Information Assurance Specialist

edgewaterit· Information Technology
Apply Now ↗
📍 Washington, DC, USFULL TIME💰 USD 90K–105K

About this role

Overview

Edgewater is currently looking for an Information Assurance Specialist to support a federal customer in the Washington DC area. The Information Assurance Specialist manages security compliance, architectural safeguards, and systems hardening across our enterprise environments. In this role, you will analyze NIST SP 800-53 Rev 5 and FedRAMP basic categorizations to manage the split of shared security responsibilities between the organization and external providers.The ideal candidate will drive technical hardening initiatives by developing and implementing security baselines rooted in CIS Benchmarks. You will have deep technical proficiency in deploying security policies across both on-premises and modern environments using Microsoft Group Policy Objects (GPOs) and Microsoft Intune. You will oversee key governance and security safeguards—such as access policies (RBAC), data protection, network segmentation, and monitoring—to ensure continuous audit readiness.

 

*Due to the nature of the work and contract - US Citizenship is required.

*This position requires 1 to 2 days/week onsite - candidates not local to the DC area and/or not willing to go onsite 1 to 2 days per week will not be considered. 

Responsibilities

  • Security Baseline Implementation: Implement, manage, and enforce robust security baselines and benchmarks such as CIS Benchmarks and Azure Foundations across enterprise endpoints and server infrastructure.
  • Microsoft Group Policy (GPO): Technical expertise to support and audit Active Directory Group Policy Objects (GPOs) to enforce least privilege, disable insecure legacy protocols, and harden on-premises Windows environments.
  • Microsoft Intune Policy Management Configuration: Experience translating traditional GPOs into modern cloud management frameworks using Microsoft Intune Settings Catalogs, Administrative Templates, and Endpoint Security configurations.
  • Compliance Mapping & Governance: Aligning technical configuration baselines directly with overarching Information Assurance (IA) frameworks, ensuring that GPO and Intune policy maps cleanly to auditable compliance controls.
  • Risk Identification & Assessment: Ability to identify, evaluate, and categorize security risks within organizational systems by analyzing technical configurations against established frameworks (such as NIST SP 800-30 or FedRAMP risk assessments).
  • Guide stakeholders in determining and integrating baseline security requirements, advise on viability of alternative approaches.  
  • Propose remediation/mitigating controls and recommendations to stakeholders and management to minimize risk.  
  • Lead security team engagements to build and mature processes to produce written Standard Operating Procedures (SOP) with a focus on improvement to FERC’s Information Assurance processes, methodologies, and communication methods.  
  • Other duties as assigned.  

Qualifications

  • Bachelor’s degree or equivalent work experience in related field.  
  • Framework Alignment: Minimum of 3–5 years of experience aligning infrastructure with NIST SP 800-53 Rev 5 or FedRAMP security control frameworks.
  • Infrastructure Hardening: Proven track record authoring and deploying hardening guidance using CIS Benchmarks including Azure Foundations.
  • Policy Management: Technical proficiency understanding and managing Microsoft Group Policy Objects (GPOs) and Microsoft Intune configuration policies.
  • Network & Endpoint Security: Strong understanding of cloud networking architecture, including NSGs, VNet segmentation, Azure Firewall, WAF, and Private Link.
  • Identity & Governance: Strong understanding of Azure RBAC policies, configuring logging/monitoring solutions, and implementing data protection mechanisms.
  • Ability to articulate ideas to both technical and non-technical audiences through excellent written and oral communication skills. 
  • Ability to independently collect, review, and evaluate IT product data to identify and characterize security threat sources of concern and provide recommendations to Government leadership.  
  • Experience securing infrastructure within Microsoft Azure or Azure Government environments.
  • Must possess a valid baseline security certification (e.g., CompTIA Security+, CISSP, CEH, or DoD equivalent). Or obtain an approved certification within 90 days of hire. 

