1

Poam Jobs (NOW HIRING)

Maintain up to date POAM throughout projects. Research current Army and TRADOC publications to discover any publication needing updates due to changes in organizations for all publications to be ...

Senior Security Engineer

Dallas, TX · On-site

$113K - $155K/yr

... POAM records for all security-classified vulnerabilities ensuring remediation dates, risk classifications, and fix approaches are documented to audit standards required in a regulated banking ...

Senior Security Engineer

Cleveland, OH · On-site

$110K - $152K/yr

... POAM records for all security-classified vulnerabilities ensuring remediation dates, risk classifications, and fix approaches are documented to audit standards required in a regulated banking ...

Remote Sr. Business Analyst (VA ESOM)

$94K - $122K/yr

Support POAM management and audit preparation activities, providing timely evidence and documentation for compliance reviews. * Present findings and recommendations in summary reports and oral ...

Remote Sr. Business Analyst (VA ESOM)

$92K - $119K/yr

Support POAM management and audit preparation activities, providing timely evidence and documentation for compliance reviews. * Present findings and recommendations in summary reports and oral ...

Update POAM items (See POAM Section) Web Risk Assessment (WRA) Scan (if applicable) ATO Modifications (Use Case) Requirements What you'll need to have to join our award-winning team: * Clearance:

next page

Showing results 1-20

Poam information

See salary details

$14

$24

$41

How much do poam jobs pay per hour?

As of Jun 25, 2026, the average hourly pay for poam in the United States is $24.25, according to ZipRecruiter salary data. Most workers in this role earn between $18.27 and $26.44 per hour, depending on experience, location, and employer.

What are some common challenges faced by POAMs (Program Objective Assessment Managers) when managing multiple projects simultaneously?

POAMs often juggle several projects with competing deadlines and priorities, which can make it challenging to allocate resources and maintain clear communication across teams. Balancing the need for thorough documentation with timely progress reporting—especially in highly regulated environments—requires strong organizational skills and attention to detail. Collaborating with diverse stakeholders, such as technical leads, compliance officers, and executive sponsors, is essential to ensure all program objectives are met and risks are effectively managed. Successful POAMs develop efficient tracking systems and proactive communication strategies to stay ahead of potential issues.

What are POAMs (Plans of Action and Milestones)?

POAMs, or Plans of Action and Milestones, are management tools used in cybersecurity and compliance to identify, track, and remediate security weaknesses within an organization’s information systems. They document specific steps needed to address vulnerabilities, assign responsibilities, and set deadlines for completion. POAMs are essential for maintaining compliance with standards such as NIST and FedRAMP, ensuring that organizations have a clear plan to achieve and maintain security requirements.

What job makes $10,000 a month without a degree?

A POAM (Privately Owned Asset Manager) or similar high-paying roles in finance, sales, or entrepreneurship can sometimes generate $10,000 or more monthly without requiring a degree, often relying on skills, experience, and networks. Many such jobs involve sales, real estate, or online business ventures where income is commission-based or performance-driven.

Which actor is a cop in real life?

There are actors who have played police officers in films or TV shows, but few are actual law enforcement officers in real life. Some actors, like Dennis Farina and Michael Madsen, had law enforcement backgrounds before acting. However, most actors portraying cops do not hold real police credentials.

What does 4 fingers up mean for cops?

For law enforcement officers, holding up four fingers can be a gesture used to signify the number four, often in communication during operations or to indicate a specific command or status. It is not a universally recognized signal and its meaning can vary depending on the context or department protocols.

What is Poam?

Poam is a job title that typically refers to a position involving project or program management, often requiring skills in planning, coordination, and communication. The role may involve overseeing tasks, managing teams, and ensuring project goals are met within deadlines and budgets.

What are the key skills and qualifications needed to thrive as a POAM (Plan of Action and Milestones) Manager, and why are they important?

To thrive as a POAM Manager, you need a solid understanding of cybersecurity compliance frameworks, risk assessment, and project management, typically supported by experience in IT security or compliance roles. Familiarity with tools such as GRC (Governance, Risk, and Compliance) platforms, NIST SP 800-53, and related certification like CISSP or CISA is highly valuable. Strong organizational skills, attention to detail, and effective communication are crucial soft skills for coordinating remediation efforts and reporting to stakeholders. These competencies ensure that security gaps are properly tracked, managed, and remediated to maintain organizational compliance and reduce risk.

