Demo

Information Assurance Analyst

Cherokee Federal
Arlington, VA Full Time
POSTED ON 3/25/2025
AVAILABLE BEFORE 4/22/2025

Information Assurance Analyst

Assist in oversight and the security posture of the Bureau's OpenNet / ClassNet / Cloud environments, develop the overall security strategy and assist in development of the information system security policy for the Bureau. In this role, take on the responsibility for the inventory, categorization, selecting security controls, and monitoring security controls for the information systems in preparation of the Assessment and Authorization (A&A) process for new and existing systems. Your expertise in conducting security assessments, vulnerability testing, and incident response will be crucial in maintaining a secure IT infrastructure.

Compensation & Benefits :

  • Estimated Starting Salary Range for Information Assurance Analyst : Pay commensurate with experience.
  • Full time benefits include Medical, Dental, Vision, 401K and other possible benefits as provided. Benefits are subject to change with or without notice.

Information Assurance Analyst Responsibilities Include :

  • Assist in planning and preparation for security Assessment and Authorization (A&A) as part of the Department's Information Assurance policy and Federal Information Security Management Act (FISMA) implementation efforts.
  • Provide support for and where necessary to create security documentation for the required phases of the DOS A&A process in support of obtaining Authority to Operate (ATO) approvals of systems.
  • Perform Security Impact Analysis (SIA) review of change requests and provide reporting requirements to system owners.
  • Update expired security controls in ArchAngel to support security findings and reporting
  • Analyze and report on security findings identified during assessment.
  • Create Plan of Action & Milestones (POAMs) for identified security control findings
  • Evaluate security control implementations for all Systems boundaries on a yearly basis
  • Categorize the information system and the information processed, stored, and / or transmitted by that system based on the impact analysis.
  • Categorize the information system and document the results of the security categorization in the system security plan Systems Security Plan (SSP).
  • Identify the security controls that are provided by the organization as common controls for organizational information systems and document the controls in the control selection worksheet and database.
  • Develop a strategy for the continuous monitoring of security control effectiveness and any proposed or actual changes to the information system and its environment of operation and recommend security controls based on the security categorization of the information system.
  • Describe the information system (including the system boundary, system functions, and system data criticality / sensitivity) and document the description in the System Security Plan (SSP).
  • Register the information system in the Department's IT Asset Baseline.
  • Conduct a review of system security plan the SSP with the ISSO to ensure completeness, accuracy, and readiness for approval by the OBO Information System Owner.
  • Perform Annual Control Assessments, Contingency Plan tests, and SCF updates on an annual basis for all FISMA-reportable information systems.
  • Assist the ISSO in the creation of a bureau-wide Information Systems Security Policy that will be derived and aligned with existing department of state Foreign Affairs Manuals (FAM's) and Foreign Affairs Handbooks (FAH's) as well as be aligned with NIST Special Publications 800-53 rev4 Security and Privacy Controls for Federal Information Systems and Organizations.
  • Supports the efforts with Continuous Monitoring concepts and Risk Management Framework (RMF) methodologies to support FISMA, NIST RMF, and NIST SP 800-series publications.
  • Works with Security Team to development Plans of Action & Milestones (POA&Ms) resulting from assessment discrepancies or failures. Monitors POA&Ms and works with IT System POCs to resolve. Re-assesses controls upon POA&M resolution. Provides status reports as necessary.
  • Performs other job-related duties as assigned.
  • Information Assurance Analyst Experience, Education, Skills, Abilities requested :

  • Bachelor's degree in cybersecurity, computer science, informational technology, or related fields and 5 years of Cybersecurity experience.
  • Five (5) years of experience in managing the inventory, categorization, selecting and monitoring security controls for the information systems in preparation of the Assessment and Authorization process for new and existing systems.
  • Experience in implementing NIST guidance related to the Risk Management Framework and supporting Plan of Action and Milestone (POAMs) review.
  • Must have experience in conducting interviews with application and system developers to document system operations surrounding security controls.
  • Working knowledge of NIST Cybersecurity Framework and CIS Critical Security Controls.
  • Must have an Information Assurance-type certification (CISSP, CISM, or CompTIA Security ).
  • Must be a US citizen.
  • Must have proficiency and understanding of FEDRAMP and the FEDRAMP process.
  • Ability to conduct information system audits.
  • Ability to produce documentation.
  • Must possess and maintain a SECRET clearance.
  • Must pass pre-employment qualifications of Cherokee Federal
  • Company Information :

    Cherokee Nation System Solutions (CNSS) is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about CNSS , visit cherokee-federal.com.

    CherokeeFederal #LI

  • Information Assurance Analyst
  • Network Security
  • Risk Management Framework
  • Federal Information Security Management
  • Network Security
  • Vulnerability Management
  • Security Architecture
  • Legal Disclaimer : Cherokee Federal is an equal opportunity employer. Please visit cherokee-federal.com / careers for information regarding our Affirmative Action and Equal Opportunity Employer Statement, Accommodation request, and Presidential EO 14042 Notice.

    Please Note : This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! Although this is not an approved position, we are accepting applications for this future and anticipated need.

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Information Assurance Analyst?

    Sign up to receive alerts about other jobs on the Information Assurance Analyst career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $79,991 - $102,697
    Income Estimation: 
    $102,492 - $128,675
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Cherokee Federal

    Cherokee Federal
    Hired Organization Address Washington, DC Full Time
    Attaché Training Program Instructor This position requires an active TS/SCI with Counterintelligence Polygraph clearance...
    Cherokee Federal
    Hired Organization Address Washington, DC Full Time
    Support Services Specialist The Support Services Specialist oversees facility operations, space management, and logistic...
    Cherokee Federal
    Hired Organization Address Washington, DC Full Time
    Business Development Manager Federal Civilian As a Business Development Manager at Cherokee Federal, your role is essent...
    Cherokee Federal
    Hired Organization Address MS, MS Full Time
    Information Technology Network Support Specialist This position requires an active Public Trust clearance or the ability...

    Not the job you're looking for? Here are some other Information Assurance Analyst jobs in the Arlington, VA area that may be a better fit.

    Quality Assurance Analyst III

    ISHPI Information Technology, Arlington, VA

    Information Assurance Analyst – Mid

    Goldbelt Nighthawk, LLC, Arlington, VA

    AI Assistant is available now!

    Feel free to start your new journey!