Preferred Qualifications: 

  • 3-5 years of relevant work experience with network engineering and/or system administration background (Unix/Linux/Windows).  
  • The ability to establish effective relationships with internal partners and teams.  
  • Skilled in authoring, testing, and debugging Azure Policy definitions and blueprints to automatically enforce configuration benchmarks (like CIS Azure Foundations) across subscriptions.
  • Direct experience utilizing Microsoft Defender for Cloud and its Regulatory Compliance dashboard to monitor and report on security postures.  

Salary range: $90,000 - $105,000

 

Physical Demands: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

 

  • While performing the duties of this job, the employee may be regularly required to stand, sit, talk, hear, reach, stoop, kneel, and use hands and fingers to operate a computer, telephone, keyboard, and standard office equipment.
  • Specific vision abilities required by this job include close vision requirements due to computer work.
  • The employee must occasionally lift and/or move up to fifteen (15) pounds.
  • Fine hand manipulation (keyboarding).

 

Working at Edgewater Federal Solutions:

Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services, and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Companies since 2018.

 

Edgewater Federal Solutions is an Equal Opportunity Employer. It has been and continues to be our policy to provide equal employment to all employees and applicants for employment without regard to race, color, religion, gender, national origin, age, disability, marital status, veteran status, and/or other status protected by applicable law.

 

Responsibilities

- Security Baseline Implementation: Implement, manage, and enforce robust security baselines and benchmarks such as CIS Benchmarks and Azure Foundations across enterprise endpoints and server infrastructure.
- Microsoft Group Policy (GPO): Technical expertise to support and audit Active Directory Group Policy Objects (GPOs) to enforce least privilege, disable insecure legacy protocols, and harden on-premises Windows environments.
- Microsoft Intune Policy Management Configuration: Experience translating traditional GPOs into modern cloud management frameworks using Microsoft Intune Settings Catalogs, Administrative Templates, and Endpoint Security configurations.
- Compliance Mapping & Governance: Aligning technical configuration baselines directly with overarching Information Assurance (IA) frameworks, ensuring that GPO and Intune policy maps cleanly to auditable compliance controls.
- Risk Identification & Assessment: Ability to identify, evaluate, and categorize security risks within organizational systems by analyzing technical configurations against established frameworks (such as NIST SP 800-30 or FedRAMP risk assessments).
- Guide stakeholders in determining and integrating baseline security requirements, advise on viability of alternative approaches.  
- Propose remediation/mitigating controls and recommendations to stakeholders and management to minimize risk.  
- Lead security team engagements to build and mature processes to produce written Standard Operating Procedures (SOP) with a focus on improvement to FERC’s Information Assurance processes, methodologies, and communication methods.  
- Other duties as assigned.

Frequently Asked Questions

What is the salary for the Information Assurance Specialist role at edgewaterit?
The listed salary for this Information Assurance Specialist position at edgewaterit is USD 90K–105K. This is an FULL TIME role.
Where is the Information Assurance Specialist position at edgewaterit located?
This Information Assurance Specialist role at edgewaterit is based in Washington, DC, US. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Information Assurance Specialist role at edgewaterit full-time or part-time?
This is listed as a FULL TIME position. It is posted as a Information Assurance Specialist role in the Information Technology department at edgewaterit.
Which team or department does the Information Assurance Specialist at edgewaterit belong to?
This Information Assurance Specialist position is part of the Information Technology department at edgewaterit. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Information Assurance Specialist position at edgewaterit?
Click the "Apply Now" button on this page. You will be redirected to edgewaterit's official application portal hosted on icims where you can submit your application directly.
When was the Information Assurance Specialist job at edgewaterit posted?
This Information Assurance Specialist position at edgewaterit was posted on Sep 23, 2026. Apply as soon as possible — early applications are often reviewed first.
Information Assurance Specialist
edgewaterit · 💰 USD 90K–105K
Apply for this role ↗

You'll be redirected to edgewaterit's official application page on icims.