Haystack
← Back to Jobs
Full time
Engineering
GO

Senior Information Assurance Engineer

Govcio LLCSan Antonio, Texas🇺🇸United StatesPosted 25 Aug 2026

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
San Antonio, Texas, United States

Job Description

GovCIO LLC seeks a Senior Information Assurance Engineer to secure mission-critical federal IT systems. In this role, you'll lead implementation of NIST and RMF controls, drive system authorization, and strengthen security across cloud and on-prem environments. Responsibilities include risk assessments, vulnerability analysis, documentation (SSP, POA&M), and collaboration with engineering teams to embed security into architectures and DevSecOps pipelines. You'll support incident response, mentor junior staff, and help modernize government technology in a fast-paced, mission-driven culture.

Responsibilities

  • Lead design and implementation of information assurance and cybersecurity controls across cloud and on-prem federal systems.
  • Apply NIST, RMF, and FISMA frameworks to support system authorization, continuous monitoring, and compliance.
  • Conduct risk assessments, vulnerability analysis, and control gap remediation planning.
  • Develop and maintain security documentation, including SSPs, POA&Ms, and security test plans.
  • Collaborate with engineering, Dev
  • Sec
  • Ops, and program teams to embed security into system architectures and SDLC.
  • Support incident response, security investigations, and root-cause analysis for security events.
  • Advise stakeholders on security best practices, emerging threats, and mitigation strategies.
  • Mentor junior engineers and contribute to standard methodologies and security tooling improvements.

Required Skills

  • Information assurance
  • Cybersecurity engineering
  • Risk management framework (RMF)
  • NIST 800-53 controls
  • Security architecture design
  • Vulnerability assessment
  • SIEM tools
  • Cloud security (AWS/Azure/Gov
  • Cloud)
  • Secure configuration management
  • FISMA compliance
  • Security documentation (SSP/POA&M)
  • Incident response
  • Network security
  • Identity and access management
  • Security testing and evaluation

Similar jobs