Information Systems Security Officer

General Dynamics Information Technology
Fairfax, VA, United States
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$129,813.0 - $172,500.0
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Data Analysis Configuration Management Cyber Security Computer Programming Computer Networks Databases Computer Engineering Information Systems Security Architecture Professional Network Security Microsoft Visio
+5 more
Systems Development Life Cycle Security Information and Event Management Software Vulnerability Management Firewalls (Computer Science) Information Technology

Job description

Seize your opportunity to make a personal impact as an Information Systems Security Officer supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States., * Write and maintain documents required for Authority to Operate (ATO) during all phases of ATO.

  • Coordinate with customer’s IT security team, engineering team, and other client team to gather information to document ATO process.
  • Coordinate with project management team for documenting Configuration Management, SDLC, etc.
  • Create Visio diagrams as part of the documentation.
  • Support ATO assessment process. Actively participating in ATO assessment.
  • Perform, monitor, test, and troubleshoot hardware and software Information Assurance (IA) problems pertaining to the Computing Environment (CE), Network Environments (NE), and enclave environments.
  • Collect and analyze data and events from Computer Network Defense (CND) tools such as system alerts, firewall, and network traffic logs, and host system logs.
  • Assess and identify the systems and networks within the NE acceptable configurations and policies.
  • Develop and manage security for more than one IT functional areas (e.g., data, systems, network and/or web) across the enterprise.
  • Lead in the development and implementation of security policies and procedures (e.g., user log-on and authentication rules, security breach escalation procedures, security auditing procedures, and use of firewalls and encryption routines).
  • Brief and present status reports on security matters to develop security risk analysis scenarios and response procedures.
  • Responsible for the tracking and monitoring of software viruses.
  • Lead in the evaluation of products and/or procedures to enhance productivity and effectiveness.
  • Provide direct support to the business and IT staff for security related issues.
  • Possess extensive knowledge in networking, databases, systems and/or web operations, and developing enterprise security strategies.

Requirements

Computer Security,Information Technology Security,Security Information, 7 + years of related experience, * 7+ years of experience project leadership in monitoring computer networks and security issues, investigating and resolving security and cybersecurity incidents.

  • Bachelor’s degree in Computer Science, Computer Programming, Computer Engineering or relevant computer-based major.
  • Preferred: Certified Information Systems Security Professional (CISSP).
  • Experience in documenting security incidents and performing security vulnerability assessments.
  • Experience working with Agile teams and SAFe to perform testing and uncovering system and network vulnerabilities.
  • Strong working experience in AWS Cloud Security (Certification is preferred) (3+ years’ experience).
  • Required past ATO experience in AWS environment for large agency. (4+ years’ experience).
  • Required solid understanding of NIST Standards.
  • Must have prior experience with the ATO process, FedRAMP, CIS, ISO 27001. (4+ years).
  • Solid understanding on ICAM, SIEM, Vulnerability management tools.
  • Experience with CSAM or similar tools.

Benefits & conditions

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Flexibility: Full-flex work week to own your priorities at work and at home
  • Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY

Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

The likely salary range for this position is $129,813 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About the company

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at https://gdit.com/tc.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · WWC 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · WWC 2022

Videos

See all

Related articles

See all