We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

IA Security Specialist

BuddoBot Inc.
105000.00 To 120000.00 (USD) Annually
United States, Virginia, Quantico
3019 Embry Loop (Show on map)
May 06, 2025

JOB DESCRIPTION

Position: Information Assurance Security Specialist

Position Summary:

Our company is seeking a candidate who can provide information systems security support for enterprise network assets. A strong understanding of DoD STIG/IAVA and compliance processes are necessary to be successful in this position. Assured Compliance Assessment Solution (ACAS) is the primary tool used to facilitate a compliant and secure network.

Clearance Eligibility: Active DoD - Secret

Salary: The salary offered will depend on education, certifications, length and relevance of work history, and professional experience.

DUTIES AND RESPONSIBILITIES:

  • Conduct vulnerability scans on a regularly scheduled basis, and ad hoc, as directed.

  • Provide a regularly updated list of systems scanned and individual scan results.

  • Coordinate scans with respective system owners.

  • Provide scan results to system engineers for mitigation efforts.

  • As required, work directly with system engineers to identify changes.

  • Maintaining configuration items and executing functions on vulnerability management platform, to include ACAS, Nessus, STIG Validation Scans and Manual Checks.

  • Creating essential documentation (procedures, scanning reports, remediation reports, etc.), providing analysis and metrics on vulnerabilities, and driving remediation of vulnerabilities throughout the organization.

  • Serve as a subject matter expert for vulnerability scanning and STIG Compliance procedures, ACAS 5.4 or higher execution/operation.

  • Assist with STIG viewer answers.

  • Assist with the development of Risk Management Framework (RMF) plans.

  • Assist with Security Content Automation Protocol (SCAP) scans to validate compliance.

  • Be able to assist with DODI 8500.2 IA Controls and reciprocity.

  • Attend meetings and provide recommendations concerning Risk Management and mitigation efforts for organizational assets.

  • Ability to develop and maintain metrics and reports on vulnerability findings and remediation compliance.

  • Facilitate proactive remediation of new vulnerabilities by collecting information from threat and vulnerability feeds, analyzing the impact/applicability to our environment, and communicating applicable vulnerabilities and recommended remediation actions to the impacted teams.

  • Provide technical support to system and technology owners to propose mitigation and remediation solutions.


COMPETENCIES:

  • Good communication and interpersonal skills

  • Ability to follow policies and procedures

  • Ability to communicate information and ideas so others will understand, as well as the ability to respond clearly to questions

  • Aptitude to address negative situations and positively resolve them.

Education and Certification Requirements:

DoD 8570 IAT II Level Certification Required (CCNA-Security, CySA, GICSP, GSEC, Security+CE, SSCP). You can start with a lower-level 8570 certification, but you must attain it within 180 days.

Background and Experience:

3+ years of Information Security experience.

Required Technical Skills:

  • High-level familiarity with Vulnerability Management tools such as ACAS and SCAP

  • A Cyber Security Team player contributing to policy development, RMF package accreditation requirements

  • A strong systems security mindset

PHYSICAL DEMANDS AND WORK ENVIRONMENT:

  • General office environment. Work is generally sedentary but may require movement about the office for up to 10% of the time. The working environment is generally favorable. Lighting and temperature are adequate, and there are no hazardous or unpleasant conditions caused by noise, dust, etc. Work is generally performed within an office environment, with standard office equipment available.

  • Contractor site with 0-10% travel possible.

  • Possible off-hours work to support releases and outages.

  • Occasional movement of small articles up to 10 lbs.

  • Must be able to remain in a stationary position 50% of the time.

  • Continually operate a computer and other office productivity machinery.

  • Occasionally required to move oneself in different positions to accomplish tasks in various environments, including tight and confined spaces.

  • Continually required to communicate information and ideas so others will understand.

  • Continually utilize visual acuity to operate equipment, read technical information, and/or use a keyboard.

The above is intended to describe the general content of and requirements for the performance of this job. It should not be construed as an exhaustive statement of duties, responsibilities, or physical requirements. Nothing in this job description restricts management's right to assign or reassign duties and responsibilities to this job at any time. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.

Equal Employment Opportunity Veterans/Disabled

Applied = 0

(web-94d49cc66-c7mnv)