SAIC

IT Security Auditor

SAIC$90K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree and 10+ years of relevant experience; Master's degree and 8+ years may substitute experience for education.
  • Proficient in Post-Quantum Encryption principles.
  • In-depth knowledge of operating systems (Linux, Windows) and networking protocols (VPNs, firewalls).
  • Strong analytical skills with the ability to detect anomalies in complex data.
  • Excellent communication skills to convey technical issues to non-technical stakeholders.
  • High attention to detail in security policy and system verification.

Responsibilities

  • Conduct thorough evaluations of IT infrastructure to uncover vulnerabilities.
  • Ensure compliance with regulatory standards such as GDPR, HIPAA, SOX, and PCI DSS.
  • Test internal security controls to assess their effectiveness.
  • Prepare clear, structured reports detailing technical risks and actionable recommendations for management.
  • Evaluate data to assess security risks based on their impact and likelihood.
  • Engage in post-breach investigations to analyze incidents and recommend improvements.

Benefits

  • Opportunities for extensive travel to Department of State posts internationally (75% travel requirement).
  • Work in a dynamic environment that focuses on enterprise-level IT architecture and security.
  • Engagement in cutting-edge topics such as Post-Quantum Encryption.
  • Real impact on national security through compliance and auditing efforts.
Full Job Description
Job Description

Description

Diplomatic Technology (DT). DT provides enterprise architecture design, engineering, operations and maintenance support services for desktops, servers, networks, firewalls, and enterprise applications across the Department.

The IT Security Auditor will evaluate the organization's next generation information technology infrastructure, policies, and operations to ensure they are secure, efficient, and compliant with regulatory standards. This role will methodically review controls, documentation, and processes against established frameworks. This position requires extensive foreign and domestic travel to DOS posts located worldwide (75%).

Description of Duties:
  • System Evaluations: Conducting comprehensive reviews of IT infrastructure, including networks, software, and hardware, to identify vulnerabilities.
  • Compliance Auditing: Ensuring the organization adheres to legal and industry-specific regulations such as GDPR, HIPAA, SOX, and PCI DSS.
  • Control Testing: Verifying the effectiveness of internal security measures like firewalls, routers/switches, encryption, and user access controls.
  • Reporting & Recommendations: Preparing detailed written reports for senior management that explain technical risks in plain language and propose actionable solutions.
  • Risk Assessment: Analyzing data to prioritize security risks based on their potential impact and likelihood.
  • Post-Breach Investigation: Participating in or leading follow-up investigations after security incidents to determine how they occurred.

Qualifications

Required Education/Experience:
  • Bachelors and ten (10) years or more of related experience; Masters and eight (8) years or more experience ; may accept additional experience in lieu of degree.
  • Knowledge of Post Quantum Encryption.
  • Technical Knowledge: Deep understanding of operating systems (Linux, Windows), networking (VPNs, firewalls), and cloud security.
  • Analytical Thinking: Ability to sift through complex data and logs to find anomalies or configuration errors.
  • Communication: Translating complex technical findings into business risks for non-technical executives.
  • Attention to Detail: Meticulous approach to verifying every detail of a security policy or system setting.
Required Clearance:
  • US Citizenship.
  • TOP SECRET (Active) with the ability to obtain TOP SECRET SCI.
Desired Experience/Skills/Attributes:
  • Previous COMSEC audit experience.
  • Familiarity with DoS environment (data and voice networks, IT security systems, policies and procedures), Foreign Affairs Handbooks (FAHs), Foreign Affairs Manuals (FAMs) preferred.
  • Interpersonal skills including the ability to collaborate effectively, self-awareness, and excellent written and oral communications.

Overview

SAIC accepts applications on an ongoing basis and there is no deadline.

About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Information Technology Jobs

Find similar IT Security Auditor jobs: