Information Security Analyst at iCallidus
Washington, DC
$131,000–$169,000
Jul 28, 2026
Washington, DC
Jul 29, 2026
What this job asks for AI summary
An information security analyst role supporting VA cybersecurity operations, including vulnerability scanning, security control assessments, incident response, and compliance documentation under the NIST RMF framework. The work involves maintaining security plans, remediation logs, and configuration records in alignment with VA and HIPAA requirements. Suited to a mid-level security professional with a background in federal health IT environments.
Mid level · 5+ years · Remote · Bachelor's required
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 7,600 people nationally plausibly meet what this posting asks for (information security analysts). range 2,250–11,400
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 29, 2026. It is a model, not a headcount.
Why we read it this way (7)
The posting states 'Must be able to obtain and maintain a Public Trust / Moderate Risk clearance' — this is a federal suitability determination, not a formal US security clearance (Confidential/Secret/TS), so the clearance requirement is set to None.
The role is listed as 'Contingent Upon Award', meaning the position may not be active until a contract is won.
Location is Washington D.C. or Kansas, with remote also listed as an option contingent on award; remote is marked true accordingly.
VA TRM (Technical Reference Model) standards are referenced as a familiarity requirement but name no specific standalone tool, so they are not emitted as a discrete skill.
Industry certification (Security+ or CEH) is listed as 'preferred', not required.
Cerner (Oracle Health) experience is described as 'strongly preferred' and prior VA EHRM program involvement is also preferred — both are marked as preferred rather than required.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): NIST SP 800-53.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.