What is the difference between Poam vs Network Security Analyst?

AspectPoamNetwork Security Analyst
Required CredentialsTypically security certifications like CISSP, CEH, or CompTIA Security+Same certifications, often with additional network-specific credentials
Work EnvironmentSecurity teams, government agencies, or private firms focusing on security plansIT departments, cybersecurity firms, or corporate security teams
Employer & Industry UsageUsed in security planning and compliance documentationUsed in monitoring, analyzing, and responding to security threats

Poam (Plan of Action and Milestones) and Network Security Analyst roles both require security certifications and work within cybersecurity environments. Poam focuses on security planning and compliance, while Network Security Analysts actively monitor and respond to security threats. Both roles are essential in maintaining organizational security but serve different functions within the cybersecurity landscape.

More about Poam jobs
What states have the most Poam jobs? States with the most job openings for Poam jobs include:
Infographic showing various Poam job openings in the United States as of June 2026, with employment types broken down into 89% Full Time, 5% Part Time, and 6% Contract. Highlights an 91% Physical, and 9% Remote job distribution, with an average salary of $50,446 per year, or $24.3 per hour.

Cyber Information Assurance Analyst

Penn State University

Reston, VA • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 23 days ago


Penn State University rating

7.9

Company rating: 7.9 out of 10

Based on 100 frontline employees who took The Breakroom Quiz

178th of 539 rated colleges and universities


Job description

APPLICATION INSTRUCTIONS:
  • CURRENT PENN STATE EMPLOYEE (faculty, staff, technical service, or student), please login to Workday to complete the internal application process. Please do not apply here, apply internally through Workday.
  • CURRENT PENN STATE STUDENT (not employed previously at the university) and seeking employment with Penn State, please login to Workday to complete the student application process. Please do not apply here, apply internally through Workday.
  • If you are NOT a current employee or student, please click "Apply" and complete the application process for external applicants.

Approval of remote and hybrid work is not guaranteed regardless of work location. For additional information on remote work at Penn State, see Notice to Out of State Applicants.
POSITION SPECIFICS
We are searching for a Cyber Information Assurance Analyst to join the Risk Management Department, in Reston, VA, in the Applied Research Laboratory (ARL) at Penn State. The CIAA evaluates system and network environments to implement effective cybersecurity programs and determines security controls and policies based on best practices, regulations, and contractual requirements. This role includes managing compliance assessments, mitigating risks to information systems, and ensuring confidentiality, integrity, and availability. CMS Division leverages M&S expertise and other resources to deliver prototypes, demonstrations, and accelerated transitions of emerging research and technologies vital to national security needs, in addition to performing research, development, testing, and evaluations facilitating innovation in practice and development of critical, in-demand capabilities.
ARL is an authorized DoD SkillBridge partner and welcomes all transitioning military members to apply
You will:
  • Conduct risk assessments and provide recommendations for system, network, and application design, implementation, and operation of departmental systems
  • Conduct vulnerability assessments of departmental systems and networks to identify deviations from acceptable configurations or policies
  • Meet with stakeholders regularly to assess needs and requirements at a departmental level
  • Conduct vulnerability assessments of departmental systems and networks to identify deviations from acceptable configurations or policies
  • Monitor the corrective actions of departmental system audits; draft documentation of Plan of Action and Milestones (POAM) for review
  • Obtain certification and accreditation for departmental systems through the creation of process documentation support; may assist with unit or University wide process documentation
  • Participate in the establishment of program control processes to ensure risk mitigation
  • Perform periodic audits of departmental systems under general supervision
  • Participate in the implementation of required policies, procedures, and configurations; make recommendations for improvements
  • Participate in the preparation of requirements and procedures for forensic preservation
  • Research and stay current on industry best practices

