top of page

Information Assurance Analyst

Location: Charleston, SC

​

Description:

We are currently  looking for an Information Assurance (IA) Analyst with an understanding of FedRAMP to support a Department of Defense (DoD) research lab.

 

Roles and Responsibilities:

The successful applicant will have familiarity with FedRAMP and NIST Special Publication 800-53. Duties will include:

  • Conducting Security Control Assessments that include writing assessment plans, conducting assessment interviews, conducting security control testing, reviewing security policies and procedures, and writing assessment reports

  • Performing vulnerability scans utilizing tools such as SCAP Compliance Checker, STIG Viewer, and ACAS

  • Validating security configuration of networks and computing assets against NIST guidance utilizing STIGs and other applicable policies

  • Documenting security and configuration defects, and working with system integrators to provide a path to resolution

  • Generating reports to provide senior and executive-level leadership with a complete and accurate picture of the security posture of their assets

 

If selected, you will:

  • Conduct FedRAMP security assessments that include:

  • Boundary scoping and evaluation

  • Developing security test case procedures

  • Developing security interview questions

  • Developing security assessment plan

  • Examining security artifacts 

  • Performing security testing

  • Vulnerability scanning

  • Penetration testing

  • Examining system configuration settings to comply with STIGs and other applicable guidance/policies

  • Assist senior team members with completing their duties, and provide guidance and instruction to junior team members on proper use of tools

  • Participate in meetings and collaborations where technical expertise and insight is required

 

Required Skills & Experience:

THIS POSITION REQUIRES AN ACTIVE DEPARTMENT OF DEFENSE SECRET SECURITY CLEARANCE.

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. He or she must also be capable of planning, executing and reporting on tasks in support of the program and its successful achievement of milestones and quality product deliverables. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.

  • Bachelor’s Degree in Computer Science, Information Assurance, Information Security, or related field (or equivalent combination of education and experience) is required

  • DoD 8570 IAT Level II (GSEC or Security+ce or SSCP or CCNA-Security) required to start work. CISSP desirable. Certification(s) must be current and candidate must be in good standing with the certifying organization

  • Three (3) years minimum experience as an information assurance professional, with involvement in all facets of certification and accreditation including system design/review, STIG selection and application, vulnerability scanning, POA&M management, and creating/editing related documentation and reports

  • Strong familiarity with FedRAMP and able to learn and adjust to new or modified requirement quickly

  • Certified or possess formal course completion certificates in one or more of the following: CISCO CCENT, Routing and Switching, CCNP, CCNP Security, CCNA, CompTIA Linux+ or Server+, LPIC-1, LPIC-2, Microsoft Server 2008, Windows 7 Configuration (70-680 or 70-685), Exchange Server 2010, Server 2012, Oracle 11g Administrator, VMware Certified Professional, HBSS Administrator (provided by DISA)

  • Working knowledge of standard DoD analysis tools such as SCAP Compliance Checker and STIG Viewer, in addition to manual STIG checklists

  • Hands-on understanding of mandatory IA technologies such as HBSS and ACAS is desired

  • Familiarity with navigating and inputting/updating data in online DoD/USN repositories such as eMASS and DITPR-DON/DADMS is desired

  • Proficiency with MS Visio and network diagrams is strongly desired

  • Able to work independently with limited direction and be self-motivated

  • Able to collaborate with other contractor teammates and customers on a daily basis

  • Able to work closely with teammates and customers to ensure deliverables meet expectations and arrive in a timely manner

  • Attend and actively participate in team meetings

bottom of page