Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Assurance Professional (IAP) image - Rise Careers
Job details

Information Assurance Professional (IAP)

Job Summary:


We are seeking a skilled and detail-oriented Information Assurance Professional with expertise in one or more of the following frameworks: Risk Management Framework (RMF), Joint SAP Implementation Guide (JSIG), ICD-503, or NIST SP 800-53. The ideal candidate will play a critical role in ensuring the confidentiality, integrity, and availability of information systems across our organization.

This role is suited for a professional who excels at navigating complex compliance requirements, identifying risks, and implementing effective security controls. This is a 3 month contract to hire.


Responsibilities:
  • Risk Management and Compliance:
  • Implement and manage the Risk Management Framework (RMF) process, ensuring all steps from categorization to continuous monitoring are executed effectively.
  • Apply requirements from JSIG, ICD-503, or NIST SP 800-53 to assess, document, and maintain security controls.
  • Conduct security risk assessments and vulnerability analyses for information systems.
  • Documentation and Reporting:
  • Develop and maintain security documentation, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Security Assessment Reports (SARs).
  • Prepare and submit reports to relevant stakeholders, such as Authorizing Officials (AOs) or Designated Accrediting Authorities (DAAs).
  • Security Implementation and Monitoring:
  • Work with system administrators and engineers to implement technical and procedural security controls.
  • Monitor system security posture using automated tools and manual assessments.
  • Investigate and respond to security incidents and anomalies.
  • Collaboration and Training:
  • Collaborate with cross-functional teams to ensure security requirements are integrated into system development and operations.
  • Provide guidance and training to staff on security policies, standards, and best practices.
  • Continuous Improvement:
  • Stay updated on emerging threats, vulnerabilities, and regulatory changes.
  • Recommend and implement improvements to security policies, procedures, and tools.


$45 - $60 an hour
Latitude Inc Glassdoor Company Review
4.3 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Latitude Inc DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Latitude Inc
Latitude Inc CEO photo
Dean Robbins
Approve of CEO

Average salary estimate

$109200 / YEARLY (est.)
min
max
$93600K
$124800K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Assurance Professional (IAP), Latitude Inc

If you’re passionate about information security and looking for your next challenge, we have an amazing opportunity for you! Join us at our Strabane, PA location as an Information Assurance Professional (IAP). You will be a key player in safeguarding our organization by ensuring the confidentiality, integrity, and availability of our information systems. In this contract-to-hire role, you'll get to dive deep into frameworks like the Risk Management Framework (RMF) and NIST SP 800-53, applying your expertise to carry out security risk assessments and vulnerability analyses. You will conduct thorough documentation and reporting, creating vital security documents such as System Security Plans and Risk Assessment Reports. Your role will also include monitoring our systems' security posture, investigating any anomalies, and collaborating with our talented teams to implement effective security controls. You’ll have the chance to mentor others and provide valuable training on best practices and security policies. If you’re ready to stay on your toes with the latest threats and continuously improve our security posture, this is the perfect role for you. With a competitive hourly rate of $45 - $60, you will not just fill a position, you’ll help us maintain a robust security environment where everyone thrives. Don’t miss out on this chance to make a meaningful impact!

Frequently Asked Questions (FAQs) for Information Assurance Professional (IAP) Role at Latitude Inc
What responsibilities does an Information Assurance Professional (IAP) have at your organization?

As an Information Assurance Professional (IAP), you'll play a crucial role in managing the Risk Management Framework (RMF), conducting security risk assessments, and ensuring proper documentation. You'll collaborate with different teams to implement security controls, monitor system security posture, and provide guidance on best practices. This multifaceted role is essential for maintaining our organization's security standards.

Join Rise to see the full answer
What qualifications are required for the Information Assurance Professional (IAP) position?

To qualify for the Information Assurance Professional (IAP) role, candidates typically need a background in information security or a related field, along with experience with RMF, NIST SP 800-53, or ICD-503. Relevant certifications such as CISSP, CISM, or Security+ can enhance your candidacy. Strong analytical skills and familiarity with security assessment techniques are also vital for success in this position.

Join Rise to see the full answer
How does the Information Assurance Professional (IAP) contribute to compliance within your organization?

