Sr. Information Assurance Security Specialist
2 weeks ago
Description
Synergy Business Innovation & Solutions is a premier implementer of cutting-edge software solutions. Synergy brings the experience and expertise necessary to deliver capability that provides tangible ROI to our customers. Synergy's core areas of expertise are in the fields of Digital Transformation, Cloud Solutions, SaaS and Low-Code/No-Code solutions, Emerging Technologies, Data analytics and Visualization, Information Assurance, and Business Process Re-Engineering.
Synergy offers its employees a generous portfolio of core and voluntary benefits including: group medical, dental, and vision insurance, company paid life, short-term, and long-term disability insurance; HSA, FSA; 401(k) with immediately vested company match; PTO/Sick Leave, 11 paid federal holidays, parental leave; tuition and training reimbursement; a referral bonus program; and life management programs.
At Synergy, you'll be challenged and given the opportunity to grow in your career path. In fact, growth is such a big deal to us that you will have dedicated career coaches available for every employee, company-funded certification opportunities, education reimbursement, and a general open-door policy so that you have support when you need it. Our team is eager to learn, fast-paced, and quality-driven-if that sounds like you, Synergy has a position for you
Position Summary: Synergy is seeking aSr. Information Assurance Security Specialistto support the United States Coast Guard (USCG) at the Aviation Logistics Center (ALC)-Information Systems Division (ISD). The Sr. Information Assurance Security Specialist will focus on maintaining system authorization through RMF execution, vulnerability management, risk assessments, and compliance assurance aligned with DHS 4300A, FISMA, and NIST 800-53 guidelines. The ideal candidate will serve as a technical subject matter expert in cybersecurity assurance, supporting the ongoing protection and accreditation of enterprise systems through ATO sustainment, audit preparation, and continuous control validation. Primary Responsibilities:- Execute and support the Risk Management Framework (RMF) lifecycle including system categorization, control selection, implementation, assessment, and authorization.
- Develop, maintain, and validate System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, Contingency Plans (CPs), and related compliance documentation.
- Conduct and lead vulnerability assessments, leveraging tools such as Nessus, ACAS, and Fortify to identify and prioritize remediation efforts.
- Perform continuous monitoring of security controls and produce metrics, dashboards, and evidence in support of ATO renewals and sustainment.
- Analyze and respond to security incidents, working with SOC personnel and SIEM tools to evaluate logs, investigate events, and contain potential threats.
- Conduct internal audits and risk assessments to validate the effectiveness of implemented controls and identify compliance gaps.
- Provide security guidance to engineering and development teams, ensuring adherence to cybersecurity standards in a DevSecOps environment.
- Stay informed of evolving threats, vulnerabilities, and regulatory changes to proactively enhance security postures.
- Coordinate with Security Control Assessors (SCAs), ISSOs, system owners, and federal stakeholders on audit readiness and policy compliance.
- Draft and enforce cybersecurity policies, SOPs, and standards that support mission-critical systems across hybrid environments.
- All other duties as assigned by management.
- In-depth knowledge of NIST SP 800-53, RMF, DHS 4300A, and federal compliance frameworks.
- Hands-on experience with SIEM tools, log analysis, and vulnerability scanning platforms (e.g., Tenable, Splunk, McAfee ePO).
- Strong understanding of network and host-based security controls, including firewall management, IDS/IPS, and encryption standards.
- Proficiency with Windows, UNIX, RHEL, and relational database security configurations.
- Ability to manage security documentation and audit evidence repositories such as eMASS, Jira, or SharePoint.
- Excellent communication and documentation skills for preparing executive summaries, security findings, and technical reports.
- Bachelor's or Associate's degree in Computer Science, Math, Information Technology, Engineering, or related field. Five (5) years of directly relevant experience may substitute for two (2) years of formal education.
- Minimum of five (5) years of experience with vulnerability scanning tools and security assessment methodologies.
- Minimum of five (5) years of experience with network security, firewall management, intrusion detection/prevention systems (IDS/IPS).
- Minimum of (5) years of experience with Security Information and Event Management (SIEM).
- Minimum of five (5) years of experience in the risk management framework.
- Basic knowledge of the following: Active Directory, UNIX, RHEL, Windows, & Relational Databases.
- Previous support of federal government enterprise systems or DHS/DOD programs is strongly preferred.
- U.S. citizenship required
- Must have an active DoD Secret Clearance.
- CompTIA Security + Preferred.
- Additional certifications (Network+, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals, Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), ITIL Foundation, TOGAF, or other cybersecurity architecture certifications) are a plus.