Additional responsibilities for higher level position includes:
  • Lead risk assessments and provide recommendations for system, network, and application design, implementation, and operation of unit-wide systems
  • Lead vulnerability assessments of unit-wide systems and networks to identify deviations from acceptable configurations or policies; conduct assessments of non-standard systems
  • Monitor the corrective actions of unit-wide system audits; develop and manage Plan of Action and Milestones (POAM)
  • Meet with stakeholders regularly to assess needs and requirements at a unit-wide level
  • Obtain certification and accreditation through the creation of process documentation; develop unit or University-wide process documentation
  • Establish program control processes to ensure risk mitigation
  • Perform periodic audits of systems
  • Implement required policies, procedures, and configurations; make recommendations for improvements
  • Develop requirements and procedures for forensic preservation
  • Assist in the development of policy, process, and standards of Cyber Incident Response Team (CIRT) program and participate in CIRT activities as needed
  • Assist in the development and delivery of information security training material
  • May interface with external entities including law enforcement and intelligence/government agencies
  • May provide guidance to lower level Analysts

Required skills/knowledge areas include:
  • Windows and Linux OS
  • CI/CD pipeline
  • Review of hardware and software vulnerabilities
  • DoD Risk Management Framework (RMF)
  • Understand and enforce policies and procedures within classified space
  • Previous success with collaborations in a multi-disciplinary, team-oriented culture Assured Compliance Assessment Solution (ACAS) and Security Technical Implementation Guide (STIG)
  • Ability to multitask multiple programs
  • Security+, CAP, GSEC or equivalent
  • Active security clearance, at the Top-Secret level and possession of or eligible for SCI level

Preferred Skills/Knowledge Include:
  • Development and maintenance of Security Assessment Plans, Risk Assessment Reports, and POAMs
  • Containerized environments
  • Gitlab and Ansible
  • JIRA and Confluence
  • Vulnerability scanning tools (ACAS, OpenSCAP, Trivy, Grype, etc.)
  • Bachelors' degree in Information Technology, Cybersecurity or related field

Your working location will be in Reston, VA. Questions related to flexible work should be directed to the hiring manager during the interview process. Travel is expected to be at 50% of the time to surrounding areas.
MINIMUM EDUCATION, WORK EXPERIENCE & REQUIRED CERTIFICATIONS
If filled as Cyber Information Assurance Analyst - Intermediate Professional, this position requires:Bachelor's Degree1+ years of relevant experience; or an equivalent combination of education and experience acceptedRequired Certifications:NoneIf filled as Cyber Information Assurance Analyst - Professional, this position requires:Bachelor's DegreeNo prior relevant work experience required; previous relevant work experience accepted in lieu of education.Required Certifications:None
ARL's purpose is to research and develop innovative solutions to challenging scientific, engineering, and technology problems in support of the Navy, the Department of Defense (DoD), and the Intel Community (IC).
FOR FURTHER INFORMATION on ARL, visit our web site at www.arl.psu.edu.
BACKGROUND CHECKS/CLEARANCES
Employment with the University will require successful completion of background check(s) in accordance with University policies.
All positions at ARL require candidates to possess the ability to obtain a government security clearance; you will be notified during the interview process if this position is subject to a government background investigation. You must be a U.S. citizen to apply. Employment with the ARL will require successful completion of a pre-employment drug screen.
SALARY & BENEFITS
The salary range for this position, including all possible grades, is $56,200.00 - $102,300.00.**THE PROPOSED SALARY RANGE MAY BE IMPACTED BY GEOGRAPHIC DIFFERENTIAL**
Salary Structure - Information on Penn State's salary structure
Penn State provides a competitive benefits package for full-time employees designed to support both personal and professional well-being. In addition to comprehensive medical, dental, and vision coverage, employees enjoy robust retirement plans and substantial paid time off which includes holidays, vacation and sick time. One of the standout benefits is the generous 75% tuition discount, available to employees as well as eligible spouses and children. For more detailed information, please visit our Benefits Page.
CAMPUS SECURITY CRIME STATISTICS
Pursuant to the Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act and the Pennsylvania Act of 1988, Penn State publishes a combined Annual Security and Annual Fire Safety Report (ASR). The ASR includes crime statistics and institutional policies concerning campus security, such as those concerning alcohol and drug use, crime prevention, the reporting of crimes, sexual assault, and other matters. The ASR is available for review here.
EEO IS THE LAW
Penn State is an equal opportunity employer and is committed to providing employment opportunities to all qualified applicants without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. If you are unable to use our online application process due to an impairment or disability, please contact 814-865-1473.
Federal Contractors Labor Law Poster
PA State Labor Law Poster
Penn State Policies
Copyright Information
Hotlines

What Penn State University employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom