Information Privacy and Security, Senior Associate

2026-170512

CAtegory:

Cyber Security

Clearance:

No Clearance

Location:

Home
,
Virginia

Telecommute:

Remote work allowed 100%
About Peraton

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

About The Role

Peraton is searching for an Information Privacy and Security Analyst to join its Citizens Security & Public Services State and Local team. The role supports the Texas Integrated Eligibility Redesign System (customer) Security Team by assisting in the implementation and maintenance of information security measures to protect computer systems, networks, and data. The position works under general direction and applies established security guidelines, policies, and frameworks to support a secure operating environment.

Day-to-Day Roles and Responsibilities:

ARC-AMPE Security Audit Coordination:

  • Coordinate customer responses to ARC-AMPE and other security audits, serving as the primary point of contact between the customer Security Team and customer support teams.
  • Develop deep familiarity with the ARC-AMPE security controls (a curated subset of NIST 800-53 controls) and their applicability to the customer environment.
  • Develop working knowledge of the customer support teams responsible for responding to each control area and maintain awareness of roles and responsibilities across teams.
  • Manage and monitor audit responses in the Archer GRC system, ensuring responders submit within required timeframes.
  • Meet regularly with control responders to provide consulting assistance on control interpretation, evidence determination, and submission requirements.

CISA and OEM Security Alert Monitoring:

  • Subscribe to and monitor CISA and other OEM security alerts for applicability to the customer infrastructure.
  • Correlate incoming CISA notifications against the customer architecture; when applicable, communicate findings to the customer within 48 hours of notice.
  • Consult with customer on cyber threat remediations as requested.
  • Assist in implementing security measures to protect computer systems, networks, and data in accordance with established policies and standards.
  • Support efforts to prevent data loss and service interruptions by researching and evaluating new technologies to protect the environment.
  • Help ensure all networks have adequate security controls to prevent unauthorized access.
  • Maintain security system documentation and assist in keeping security systems current with software or hardware changes.
  • Support application security assessments using off-the-shelf tools under general guidance.
  • Assist in preparing vulnerability assessment documentation and contributing to security assessment reports.
  • Participate in project-related conference calls and security review meetings, providing supporting information as needed.
  • Conduct research to identify and understand new threats, vulnerabilities, and exploits, and report findings to the appropriate internal or customer stakeholders.
  • Follow established procedures to help ensure the safety of information systems assets and protect systems from intentional or inadvertent access or destruction.
  • Support the application of security frameworks including NIST 800-37, NIST 800-53, ARC/AMPE controls, POA&Ms, and Corrective Action Plans under general direction.
  • Assist the project team with Disaster Recovery (DR) planning, Business Continuity Plan (BCP), and Continuity of Operations (COOP) documentation and assessments.
  • Help prepare impact assessment reports documenting security incidents and contributing to remediation documentation.
  • Assist in creating and maintaining standard operating procedure documents in adherence to security policies and standards.
  • Document violations of computer security procedures and escalate findings to the appropriate internal or customer stakeholders.
  • Interact with users to gather information on computer data access needs and assist in addressing routine security questions.
Qualifications

Basic Qualifications:

  • Bachelor's degree and 2 years of experience, OR 6 years with a HS Diploma/equivalent
  • Familiarity with IT security policies, standards, and procedures.
  • Basic knowledge of business continuity and disaster recovery concepts.
  • Exposure to risk assessment processes or data processing security practices.
  • Understanding of common security tools and measures (firewalls, data encryption, access controls).
  • Ability to document security findings and assist in preparing reports and recommendations.
  • Strong written and verbal communication skills; ability to explain security concepts in straightforward terms.
  • Ability to manage and track multiple stakeholder deliverables and deadlines in a structured, organized manner.
  • Comfortable working directly and independently with customer stakeholders.
  • Must be a US Citizen or a Green Card Holder.

Preferred Qualifications:

  • Completion of information security training such as CompTIA Security+ or equivalent entry/mid-level certification.
  • Familiarity with NIST frameworks, ARC/AMPE controls, or federal/state security compliance requirements.
  • Experience working in a government IT or state agency environment.
  • Experience with Archer GRC or similar GRC platform.
  • Familiarity with CISA alert monitoring, threat intelligence feeds, or OEM security notifications.
  • Experience coordinating security audit responses or supporting compliance activities in a government IT environment.
  • Familiarity with GRC platforms; experience with Archer GRC preferred.

 

Details

Target Salary Range: $86,000 - $138,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at&nbsp;<a href="https://www.careers.peraton.com/benefits?" target="_blank" rel="noopener">https://www.careers.peraton.com/benefits.

Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.&nbsp;By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity.&nbsp;Use of artificial intelligence (AI) tools of any kind during Peraton interviews is strictly prohibited unless the candidate has obtained prior written authorization. All interview responses must be the candidate&rsquo;s own.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

VIEW
SAVED
JOBS