Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
NCC Group

Managing Security Consultant – Assessor

NCC Group

. Serve as Lead Assessor for FedRAMP authorization and continuous monitoring assessments .

Posted 9/22/2026full-timeUnited StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in FedRAMP authorization processes, NIST security controls, and cybersecurity compliance, with a strong focus on risk management and quality assurance in highly regulated environments. Capable of leading multidisciplinary teams and advising clients on security governance and remediation strategies.

Highest-signal resume keywords
FedRAMP AssessmentsNIST SP 800-53 Security ControlsCISSP CertificationCybersecurity ComplianceRisk Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information SecurityCybersecurity ConsultingAuditingRisk AssessmentSecurity Control ImplementationAssessment MethodologiesQuality ReviewCloud SecuritySaaS SecurityPaaS Security
Soft Skills
CommunicationLeadershipMentoringClient EngagementTeam Collaboration
Tools & Technologies
Baltimore Cyber RangeGovRAMPDFARS ComplianceISO/IEC 17020 StandardsCloud Ecosystem Security
Certifications & Qualifications
CISSP CertificationBaltimore Cyber Range Technical Proficiency Certification
Industry Keywords
FedRAMPNIST RMF3PAOFederal Cybersecurity ProgramsGovernment Acquisition Compliance

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Serve as Lead Assessor for FedRAMP authorization and continuous monitoring assessments
  • Lead teams evaluating cloud service providers against FedRAMP and NIST requirements
  • Independently evaluate security controls, cloud architectures, operational processes, and risk management programs
  • Review testing methodologies, assessment evidence, and assessment reports for accuracy and quality
  • Ensure compliance with FedRAMP, 3PAO, and organizational quality requirements
  • Identify deficiencies, risks, and improvement opportunities and communicate findings to clients and stakeholders
  • Support quality assurance activities and peer reviews
  • Provide FedRAMP Rev5, FedRAMP20x, CMMC/DFARS, secure cloud adoption and governance, and NIST RMF advisory and readiness services
  • Help organizations develop compliance roadmaps and remediation strategies
  • Advise clients on cybersecurity governance, risk management, and control implementation
  • Support presales activities, customer briefings, project scoping, and proposal development
  • Develop statements of work, project plans, assumptions, and costs
  • Participate in client workshops and executive-level discussions
  • Act as a trusted advisor throughout engagement lifecycles
  • Contribute thought leadership to NCC Group’s Government Services practice
  • Mentor and coach junior assessors and consultants
  • Support workforce development and assessment methodology improvements
  • Assist practice leadership with service delivery planning and operational initiatives
  • Promote assessment consistency, quality, and professional excellence

Requirements

What you’ll need
  • Demonstrated expertise in information security, cybersecurity consulting, auditing, compliance, risk management, or related disciplines, including management of IT organizations
  • Experience with FedRAMP assessments and/or advisory services
  • Extensive auditing and/or assessment experience
  • Experience leading multidisciplinary security assessment teams
  • Experience delivering assurance and advisory consulting engagements
  • Experience operating in highly regulated environments requiring exceptional attention to detail and documentation quality
  • U.S. Citizen authorized to work in the United States
  • Ability to successfully complete required background investigations
  • Strong understanding of U.S. Government cybersecurity programs and compliance requirements
  • Experience supporting Federal agencies, defense contractors, cloud service providers, or other government-regulated organizations
  • Familiarity with government acquisition and cybersecurity compliance environments
  • Understanding of software supply chain and cloud ecosystem security considerations
  • Experience assessing and securing SaaS, PaaS, IaaS, cloud-native, and hybrid cloud environments
  • Strong understanding of security controls, risk assessment, and remediation within enterprise environments
  • Significant expertise in FedRAMP authorization processes and assessment methodologies
  • Significant expertise in NIST SP 800-53 security controls and control assessment practices
  • Significant expertise in NIST 800-171 and NIST 800-171A
  • Significant expertise in Federal cybersecurity compliance programs
  • Significant expertise in security risk management and risk-based decision making
  • Significant expertise in security assessment report development and quality review
  • Significant expertise in executive briefing and stakeholder communications
  • Required CISSP certification
  • Required Baltimore Cyber Range Technical Proficiency Certification
  • Desirable: experience advising on CMMC requirements and implementation
  • Desirable: experience with DFARS cybersecurity requirements
  • Desirable: understanding of Federal Executive Orders impacting cybersecurity and software supply chain security
  • Desirable: experience supporting GovRAMP assessments
  • Desirable: familiarity with ISO/IEC 17020 requirements and accreditation standards
  • Desirable: experience supporting accredited conformity assessment organizations or testing laboratories

Benefits

Comp & perks
  • Flexible working options
  • 25 days of holiday plus bank holidays
  • Option to buy up to 5 additional days of annual leave
  • Medicash
  • Critical Illness Scheme
  • Pension
  • Life Assurance
  • Share Save Scheme
  • Community and volunteering opportunities
  • Green Car Scheme
  • Cycle-to-work scheme
  • Special time off for marriage/civil partnership, becoming a grandparent, and welcoming home a new pet
  • Generous maternity and paternity leave
  • Time off and support for fertility treatments