of assessment evidence in a systematic and organized manner.
- Assist in balancing competing assessment activities and multiple concurrent deadlines while maintaining thoroughness and quality across risk management projects.
- Work effectively as part of multiple assessment teams while maintaining ownership and accountability for assigned tasks.
- Under close supervision, perform basic technical and scripting tasks to support assessments, such as: Simple scripts or data processing to support evidence analysis or reporting.
- Supporting automation of evidence collection, reporting, or tracking activities.
- Helping maintain internal tools, templates, or tracking systems used by the cybersecurity team.
Required Qualifications
- Associate’s degree in computer science, information systems, cybersecurity, or a related discipline with a minimum GPA of 3.5, including completion of relevant programming courses; or a higher degree (e.g., Bachelor’s) in a related field.
- Strong written and verbal communication skills.
- Familiarity with information system architecture, networking concepts, system documentation, or software development (coursework or projects acceptable).
- Ability to obtain a Public Trust clearance.
- Familiarity with Microsoft Office Suite (Word, Excel, PowerPoint, Outlook).
- Foundational knowledge of at least one security or risk management framework such as NIST SP 800-53, NIST SP 800-37, ISO 20001, or other RMF frameworks (coursework or self-study acceptable).
- Strong attention to detail with excellent organizational and documentation skills.
- Customer-focused mindset with the ability to collaborate across multiple teams in a fast-paced environment.
- Ability to work effectively with both technical and non-technical teams and to receive and apply feedback from more senior staff.
Preferred Qualifications
- Experience using GRC tools, cybersecurity assessment platforms, or information system tracking tools (through labs, internships, or academic projects).
- Exposure to system lifecycle implementation, including documenting and maintaining systems through RMF or similar lifecycles.
- Working knowledge of cybersecurity principles, security controls, vulnerability scanning methodologies, system architecture, and common security frameworks.
- Knowledge or experience supporting configuration management, change control processes, or software development (e.g., capstone or team projects).