A reasonable estimate of the current pay range is: $66,750.00 - $119,500.00.
Essential Job Function Physical Requirements:The physical requirements of this position are critical in evaluating the qualifications and abilities of an applicant or employee. The physical efforts needed to perform the essential duties of this job 90% of the time are repetitive motions, grasping, holding, and finger dexterity of the hands, reading, writing, eye-hand coordination, color distinction, and full visual abilities, hearing, talking, sitting, and use of IT equipment, phones, and office machines.
To a reduced degree,
-
Information Assurance Specialist
5 days ago
Reston, VA, United States VTG Full timeOverviewVTG is seeking an Information Assurance Specialist in Reston VA and Springfield VA. Position location will vary between the customer site in Springfield and Reston VA. What will you do?Tasks: Determines enterprise information assurance and security standards Develops and implements information assurance/security standards and procedures...
-
Information Security Specialist
1 week ago
Reston, VA, United States The Computer Merchant Full timeJOB TITLE: INFORMATION SECURITY SPECIALIST JOB LOCATION: WASHINGTON, DC WAGE RANGE*: 85.00-90.00 PER HOUR JOB NUMBER: SAIJP00038431 REQUIRED EXPERIENCE: Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience). 3 years of hands-on experience in cybersecurity roles. Strong understanding of networking, operating...
-
Information Security Specialist
1 week ago
Reston, VA, United States The Computer Merchant Full timeJOB TITLE: INFORMATION SECURITY SPECIALIST JOB LOCATION: WASHINGTON, DC WAGE RANGE*: 85.00-90.00 PER HOUR JOB NUMBER: SAIJP00038431 REQUIRED EXPERIENCE: Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience). 3 years of hands-on experience in cybersecurity roles. Strong understanding of networking, operating...
-
Information Security Specialist
6 days ago
Reston, VA, United States The Computer Merchant Full timeJOB TITLE: INFORMATION SECURITY SPECIALIST JOB LOCATION: WASHINGTON, DC WAGE RANGE*: 85.00-90.00 PER HOUR JOB NUMBER: SAIJP00038431 REQUIRED EXPERIENCE: Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience). 3 years of hands-on experience in cybersecurity roles. Strong understanding of networking, operating...
-
Information Security Specialist
7 days ago
Reston, VA, United States The Computer Merchant Full timeJOB TITLE: INFORMATION SECURITY SPECIALIST JOB LOCATION: WASHINGTON, DC WAGE RANGE*: 85.00-90.00 PER HOUR JOB NUMBER: SAIJP00038431 REQUIRED EXPERIENCE: Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience). 3 years of hands-on experience in cybersecurity roles. Strong understanding of networking, operating...
-
Information Assurance Analyst
3 days ago
Reston, VA, United States Cymertek Full timeInformation Assurance AnalystLOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a detail-oriented and proactive Information Assurance Analyst to join our team and safeguard critical information systems. In this role, you will play a key part in identifying, assessing, and...
-
Information Assurance Analyst
5 days ago
Reston, VA, United States Cymertek Full timeInformation Assurance AnalystLOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARY We are seeking a detail-oriented and proactive Information Assurance Analyst to join our team and safeguard critical information systems. In this role, you will play a key part in identifying, assessing, and...
-
Information Systems Security Officer
2 weeks ago
Reston, VA, United States Mantis Security Corporation Full timeMantis Security is a leading specialty firm of high caliber talent who specialize in Cyber Operations, Cyber Defense, Information Assurance, Software Development, DevSecOps, Security Engineering, and Cloud Engineering. We enable and protect our nation's most important IT assets and invest in the long-term career development of every employee! We are...
-
Information Systems Security Officer
2 weeks ago
Reston, VA, United States Mantis Security Corporation Full timeMantis Security is a leading specialty firm of high caliber talent who specialize in Cyber Operations, Cyber Defense, Information Assurance, Software Development, DevSecOps, Security Engineering, and Cloud Engineering. We enable and protect our nation's most important IT assets and invest in the long-term career development of every employee! We are...
-
Sr. Information Security Consultant
7 days ago
Reston, VA, United States Guidehouse Full timeJob Family : Technology Consulting Travel Required : Up to 25% Clearance Required : Active Top Secret SCI with Polygraph What You Will Do : Guidehouse has an opportunity for a cleared Sr. Information Security Consultant to leverage their understanding of IC/DOD Risk Management Frameworks (RMF), continuous monitoring, risk scoring, and risk management...