Part-time Cyber Information Assurance Analyst

The Pennsylvania State UniversityReston, VA
3dOnsite

About The Position

We are searching for a Part-time Cyber Information Assurance Analyst to join the Risk Management Department, in Reston, VA , in the Applied Research Laboratory (ARL) at Penn State. The CIAA evaluates system and network environments to implement effective cybersecurity programs and determines security controls and policies based on best practices, regulations, and contractual requirements. This role includes managing compliance assessments, mitigating risks to information systems, and ensuring confidentiality, integrity, and availability. CMS Division leverages M&S expertise and other resources to deliver prototypes, demonstrations, and accelerated transitions of emerging research and technologies vital to national security needs, in addition to performing research, development, testing, and evaluations facilitating innovation in practice and development of critical, in-demand capabilities. ARL is an authorized DoD SkillBridge partner and welcomes all transitioning military members to apply

Requirements

  • Minimally requires 4 years’ related experience and currently pursuing a Bachelor’s degree in Cybersecurity and Information Assurance.
  • Windows and Linux OS
  • CI/CD pipeline
  • Review of hardware and software vulnerabilities
  • Understanding of the Risk Management Framework (RMF)
  • Understand and enforce policies and procedures within classified space
  • Ability to multitask multiple programs
  • Security+, CAP, GSEC or equivalent
  • Active Secret or Top Secret

Nice To Haves

  • Development and maintenance of Security Assessment Plans, Risk Assessment Reports, and POAMs
  • Containerized environments
  • Gitlab and Ansible
  • Atlassian Suite
  • Vulnerability scanning tools (ACAS, OpenSCAP, Trivy, Grype, etc.)
  • Bachelors' degree in Information Technology, Cybersecurity or related field

Responsibilities

  • Conduct risk assessments of information systems and provide actionable recommendations across system, network, application, design, and implementation
  • Perform vulnerability assessments on systems and networks to identify deviations from security baselines, configurations, and organizational policies
  • Execute periodic audits of information systems to monitor user activity, ensure compliance, and identify potential risks
  • Develop, document, and maintain Plans of Action and Milestones (POA&Ms) to track and remediate identified vulnerabilities
  • Review and evaluate security policies, procedures, and system configurations; recommend improvements to strengthen security posture
  • Continuously test and evaluate security processes, identifying weaknesses and driving process improvement
  • Research emerging threats, tools, and industry best practices to ensure up-to-date cybersecurity strategies
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service