1

Information Assurance Engineer Jobs (NOW HIRING)

Provide guidance for DoD Information Technology Portfolio Repository (DITPR) and eMASS registration. * Work with system owners for system categorization and security control selection in accordance ...

Provide guidance for DoD Information Technology Portfolio Repository (DITPR) and eMASS registration. * Work with system owners for system categorization and security control selection in accordance ...

Provide guidance for DoD Information Technology Portfolio Repository (DITPR) and eMASS registration. * Work with system owners for system categorization and security control selection in accordance ...

next page

Showing results 1-20

Information Assurance Engineer information

See salary details

$98K

$134.1K

$200K

How much do information assurance engineer jobs pay per year?

As of Jul 24, 2026, the average yearly pay for information assurance engineer in the United States is $134,144.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,000.00 and $144,000.00 per year, depending on experience, location, and employer.

What is the difference between Information Assurance Engineer vs Cybersecurity Analyst?

AspectInformation Assurance EngineerCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentDesigning and implementing security systems, ensuring complianceMonitoring security threats, analyzing incidents
Industry UsageGovernment, defense, large enterprisesCorporate, government, IT firms

Both roles require similar certifications and often work in overlapping environments, but the Information Assurance Engineer focuses on designing and maintaining security systems, while the Cybersecurity Analyst primarily monitors and responds to security threats.

What are the key skills and qualifications needed to thrive as an Information Assurance Engineer, and why are they important?

To thrive as an Information Assurance Engineer, you need a solid background in cybersecurity, risk management, and IT systems, typically supported by a relevant degree and industry certifications like CISSP or Security+. Expertise with vulnerability assessment tools, security frameworks (such as NIST or ISO 27001), and various monitoring and encryption technologies is important. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for identifying threats and collaborating with technical and non-technical teams. These skills and qualities are crucial for protecting organizational assets, ensuring compliance, and maintaining robust security postures in evolving threat landscapes.

What are Information Assurance Engineers?

Information Assurance Engineers are professionals responsible for protecting and securing an organization's information systems. They develop and implement security measures to safeguard data, manage risks, and ensure compliance with relevant regulations. Their work often includes conducting vulnerability assessments, monitoring networks for security breaches, and creating policies to protect sensitive information. Information Assurance Engineers play a critical role in maintaining the confidentiality, integrity, and availability of organizational data.

What are the most common challenges faced by Information Assurance Engineers when working with cross-functional teams?

Information Assurance Engineers often work closely with IT, development, and operations teams to ensure security protocols are properly implemented and maintained. One common challenge is bridging the gap between security requirements and business objectives, as team members may have varying levels of security awareness. Effective communication and collaboration are essential to translating complex security concepts into actionable steps for non-technical colleagues. Additionally, balancing the need for robust security with project timelines and usability considerations can require creative problem-solving and negotiation.
Who are the top companies hiring for Information Assurance Engineer jobs? The top employers for Information Assurance Engineer jobs are:
What states have the most Information Assurance Engineer jobs? States with the most job openings for Information Assurance Engineer jobs include:
Infographic showing various Information Assurance Engineer job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 89% Full Time, 8% Part Time, and 2% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $134,144 per year, or $64.5 per hour.
Senior Information Assurance Engineer

Senior Information Assurance Engineer

Expression Networks

Fort George G Meade, MD โ€ข On-site

$140K - $180K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Job description

