Lamesha Dickerson
@lameshadickerson
Senior Security Control Assessor delivering RMF/SCA assessments that secure Authorization to Operate and accelerate compliance.
What I'm looking for
I’m a results-driven Security Control Assessor and Senior Cybersecurity Risk & Compliance professional with 13+ years of federal cybersecurity experience across the U.S. Department of Defense, Department of Justice, Department of State, and the Federal Housing Finance Agency. I lead end-to-end security control assessments (SCAs), build A&A packages, and guide systems through the full Risk Management Framework (RMF) lifecycle to achieve Authorization to Operate (ATO).
Across my work, I’ve earned a 100% ATO compliance rate, reduced time-to-ATO by 30%, and cut POA&M backlogs by 45% through strategic remediation planning and cross-functional collaboration. I develop Security Assessment Reports (SARs) that translate complex technical findings into actionable, executive-level risk narratives—helping Authorizing Officials make confident risk decisions.
I bring deep expertise in NIST SP 800-53 (Rev. 4 & 5), FISMA, FIPS 199, eMASS, and DISA STIG implementation, pairing rigorous documentation with automated validation tooling like Nessus and STIG viewers. From vulnerability and patch management to log analysis, SSP/POA&M governance, and cloud security baselines (AWS/Azure/VMware), I focus on measurable outcomes: faster assessments, defensible compliance, and reduced security exposure.
Experience
Work history, roles, and key accomplishments
Security Control Assessor
Nationwide IT Services
Sep 2022 - Jan 2026 (3 years 4 months)
Led end-to-end security control assessments (SCAs) aligned to NIST SP 800-53 and RMF, achieving a 100% ATO compliance rate. Developed SARs and remediation plans that reduced time-to-ATO by 30% and cut POA&M backlogs by 45%.
MECM Engineer
EPlus Technology
Nov 2021 - Aug 2023 (1 year 9 months)
Engineered and maintained enterprise software packages, security updates, and OS images using Microsoft MECM/SCCM and Intune across a large federal environment. Built PowerShell automation for patch validation and compliance reporting, supporting timely remediation and audit readiness with measurable reductions in findings.
Risk & Compliance Analyst
Nationwide IT Services
Dec 2021 - Aug 2022 (8 months)
Implemented NIST-aligned security controls across the system lifecycle and applied DISA STIGs to harden systems and validate compliance for RMF assessments. Maintained security documentation (SSPs and POA&Ms) and led vulnerability mitigation actions, including rapid Log4j remediation that reduced organizational risk exposure by 90%.
Risk Analyst
Federal Housing Finance Agency (FHFA)
Jun 2012 - Nov 2021 (9 years 5 months)
Spearheaded enterprise vulnerability management, reducing organizational risk by 70% through proactive prioritization and mitigation. Directed patching with SCCM/WSUS to achieve 95%+ monthly compliance and reduced unpatched critical vulnerabilities by 80%, while enforcing DISA STIG compliance across 1,500+ servers and maintaining FISMA/NIST alignment with zero audit findings.
IT Compliance Specialist
Department of Justice
Feb 2019 - May 2021 (2 years 3 months)
Led RMF documentation initiatives to support federal ATO compliance across multiple projects, achieving a 100% compliance rate. Reviewed and evaluated A&A package components under NIST guidance and maintained SOX ITGC adherence, improving STIG compliance processes and supporting audit-ready remediation workflows.
Security Compliance Analyst
Department of State
Mar 2017 - Feb 2019 (1 year 11 months)
Applied DISA STIGs to resolve security vulnerabilities and developed security policies and procedures to ensure systems remained compliant. Supported SOX and ISO 27001 audits, reviewed FISMA A&A packages, and monitored secured networks, identifying 30+ network intrusions that threatened internal systems.
Education
Degrees, certifications, and relevant coursework
Lamesha hasn't added their education
Don't worry, there are 90k+ talented remote workers on Himalayas
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Lamesha ?
You can contact Lamesha and 90k+ other talented remote workers on Himalayas.
Message LameshaFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
