Senior Information Assurance Specialist

ValidaTek, Inc.
Washington, DC, United States
30 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Business Analytics Applications Cyber Security Disaster Recovery Cryptographic Protocols Forensics Tools (Digital Forensics Software) Intrusion Detection and Prevention Intrusion Detection Systems Log Analysis Reverse Engineering Security Information and Event Management Software Systems Software Vulnerability Management
+5 more
Malware Firewalls (Computer Science) Information Technology Cybercrime Vulnerability Analysis

Job description

The Senior Information Assurance Specialist plays a pivotal role in safeguarding the cybersecurity posture of a DHS-affiliated program. This position is responsible for designing, developing, and implementing advanced cybersecurity methodologies, tools, and policy frameworks to ensure the confidentiality, integrity, and availability of critical systems and data. Core responsibilities include intrusion detection and prevention, secure software/system design, reverse engineering, vulnerability assessments, and data protection strategies.

The specialist ensures that all cybersecurity architectures, risk management practices, standards, and operational controls align with enterprise IT strategies and DHS cybersecurity requirements. This role also involves conducting risk assessments, compliance audits, and forensic investigations in response to cyber incidents, while shaping the evolution of the program’s security ecosystem.

  • Design and implement cybersecurity controls, architectures, and risk mitigation strategies that align with DHS policies and frameworks (e.g., NIST 800-53, RMF, FISMA).
  • Develop tools and techniques for threat detection, incident response, and vulnerability remediation, including malware analysis and reverse engineering.
  • Monitor networks and systems for security breaches, analyze logs and alerts, and investigate anomalies using modern forensic and analytical tools.
  • Lead development and testing of disaster recovery and continuity of operations (COOP) plans to ensure mission resilience.
  • Recommend and deploy secure hardware and software solutions; design and manage firewalls, encryption protocols, and access control measures.
  • Contribute to enterprise-wide security awareness, training, and user education initiatives to promote a culture of cyber vigilance.
  • Stay abreast of emerging technologies, threat vectors, and security trends; integrate findings into the security strategy.
  • Provide expert guidance to program leadership on risk posture, mitigation priorities, and investment strategies in cybersecurity capabilities.

  • Knowledge: Contributes to and shapes advanced cybersecurity concepts, frameworks, and standards. Applies deep subject matter expertise to evolving challenges.
  • Problem Solving: Develops innovative solutions to complex, high-impact cyber threats and architectural challenges.
  • Discretion/Latitude: Operates with broad autonomy; defines goals, priorities, and methodologies with minimal oversight.
  • Impact: Decisions and recommendations directly influence the security, continuity, and regulatory compliance of mission-critical DHS operations.
  • Liaison/Leadership: Serves as a trusted technical advisor to program and agency leadership. May lead cybersecurity projects, task orders, or cross-functional teams.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field. Experience can be substituted in lieu of bachelor’s degree.
  • Minimum of 8 years of progressively responsible experience in cybersecurity or information assurance.
  • Extensive knowledge of cybersecurity frameworks and standards (e.g., NIST RMF, FISMA, FedRAMP).
  • Demonstrated experience with security tools and platforms (e.g., SIEM, IDS/IPS, endpoint protection, forensics tools).
  • Must be able to obtain and maintain a Top Secret/SCI security clearance.
  • Must be able to obtain DHS EOD suitability. Start date will be established once EOD suitability has been received.
  • This role performs onsite Monday - Friday from 9:00am - 5:00pm.

Actual salary will be based on a variety of factors including but not limited to experience, geographic location, contract affordability, internal equity, education, and certifications.

The upper end of the salary range may be reserved for individuals who have demonstrated tenure with the company, seniority, and proven excellent performance. This includes factors such as education, certifications, and extensive/unique experience beyond what is required.

About the company

At ValidaTek, we modernize and optimize IT services to solve some of the most critical challenges facing federal civilian and defense agencies. From customers to partners to top-talent employees, ValidaTek puts people first, empowering them to exceed expectations and transform government organizations. Our success starts and ends with our people, so we built a company where great people can do great things, with the resources and autonomy to make decisions that transform organizations. We operate as one team of diverse people, united by a passion for continuous growth and optimization. Our commitment to quality and performance optimization is the reason why our IT Service Projects and New Development Projects have been appraised at CMMI Maturity Level 5, positioning us as one of a handful of elite companies to receive the highest form of third-party validation. www.validatek.com

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all