Expression is looking for an experienced Senior Information Assurance (IA) Engineer to lead cybersecurity and Risk Management Framework (RMF) activities supporting the Defense Information Systems Agency (DISA) Global Force Management (GFM) Program Management Office (PMO) for the Joint Planning and Execution Services (JPES) and Joint Capabilities Requirements Manager (JCRM) Sustainment Program.
The Senior Information Assurance Engineer serves as the cybersecurity lead for the program, ensuring the confidentiality, integrity, availability, and compliance of mission-critical systems operating in classified and unclassified environments. This position provides technical leadership for RMF implementation, security compliance, vulnerability management, continuous monitoring, and cybersecurity documentation while partnering closely with Government Information System Security Managers (ISSMs), Security Control Assessors (SCAs), system engineers, and DevSecOps teams.
Clearance: Secret Clearance required
Location: DISA Headquarters, 6910 Cooper Ave, Fort Meade, MD
Job Responsibilities:
  • Lead execution of the DoD Risk Management Framework (RMF) throughout the system lifecycle in accordance with DoD, DISA, and NIST guidance.
  • Maintain and update cybersecurity documentation, security controls, and authorization artifacts within eMASS to support Authority to Operate (ATO) requirements.
  • Develop and maintain cybersecurity documentation, including Self-Assessment Plans, Self-Assessment Reports, Plans of Action and Milestones (POA&Ms), and other required RMF deliverables.
  • Conduct security control assessments, vulnerability assessments, STIG compliance reviews, and continuous monitoring activities to ensure ongoing system compliance.
  • Create, manage, and track POA&Ms, recommend risk mitigation strategies, and coordinate remediation efforts with engineering and system administration teams.
  • Support implementation of security controls aligned with NIST SP 800-37, NIST SP 800-53, DoD RMF, DISA STIGs, and applicable cybersecurity policies.
  • Collaborate with software development, DevSecOps, cloud infrastructure, and system administration teams to integrate cybersecurity requirements throughout the software development lifecycle.
  • Evaluate security impacts of software releases, infrastructure changes, patches, and technology refresh activities to ensure continued compliance.
  • Monitor emerging cybersecurity vulnerabilities, DoD taskings, and security advisories, providing recommendations to maintain secure system operations.
  • Support Government cybersecurity reviews, security inspections, audits, and authorization activities while serving as the primary cybersecurity interface with Government stakeholders.
  • Provide technical guidance on secure system architecture, vulnerability remediation, configuration management, and continuous improvement of cybersecurity processes.
  • Ensure compliance with classified network security requirements supporting NIPRNet, SIPRNet, and Microsoft Azure IL6 environments.

Required Qualifications:
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Assurance, or a related technical discipline. Four additional years of relevant experience may substitute for the degree.
  • Minimum 4 years of experience supporting Information Assurance, Cybersecurity, or Risk Management Framework (RMF) activities within Federal Government or DoD environments.
  • Security+, CISSP, CAP, CASP+, or equivalent DoD 8570/8140 cybersecurity certification.
  • Demonstrated experience implementing and maintaining DoD RMF in accordance with NIST SP 800-37 and NIST SP 800-53.
  • Experience administering and maintaining RMF documentation within eMASS.
  • Experience performing vulnerability assessments, STIG compliance reviews, POA&M management, and continuous monitoring.
  • Experience supporting Authority to Operate (ATO) packages and cybersecurity accreditation activities.
  • Working knowledge of DoD cybersecurity policies, DISA Security Technical Implementation Guides (STIGs), and cybersecurity compliance requirements.
  • Strong understanding of Windows and Linux operating systems, network security principles, cloud environments, and secure system administration.
  • Excellent written and verbal communication skills with experience preparing technical reports and briefing Government stakeholders.
  • Active Secret security clearance with the ability to maintain eligibility for access to classified DoD systems.

Preferred Qualifications
  • Experience supporting DISA, Global Force Management (GFM), or other DoD enterprise systems.
  • Experience with Microsoft Azure IL6 cloud environments and DevSecOps security practices.
  • Experience supporting classified NIPRNet and SIPRNet environments.
  • Familiarity with vulnerability management tools, SCAP, ACAS, HBSS/ESS, and DISA cybersecurity toolsets.
  • Experience supporting Agile software development environments and secure software delivery practices.

Benefits:
Expression Networks offers competitive salaries and benefits, such as:
  • 401k matching
  • PPO and HDHP medical/dental/vision insurance
  • Education reimbursement
  • Complimentary life insurance
  • Generous PTO and holiday leave
  • Onsite office gym access
  • Commuter Benefits Plan

About Expression:
Founded in 1997 and headquartered in Washington DC, Expression provides data fusion, data analytics, AI/ML, software engineering, information technology, and electromagnetic spectrum management solutions to the U.S. Department of Defense, Department of State, and national security community. Expression's culture focuses on creating immediate and sustainable value for our clients via agile delivery of tailored solutions built through constant engagement with our clients. Expression was ranked #1 on the Washington Technology 2018's Fast 50 list of fastest-growing small business Government contractors and a Top 20 Big Data Solutions Provider by CIO Review.
We make sure to provide everyone with the tools and opportunities to grow while working on some of the newest technologies in the industry. We get excited about celebrating our professionals' milestones, accomplishments, promotions, overcoming challenges, and many other aspects that make an engaging collaborative environment.
Equal Opportunity Employer/Veterans/Disabled
Expression is an Equal Opportunity Employer. If you require a reasonable accommodation during the application or interview process, please submit your request to our Human Resources department through the application portal.