Full-Time

Information Assurance Engineer 2

Updated on 8/1/2026

Deadline 6/10/27
AMERICAN SYSTEMS

AMERICAN SYSTEMS

1,001-5,000 employees

IT and engineering services for government

Compensation Overview

$90k - $110k/yr

No H1B Sponsorship

San Diego, CA, USA

In Person

US Top Secret Clearance Required

Category
IT & Security (1)
Required Skills
Cybersecurity
Vulnerability Analysis

Get referred to AMERICAN SYSTEMS

See people who can refer or advise you

Requirements
  • A bachelor's degree in Cybersecurity, Information Technology, Information Assurance, Computer Science, or a related field is required.
  • An active Secret Clearance is required.
  • At least 5 years of relevant experience in information assurance, cybersecurity, Risk Management Framework, compliance, or a related field is required.
  • Demonstrated experience supporting the Risk Management Framework process and preparing or maintaining Authority to Operate packages.
  • Experience working with eMASS or similar compliance and documentation repositories.
  • Knowledge of DISA Security Technical Implementation Guides, Security Requirements Guides, and security compliance practices across infrastructure and application environments.
  • Experience with vulnerability scanning and analysis tools such as ACAS or Nessus.
  • Familiarity with Plan of Action and Milestones management, remediation tracking, and continuous monitoring practices.
  • Experience supporting security assessments, audit readiness, and control validation activities.
  • A strong understanding of cybersecurity principles, risk management, and regulatory compliance requirements is required.
  • Ability to analyze complex security requirements and apply them across enterprise and specialized systems.
Responsibilities
  • Support the full Risk Management Framework lifecycle for assigned systems, including development, update, and maintenance of security documentation required to obtain and sustain Authority to Operate.
  • Prepare and maintain Risk Management Framework artifacts such as System Security Plans, Plans of Action and Milestones, security control documentation, and related evidence within repositories such as eMASS.
  • Validate, document, and support implementation of DISA Security Technical Implementation Guides and Security Requirements Guides across operating systems, applications, databases, and network devices.
  • Execute and support vulnerability management activities, including reviewing scan results from tools such as ACAS or Nessus, analyzing findings, and coordinating remediation efforts.
  • Track identified security findings through Plan of Action and Milestones management, ensuring issues are documented, prioritized, and resolved in a timely manner.
  • Implement and support continuous monitoring strategies to verify that deployed systems remain compliant and that security controls continue to operate effectively.
  • Review system audit logs, compliance reports, and security events to identify anomalies, potential risks, and areas requiring corrective action.
  • Support security auditing and assessment activities by preparing artifacts and evidence for internal reviews, external inspections, and Security Control Assessor evaluations.
  • Coordinate with technical teams to resolve compliance discrepancies and strengthen system security posture.
  • Establish and satisfy complex system-wide information security requirements based on analysis of user needs, policy requirements, regulatory mandates, and available resources.
  • Support development and implementation of information assurance doctrine, policies, standards, and procedures for government and commercial common-user systems, as well as specialized-purpose systems requiring enhanced security features.
  • Provide guidance to stakeholders and team members on cybersecurity compliance requirements and best practices.
  • May lead and direct the work of others and provide status updates to leadership, supervisors, or program managers.

AMERICAN SYSTEMS delivers information technology and engineering services to U.S. government clients as an employee-owned government contractor. It focuses on IT and enterprise services, software development, and systems engineering, with offerings such as legacy systems migration, mobile app development, and user experience design. The company operates primarily for federal agencies, including the Intelligence Community, by winning government contracts to support national security initiatives and mission-critical programs. Its employee-owned structure aligns workforce interests with company success, differentiating it from typical contractor firms by giving employees a stake in outcomes and accountability in delivering technical and engineering solutions to national security and IT needs.

Company Size

1,001-5,000

Company Stage

N/A

Total Funding

N/A

Headquarters

Chantilly, Virginia

Founded

1975

Get referred to AMERICAN SYSTEMS

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Epsilon added 400-plus employees and expanded managed IT and cybersecurity reach.[15]
  • Federal demand for Zero Trust, monitoring, and AI-resistant security supports pipeline growth.[15]
  • Large defense programs and contract vehicles provide recurring revenue opportunities.[13][11]

What critics are saying

  • Federal budget delays directly stall task orders, recompetes, and new awards.[13][11]
  • Large acquisitions create integration, culture, and contract-transfer execution risk.[15]
  • Intelligence and defense customers punish any AI governance or cyber failure immediately.[15][1]

What makes AMERICAN SYSTEMS unique

  • 100% employee-owned since 2015, aligning workforce incentives with contract execution.[1][14]
  • Mission-critical federal contractor spanning IT, engineering, test, and training services.[2][10]
  • ConnectGPT and perfect CMMC Level 2 signal disciplined, secure AI adoption.[15][3]

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Paid Vacation

Paid Sick Leave

401(k) Retirement Plan

Professional Development Budget

Tuition Reimbursement

Company News

GlobeNewswire
Sep 8th, 2025
AMERICAN SYSTEMS Completes Acquisition of Epsilon, Inc.

CHANTILLY, Va., Sept. 08, 2025 (GLOBE NEWSWIRE) -- AMERICAN SYSTEMS, a leading provider of mission essential and information engineering services to federal customers, today announced the acquisition of Epsilon, Inc. (Epsilon), a managed IT and cybersecurity leader headquartered in Weaverville, NC. The acquisition will result in more than 400 new employees joining AMERICAN SYSTEMS, further increasing the company’s scale and capabilities.This transaction marks the largest acquisition in AMERICAN SYSTEMS’ 50-year history. The addition of Epsilon’s multi-tenant service delivery model, its broad geographical footprint, and its federal and commercial market expertise brings significant new capabilities and economies of scale to AMERICAN SYSTEMS. This expanded capability enables AMERICAN SYSTEMS to even better address the rapidly evolving needs of existing and new customers across sectors as the company partners with them to accelerate mission outcomes and increase efficiency."Acquisitions are an important element of our growth strategy, and we work hard to ensure that we select companies that are a good fit for us, both strategically and culturally,” said John Steckel, AMERICAN SYSTEMS’ President and CEO

WashingtonExec
Sep 8th, 2025
AMERICAN SYSTEMS Buys Epsilon

AMERICAN SYSTEMS buys Epsilon.

Washington Technology
Sep 2nd, 2025
Tech, finance and operations leadership moves across the market

He succeeds Brian Neely, who retired after two decades as American Systems' CIO.

WashingtonExec
Aug 26th, 2025
Srinivas Rautwar Named AMERICAN SYSTEMS CIO

AMERICAN SYSTEMS has promoted Srinivas Rautwar to chief information officer, effective Aug. 25.

WashingtonExec
Aug 24th, 2025
AMERICAN SYSTEMS Earns CMMC Level 2 Certification with Perfect Score

The certification strengthens AMERICAN SYSTEMS' ability to safeguard Controlled Unclassified Information and mitigate the risk of cyberattacks and data breaches.