Full-Time

Cyber Information Assurance Analyst

Risk Management Department

Updated on 9/12/2026

Pennsylvania State University

Pennsylvania State University

Land-grant university in University Park, PA

Compensation Overview

$82.3k - $158.6k/yr

No H1B Sponsorship

Reston, VA, USA

In Person

Travel to surrounding areas is expected 50% of the time.

US Citizenship, US Top Secret Clearance Required

Bachelor's

Category
Cybersecurity (1)
Required Skills
Microsoft Windows
Cybersecurity
Vulnerability Analysis
JIRA
Risk Management
Ansible
Confluence
DevOps
Linux/Unix

Get referred to Pennsylvania State University

See people who can refer or advise you

Requirements
  • Knowledge of Windows and Linux operating systems.
  • Knowledge of continuous integration and continuous delivery pipelines.
  • Ability to review hardware and software vulnerabilities.
  • Knowledge of the Department of Defense Risk Management Framework.
  • Ability to understand and enforce policies and procedures within classified environments.
  • Experience collaborating successfully in a multidisciplinary, team-oriented culture.
  • Knowledge of the Assured Compliance Assessment Solution and Security Technical Implementation Guide.
  • Ability to multitask across multiple programs.
  • Security+, CAP, GSEC, or equivalent certification knowledge or qualification.
  • Active Top Secret security clearance and possession of, or eligibility for, Sensitive Compartmented Information clearance.
  • A bachelor's degree is required for the intermediate professional and professional levels.
  • For the intermediate professional level, at least one year of relevant experience is required, or an equivalent combination of education and experience.
  • For the professional level, no prior relevant work experience is required; previous relevant work experience may substitute for education.
  • Eligibility to obtain a government security clearance.
  • Eligibility for employment requires U.S. citizenship.
  • Ability to participate in the ARL drug testing program and comply with electronic and physical monitoring requirements applicable to federal contractors.
Responsibilities
  • Conduct risk assessments and provide recommendations for system, network, and application design, implementation, and operation of departmental systems.
  • Conduct vulnerability assessments of departmental systems and networks to identify deviations from acceptable configurations or policies.
  • Meet regularly with stakeholders to assess departmental needs and requirements.
  • Monitor corrective actions from departmental system audits and draft Plan of Action and Milestones documentation for review.
  • Obtain certification and accreditation for departmental systems through process documentation support, and assist with unit- or University-wide process documentation.
  • Participate in establishing program control processes to ensure risk mitigation.
  • Perform periodic audits of departmental systems under general supervision.
  • Participate in implementing required policies, procedures, and configurations and recommend improvements.
  • Participate in preparing requirements and procedures for forensic preservation.
  • Research and remain current on industry best practices.
  • For the higher-level position, lead risk assessments and provide recommendations for unit-wide system, network, and application design, implementation, and operation.
  • For the higher-level position, lead vulnerability assessments of unit-wide systems and networks, including assessments of non-standard systems.
  • For the higher-level position, monitor corrective actions from unit-wide system audits and develop and manage Plan of Action and Milestones documentation.
  • For the higher-level position, meet regularly with stakeholders to assess unit-wide needs and requirements.
  • For the higher-level position, obtain certification and accreditation through process documentation and develop unit- or University-wide process documentation.
  • For the higher-level position, establish program control processes to ensure risk mitigation.
  • For the higher-level position, perform periodic system audits.
  • For the higher-level position, implement required policies, procedures, and configurations and recommend improvements.
  • For the higher-level position, develop requirements and procedures for forensic preservation.
  • Assist in developing policies, processes, and standards for the Cyber Incident Response Team program and participate in Cyber Incident Response Team activities as needed.
  • Assist in developing and delivering information security training materials.
  • Interface with external entities, including law enforcement and intelligence or government agencies, as needed.
  • Provide guidance to lower-level analysts as needed.
Desired Qualifications
  • Experience developing and maintaining Security Assessment Plans, Risk Assessment Reports, and Plan of Action and Milestones documentation.
  • Experience with containerized environments.
  • Experience with GitLab and Ansible.
  • Experience with JIRA and Confluence.
  • Experience with vulnerability scanning tools such as the Assured Compliance Assessment Solution, OpenSCAP, Trivy, and Grype.
  • A bachelor's degree in Information Technology, Cybersecurity, or a related field.
Pennsylvania State University

Pennsylvania State University

View

Pennsylvania State University is a multi-campus, land-grant public research university whose mission spans undergraduate and graduate education, research, and public service.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to Pennsylvania State University

See people who can refer or advise you