CORA Reviewer - Information Assurance

Peraton

Chambersburg (Franklin County)

On-site

USD 135,000 - 216,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Peraton seeks a Cyber Operations Research Analyst (CORA) Reviewer to perform information assurance of DoWIN cybersecurity reviews for DCDC. Location: Fort Meade, MD or Chambersburg, PA. Travel is expected; on-site work at CONUS, OCONUS, and partner locations.

Responsibilities include inspecting and certifying systems, conducting vulnerability reviews, and supporting executive summaries and reports. Requires DoD cyber workforce experience, IAT/IAM certifications, and TS/SCI clearance.

Qualifications

  • Minimum of 12 years experience with BS/BA, 10 years with MS/MA, 7 years with Ph.D. Will consider HS with 16 years of experience, or Associates and 14 years of experience.
  • Senior Reviewers must have at least 2 years of direct experience.
  • Experience collecting, analyzing, and assessing data to provide formal feedback on cyber defense policies and configurations.

Responsibilities

  • Support inspections, evaluations, audits, assessments, DCO-IDM missions, and self-assessments of the DoWIN; follow the DoWIN Inspections and Assessment Schedule.
  • Assist in training and certifying new Reviewers via the reviewer certification process.
  • Perform assessments of networks/enclaves and identify deviations from policy and configurations.
  • Follow procedures for each review type, ensuring technical expertise is represented.
  • Conduct vulnerability reviews and review SRGs, STIGs, DoD Policy, CTOs, and Operational Orders to determine security posture.
  • Develop executive summaries, briefs, and reports for each trip/assessment.
  • Conduct internal and/or external vulnerability scans and assemble scanning packages.
  • Perform technical Security Readiness Reviews and use STIG/SRG tools where applicable.
  • Provide assessments of security posture across Personnel, INFOSEC, Physical, Industrial security, and overall security management.
  • Develop and maintain SOPs, TTPs, checklists, and guides for vulnerability reviews and audits.
  • Identify root causes and gap analyses; provide resolution support and mitigation recommendations.

Skills

Vulnerability analysis
Log review
Audit & inspections
Policy compliance
Cross-certification

Education

Bachelor's degree in a technical field
Advanced degree preferred

Tools

Audit toolkit
STIG/SRG tooling
Vulnerability scanning tools

Job description

CORA Reviewer - Information Assurance

Job Locations

US-MD-Fort Meade | US-PA-Chambersburg

Requisition ID: 2026-170077

Position Category: Cyber Security

Clearance: Top Secret/SCI

Responsibilities

Peraton seeks a Cyber Operations Research Analyst (CORA) Reviewer to conduct information assurance of DoWIN cybersecurity reviews for DCDC. Travel is expected, as work is conducted on site at Continental United States (CONUS), Outside Continental United States (OCONUS), and DOD mission partner locations.

Location: Fort Meade, MD or Chambersburg, PA.

Tasks include:

  • Support inspections,evaluations, audits, assessments, DCO-IDM missions, and/or self-assessments of the DoWIN -- follow the DoWIN Inspections and Assessment Schedule.
  • Support on-the-job training and certify new Reviewers via the reviewer certification process.
  • Perform assessments of systems and networks within a Network Environment (NE) / enclave and identifiy deviations from acceptable configurations, enclave policy, or local policy.
  • Follow policies and procedures for specific review type, ensuring that technical expertise is properly represented.
  • Conduct vulnerability reviews, review Security Requirements Guides (SRGs), STIGs, DOD Policy, Cyber Tasking Orders (CTO) and Operational Orders to determine the security posture and compliance of the site/NE/enclave
  • Assist in developing the Executive Summary/Briefings/Reports for each trip/assessmet.
  • Conduct internal and/or external vulnerability scans
  • Assemble scanning "packages" prior to conducting scans
  • Perform technical Security Readiness Reviews (SRRs)
  • Use the appropriate technology STIG/SRG and, where applicable, the appropriate automated script or tool for that technology.
  • Provide assessments of the security posture of the organization (traditional): Personnel security, INFOSEC, Physical security, Industrial security, Counterintelligence, and overall security management.
  • Develop and maintain cybersecurity vulnerability review, inspection, and audit Standard Operation Procedures (SOPs), Tactics, Techniques and Procedures (TTPs), checklists, and guides
  • Identify the root cause and gap analysis
  • Provide resolution support during the Cybersecurity review
  • Provide recommendations for fixes and mitigation strategies and validate post inspection vulnerability mitigation actions as requested.
  • Identify where systems/networks deviate from acceptable configurations, enclave policy, or local policy.
Qualifications

