> Markdown version of [/jobs/ext/2675277-information-assurance-security-specialist](https://www.wearedevelopers.com/jobs/ext/2675277-information-assurance-security-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Assurance Security Specialist - **Company:** Peraton Inc - **Location:** Herndon, VA, United States - **Salary:** $104,000.0 - $166,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Information Systems, Firmware, Identity and Access Management, Zero Trust Network Access, Security Content Automation Protocol, Software Vulnerability Management, Google Cloud, Patch Management, Nessus, CIS Benchmarks, Splunk - **Published:** September 1, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9045656/information-assurance-security-specialist ## About the Role * Bachelor's degree and five years of experience * Experience with NIST 800-53 security controls and Risk Management Framework (RMF) process with a U.S. Government agency. * One year of experience with vulnerability management for networks, operating systems, and software. * Familiarity with Cyber security tools such as Splunk, Nessus Security Center, etc. Capable of designing user-focused dashboards and reports. * Current Security+ or similar DoD 8570 IAT certification * Must possess an active, current Top Secret/Sensitive Compartmented Information (TS/SCI) and the ability to pass a polygraph Desired qualifications: * Splunk reports and dashboards ## Description Ready to make an impact! Peraton has an exciting opportunity for a cleared Information Assurance Specialist join our dynamic multi-disciplinary team, developing a next generation satellite terminal on a mission critical Space and Intelligence Program., The Information Assurance Specialist will be responsible for the following but not limited to: * Monitors, analyzes, and detects cyber events and incidents within information systems and networks under general supervision. Develop techniques and procedures for conducting IS and cyber security risk assessments and compliance audits, evaluation and testing of hardware, firmware, and software for possible impact on system security, and the investigation and resolution of security incidents such as intrusion, attacks, or leaks. * Performs security reviews, identify gaps in security architecture, and develop a security risk management plan * Plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks. * Reviews requests for security relevant changes to mission infrastructures, ensuring risk is adequately mitigated * Perform patch management and vulnerability remediation for IT assets, ensuring compliance with security benchmarks (DISA STIGs, CIS Benchmarks, SCAP). * Ensures that IS and cyber security plans, controls, processes, standards, policies, and procedures are aligned with IS standards and overall IS and cyber security. * Support the implementation of Zero Trust Architecture (ZTA) and Identity & Access Management (IAM) controls. * Conduct security reviews for third-party applications and vendors to mitigate supply chain risks. * Communicates frequently with customer IA team regarding any asset changes, determine impact of any upcoming policy changes, and flow down information about other evolving IA requirements * Assist in securing cloud-based environments (AWS, Azure, Google Cloud) through security controls like CASB, CSPM, and cloud encryption. * Work with engineering and operations teams to review and update procedures and SOPs to produce positive cybersecurity outcomes ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)