Information Assurance Specialist II

Comptech inc.
Lackland Air Force Base, TX, United States
1 day ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$80,000.0 - $86,000.0
Working hours
Regular working hours
Languages
English

Tech stack

CompTIA Security+ Cyber Security Information Systems Microsoft Security Essentials Software Vulnerability Management Cyber Threat Analysis SC Clearance Vulnerability Analysis

Job description

CompTech Computer Technologies is seeking an experienced Information Assurance Engineer - Level II to provide cybersecurity and information assurance support in support of the Defense Health Agency (DHA). This position assists with the implementation, maintenance, monitoring, and assessment of security measures designed to protect organizational information systems and data. The ideal candidate will have hands-on experience with security controls, vulnerability assessment, remediation, security monitoring, incident response, and cybersecurity compliance within an enterprise environment. This intermediate-level position requires the ability to perform information assurance responsibilities with increasing autonomy while collaborating with cybersecurity, infrastructure, and system administration teams., * Implement and maintain cybersecurity and information assurance controls across enterprise systems and environments.

  • Assist with the implementation, assessment, and ongoing maintenance of technical, operational, and administrative security controls.
  • Conduct vulnerability assessments to identify security weaknesses, configuration issues, and potential risks.
  • Analyze vulnerability findings and work with system administrators, network engineers, application teams, and other technical personnel to support remediation.
  • Track identified vulnerabilities and remediation activities through resolution.
  • Monitor security alerts, events, and system activity for potential cybersecurity threats or policy violations.
  • Investigate and respond to low-level security incidents in accordance with established incident-response procedures.
  • Escalate higher risk or complex security incidents to appropriate cybersecurity personnel.
  • Assist with evaluating system security configurations and identifying deviations from established security requirements.
  • Support security control assessments and the collection and review of evidence necessary to demonstrate control implementation and effectiveness.
  • Help ensure systems comply with applicable organizational cybersecurity policies, procedures, standards, and Government security requirements.
  • Assist with documenting security findings, risks, corrective actions, and remediation activities.
  • Maintain accurate cybersecurity documentation and records associated with security controls, vulnerabilities, assessments, and incidents.
  • Collaborate with technical teams to implement security improvements and reduce identified vulnerabilities and risks.
  • Support cybersecurity audits, assessments, reviews, and compliance activities as required.
  • Provide technical guidance regarding security requirements and recommended remediation actions.
  • Stay current with evolving cybersecurity threats, vulnerabilities, security practices, and applicable Government security requirements.

Requirements

  • Four (4) years of experience in information assurance, cybersecurity, information security, security engineering, or a related discipline demonstrating intermediate proficiency.
  • Demonstrated experience implementing and maintaining cybersecurity controls.
  • Hands-on experience conducting or supporting vulnerability assessments.
  • Experience analyzing vulnerability findings and supporting technical remediation activities.
  • Experience with security monitoring, alert analysis, and basic cybersecurity incident response.
  • Understanding of security control implementation and assessment concepts.
  • Experience supporting cybersecurity compliance activities within an enterprise environment.
  • Knowledge of common cybersecurity vulnerabilities, threats, and remediation techniques.
  • Ability to analyze technical security information and communicate findings to both technical and non-technical stakeholders.
  • Experience documenting security findings, remediation activities, incidents, and control implementation.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Strong verbal and written communication skills.
  • Ability to work independently while collaborating effectively with cybersecurity and infrastructure teams.
  • Ability to satisfy the security and background investigation requirements associated with the position.

Education:

Bachelor’s degree - or - applicable equivalency of 4 additional years of experience in lieu of a degree.

Preferred / Relevant Certifications; applicant must already hold at least one (1) to be considered.

  • Commercial baseline certifications applicable to this intermediate role may include:
  • CompTIA Security+
  • CompTIA CySA+
  • GIAC Security Essentials (GSEC)

Additional certifications relevant to cybersecurity, information assurance, security assessment, vulnerability management, or DoD cyber workforce requirements are a plus.

Security Clearance Requirements:

  • Active Secret Clearance

Benefits & conditions

  • $80,000 - $86,000 plus full benefits, PTO, 401k+

About the company

CompTech is a service-oriented program management and technical company working to build lasting relationships with small and large companies, municipalities, and Government agencies. Headquartered in Dayton, OH, our clients nationwide are provided with services in client-focused practice areas resulting in solutions to organizational challenges.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all