Required:

  • Minimum of 12 years experience with BS/BA, 10 years with MS/MA, 7 years with Ph.D. Will consider HS with 16 years of experience, or Associates and 14 years of experience.
  • Senior Reviewers must have at least 2 years of direct experience
  • This position aligns to the KSA's identified to the Vulnerability Assessment Analyst under the DOD Cyber Workforce Framework (DCWF):
    • Must have experience in collecting, analyzing, and assessing data in order to provide formal feedback. Specifically, able to analyze organization's cyber defense policies and configurations and evaluate compliance with regulations and organizational directives (i.e., analysis of mitigations).
    • Should have experience with maintaining a deployable cyber defense audit toolkit (e.g., specialized cyber defense software and hardware) to support cyber defense audit missions.
    • Skilled in reviewing logs to identify evidence of past intrusions.
    • Able to identify systemic security issues based on the analysis of vulnerability and configuration data
    • Able to identify/assess proper architecture for different operating environments
    • Understanding of cybersecurity strategy in cloud computing service and deployment models
  • Must have knowledge of applicable DoW cyber defense policies, regulations, and compliance documents
  • Needs to have an understanding of different types of reviews/assessments
  • As a CORA Reviewer, must cross-certify in multiple related technology areas to allow flexibility for assessment needs from various organizations (e.g., network reviewer may also support network vulnerability scan, virtual infrastructure, cloud, and other related areas)
  • Travel is expected to worldwide locations. Travel will be conducted in accordance with the Task Order guidelines.
  • Current IAT Level II certification.
  • Current IAM Level II certification.
  • TS/SCI security clearance or the ability to obtain SCI
  • U.S Citizenship required

Preferred:

  • Active TS/SCI clearance
  • Current IAT Level III CSSP-Auditor certification
  • Current IAM Level III certification
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

CORA Reviewer - Information Assurance
CORA Reviewer - Information Assurance

Peraton • Fort Meade (MD)

On-site
USD 135,000 - 216,000
Cybersecurity Reviewer
Cybersecurity Reviewer

Peraton • Chambersburg

On-site
USD 135,000 - 216,000
Cybersecurity Reviewer
Cybersecurity Reviewer

Peraton • Fort Meade (MD)

On-site
USD 135,000 - 216,000
Lead Cybersecurity Reviewer
Lead Cybersecurity Reviewer

Peraton • Fort Meade (MD)

On-site
USD 135,000 - 216,000
LeadCybersecurity Reviewer
LeadCybersecurity Reviewer

Peraton • Fort Meade (MD)

On-site
USD 135,000 - 216,000
CORA Cybersecurity Reviewer – TS/SCI
CORA Cybersecurity Reviewer – TS/SCI

Peraton • Chambersburg

On-site
USD 135,000 - 216,000
CORA Reviewer — Cyber Information Assurance Lead
CORA Reviewer — Cyber Information Assurance Lead

Peraton • Chambersburg

On-site
USD 135,000 - 216,000
MRTC Assessment Lead
MRTC Assessment Lead

Peraton • Honolulu (HI)

On-site
USD 135,000 - 216,000
Travel opportunity
CORA Reviewer: Info Assurance & Cyber Operations
CORA Reviewer: Info Assurance & Cyber Operations

Peraton • Fort Meade (MD)

On-site
USD 135,000 - 216,000
Cyber Security Specialist, Associate
Cyber Security Specialist, Associate

Peraton • Fort Huachuca (AZ)

On-site
USD 66,000 - 106,000