The Information Assurance Professional (IAP) is pivotal in maintaining compliance by implementing and managing the RMF processes. This role involves ensuring that all security controls are properly documented and maintained, conducting risk assessments, and preparing reports for stakeholders. By actively managing these areas, the IAP helps the organization adhere to necessary requirements and regulatory standards.

Join Rise to see the full answer
What tools and technologies are commonly used by Information Assurance Professionals (IAP) in your company?

In our organization, Information Assurance Professionals (IAP) often work with a variety of security tools and technologies such as vulnerability scanning tools, security information and event management (SIEM) systems, and compliance management software. Experience with automated monitoring tools is also beneficial, as it enables effective oversight of system security posture.

Join Rise to see the full answer
What opportunities for growth exist for an Information Assurance Professional (IAP) in your organization?

As an Information Assurance Professional (IAP), you'll have significant opportunities for growth. You can advance within the organization by taking on more complex projects, leading compliance initiatives, or transitioning into higher-level security positions. Continuing education and training in emerging security threats will also be encouraged, helping you build a solid career path.

Join Rise to see the full answer
Common Interview Questions for Information Assurance Professional (IAP)
Can you describe your experience with the Risk Management Framework (RMF)?

Absolutely! When discussing your experience with RMF, highlight specific instances where you implemented the framework in your previous roles. Explain your familiarity with each phase of RMF, from categorization to continuous monitoring, and share examples of how you ensured compliance.

Join Rise to see the full answer
What steps do you take when conducting a security risk assessment?

When responding to this question, outline your methodology for conducting risk assessments. Discuss how you identify assets, evaluate threats, and analyze vulnerabilities. Providing a structured approach that incorporates documentation and reporting will demonstrate your thoroughness.

Join Rise to see the full answer
How do you stay updated on emerging threats and vulnerabilities?

Mention the channels you use to stay informed, such as subscribing to industry newsletters, participating in professional organizations, or attending conferences. Emphasize that continuous learning is part of your commitment to maintaining strong security practices.

Join Rise to see the full answer
Describe a time when you had to deal with a security incident. What steps did you take?

Use the STAR method (Situation, Task, Action, Result) to structure your answer. Share a specific incident where you investigated a security breach, detailing the actions you took to resolve the issue and how you communicated with stakeholders.

Join Rise to see the full answer
What security controls do you consider most effective?

Discuss various security controls, such as access controls, encryption, and continuous monitoring tools. Explain your rationale for why you believe these controls are effective based on their ability to protect information systems and comply with necessary regulations.

Join Rise to see the full answer
How do you ensure your security documentation is comprehensive and up-to-date?

You can explain your approach to documentation management, including conducting regular reviews and updates, establishing a clear process for documenting changes, and aligning with framework requirements to ensure comprehensiveness and compliance.

Join Rise to see the full answer
What role does collaboration play in your approach to information security?

Emphasize the importance of cross-functional teamwork when implementing security measures. Discuss past experiences where collaboration with IT teams or management helped enhance security protocols and compliance.

Join Rise to see the full answer
How would you handle a disagreement regarding security priorities with a colleague?

Demonstrate your communication skills by explaining how you would engage in constructive discussions to understand differing perspectives. Express your willingness to negotiate and find solutions that balance security requirements with organizational needs.

Join Rise to see the full answer
Can you describe the importance of training staff on security policies?

Explain that staff training is crucial for reinforcing security policies and fostering a security-minded culture. Provide examples of successful training initiatives you've led and how they've positively impacted compliance and risk management.

Join Rise to see the full answer
In your opinion, what are the biggest challenges faced by information assurance professionals today?

Identify current trends such as increasing cyber threats, regulatory changes, or challenges in user awareness. Share insights on how you plan to address these challenges in your role as Information Assurance Professional (IAP), showcasing your proactive mindset.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
RA Hybrid Cincinnati, OH
Posted 2 days ago
Photo of the Rise User
Posted 10 minutes ago
Photo of the Rise User
Bosch Group Hybrid 2555 Smallman St, Pittsburgh, PA 15222, USA
Posted 11 days ago
Posted 6 days ago
Posted 11 days ago

Latitude is a Human Resource Consulting Firm headquartered in Hanover, MD with branch offices in Hunt Valley, MD and Winter Park, FL. Latitude provides consulting services to a wide range of industries in both the Private and Public Sectors. We ar...

455 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Contract, on-site
DATE POSTED
January 14, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!