Cyber Analyst Principal - TS/SCI with Polygraph

General Dynamics Information Technology
McLean, VA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$124,093.0 - $166,750.0
Working hours
Regular working hours
Languages
Polish
Job source

Tech stack

Software System Penetration Testing Information Security Management Information Systems Security Architecture Professional

Job description

GDIT is seeking a highly skilled and multi-faceted Cyber Analyst Principal for a critical contract role supporting a commercial cloud service provider’s mission-critical systems. This position requires the employee to report full time on site in McLean, VA.

The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating the Intel Community (IC) Risk Management Framework (RMF) requirements for classified commercial cloud services and cross domain solutions. This role requires a unique blend of technical engineering prowess, security assessment and auditing skills, deep expertise in continuous monitoring, and the polish to communicate risk to executive leadership. You will be a key contributor to our Governance, Risk, and Compliance (GRC) program, supporting the Information System Security Manager (ISSM), and Cyber Lead in ensuring the unyielding security and integrity of mission-critical systems.

The Cyber Analyst Principal will support the following key areas -

  • RMF & Assessment and Authorization (A&A)
  • Security Engineering & System Hardening
  • Security Control Assessor (SCA) & Auditing
  • Continuous Monitoring & GRC

Additionally, the Cyber Analyst Principal will -

  • Support Assessment & Authorization (A&A) execution for classified commercial cloud service offerings, and Cross Domain Solutions (CDS) as needed, through the entire respective IC RMF lifecycles to obtain and maintain the applicable authorizations.
  • Assist in maintaining a comprehensive body of evidence for A&A packages.
  • Support the monthly and overall IC Continuous Monitoring requirements.
  • Work with security engineering to proactively identify and assess vulnerabilities related to scans, STIGs, security controls, etc.
  • Support assessment preparation for security control audits, traditional security reviews, and formal inspections, including preparing for and executing IC assessments.
  • Meticulously review artifacts, logs, and system configurations to ensure they provide sufficient evidence of compliance.
  • Coordinate and/or participate in security testing and penetration testing activities to provide an independent validation of the system’s security posture.

Requirements

Bring your cyber expertise and drive for innovation to GDIT. The Cyber Analyst Principal must have:

  • Security clearance level: Must possess a current and active TS/SCI with Polygraph.

  • Certifications: Must be DoW 8140 / 8570.01-M compliant

  • Education: BA/BS Degree or equivalent experience in lieu of degree

  • Experience: 5+ years of related experience

  • Technical skills:

  • Expert-level knowledge of the complete NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles.

  • Progressive experience in information assurance and cybersecurity roles.

  • Direct, hands-on experience as an ISSO or ISSM, with a proven track record of successfully supporting ATO for classified systems under ICD 503 policies.

  • Extensive, hands-on experience navigating the IC Risk Management Framework (RMF) requirements for classified commercial cloud services and cross domain solutions.
  • Location: Onsite in McLean, VA, 5 + years of related experience
  • may vary based on technical training, certification(s), or degree

Certification

Certified Information Systems Security Professional (CISSP) | International Information System Security Certification Consortium (ISC2) - International Information System Security Certification Consortium (ISC2) Travel Required

Less than 10% Citizenship

Benefits & conditions

$124,093 - $166,750 a year - Full-time, Contract, Pulled from the full job description

  • 401(k) matching
  • Paid time off
  • Internal mobility program, At GDIT, the mission is our purpose, and our people are at the center of everything we do.
  • Growth: AI-powered career tool that identifies career steps and learning opportunities

  • Support: An internal mobility team focused on helping you achieve your career goals

  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

  • Community: Award-winning culture of innovation and a military-friendly workplace

GDITpriority, The likely salary range for this position is $124,093 - $166,750. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

About the company

Own your opportunity to support our nation’s defense. Make an impact by connecting and securing critical operations across the globe, keeping our country safe and secure., We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:25 min

The growing power and security responsibility of developers

Tino Sokic · WWC 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:03 min

Securing applications against exceptional condition mishandling

Christian Wenz Christian Wenz · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:35 min

The Byzantine Generals Problem and managing malicious actors

Jonan Scheffler · WWC 2022

Videos

See all

Related articles

See all