Hiring.Camp

IT and Cyber Risk Auditor Principal

Gdit

·

Today

Salary
$119k – $161k
Location
USA MD La Plata - Customer Proprietary (MDC055), United States of America
Type
Full-time
Department
Finance
Seniority
Lead
Experience
8+ years
Education
Master
Clearance
Required
Source
Workday

Description

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Top Secret SCI + Polygraph

Clearance Level Must Be Able to Obtain:

Top Secret SCI + Polygraph

Public Trust/Other Required:

None

Job Family:

Cyber and IT Risk Management

Job Qualifications:

Skills:

Cyber Risks, Cybersecurity Controls, NIST 800-53

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

The candidate should be able to monitor and enforce security controls for technical, operational, and management support. The candidate will need to be vastly knowledgeable in developing and documenting system security plans, contingency plans, and other security related documents. This candidate will need to identify, create, track and remediate any system vulnerabilities. This candidate will be responsible for preparing system artifacts for annual system audits. This candidate should have an understanding of reviewing vulnerability scans. This candidate should have experience in completing multiple Authority to Operate (ATO) security packages. This candidate will need to be knowledgeable in plans of action and milestones (POA&M)s Management. This candidate must be able to establish system-level POA&Ms and implement corrective actions to develop, implement, manage, and track actions as required by the program ISSM/CISO.

 

Government Eligibility Requirements:

  • Candidate must be able to favorably pass government background investigation

  • Candidate must have, at a minimum, a Top Secret clearance w/t polygraph.

  • Maintain Certification in accordance with DoW Directive 8140.01 Cyberspace Workforce Management requirements

  • U.S. Citizenship eligibility requirements.

 

Team Responsibilities:

  • BA/BS or equivalent, 8+ years of experience

  • Minimum of 3-5 years specific experience with ICD 503 and NIST 800-53 policies.

  • Excellent communication skills with the ability to state messages in a clear and concise manner over any form of communication.

  • Ability to multi-task, prioritize, and re-prioritize work in a fast paced environment

  • Senior level of experience in engineering IT systems, as well as working knowledge of current technologies.

  • Ability to learn an application environment in order to update or create supported security documentation.

  • The candidate will perform all tasks related to perform a system Certification and Accreditation and assuring the system is compliant with all required security controls as defined by agency policies.

  • The candidate will review system configurations to ensure they are in accordance with agency hardening guidelines.

  • The candidate will review all proposed change requests related to system design / configuration and perform security impact analysis.

  • The candidate will review monthly vulnerability scan reports and track and address weaknesses in POA&Ms as needed.

  • Perform security system event analysis, investigation, and validation  

  • Provide incident response to classification spills, malware infection, misconfiguration exposure, internal inappropriate behavior and technical issue  

  • Perform Security Technical Implementation Guide (STIG) and Federal Information Security Management Act (FISMA) assessments and annual reporting

 

Ideal Candidate: Candidates who are highly motivated, passionate in their IT security tradecraft, and looking to make a positive difference every day are best suited for this position.  Candidates should possess a general level of understanding and basic level of experience across all team roles and responsibilities with a concentration of significant experience in at least 2-3 skill sets below.  

 

Preferred Skill Sets:

  • 2-3 years fulfilling Information System Security Engineer (ISSE)  

  • 2-3 years fulfilling Windows and/or Unix administrator role or support     

  • Experience using XACTA data base applications and the ICD 503, NIST 800-83 rev4 policy

  • Experience with Splunk, Security Center, Telos XACTA, and MacAfee EPO 


GDIT IS YOUR PLACE

  • At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities

  • Support: An internal mobility team focused on helping you achieve your career goals

  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

  • Community: Award-winning culture of innovation and a military-friendly workplace


OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

The likely salary range for this position is $119,000 - $161,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

Less than 10%

Telecommuting Options:

Onsite

Work Location:

USA MD La Plata

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

 

 


Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

 

 

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Skills

CybersecuritySplunkRisk Management

Similar Jobs

18

Cyber and IT Security Advisory Principal Specialist SG

CIMB Group Malaysia · Singapore, SG

1 week ago

Technology Director, IT Infrastructure, Cyber and Service Delivery

Coke Florida Careers · Jacksonville, FL, USA +3

2 weeks ago

Senior IT Cyber Governance, Risk and Compliance Analyst

RBA Economic and Finance · Head Office, Australia · Hybrid

1 week ago

IT / OT Infrastructure and Cyber Architect

AdvanSix · Hopewell, VA 23860, USA

4 months ago

Engineer- IT Application Admin and Cyber Security

KSB is · Pune, India · Onsite

9 months ago

IT Audit Director – Cyber, AI and Cloud

Fanniemae · Reston Town Center, United States of America +1

1 week ago

IT Manager - Cloud, Cyber Security and Data Center

Albemarle · Houston, Texas, United States of America · Hybrid

2 months ago

Cyber Security Specialist | Procurement Assistance and IT Research, Advisory, and Consulting [NCDPC0029028]

ProSidian Consulting · Raleigh, NC, United States

1+ year ago

Director, Cybersecurity and IT Support

Beauty Industry Group · Los Angeles, CA

Yesterday

IT Cybersecurity and Cloud Specialist

Cohu · San Diego, CA, United States, US · Onsite

2 weeks ago

IT and Cybersecurity Regulatory Response Lead

Northwestern Mutual · Milwaukee, WI Corporate, United States of America

1 month ago

IT and Cybersecurity Risk Manager

Hrhub · Porto, Portugal · Onsite

1 month ago

Director - CS, Cybersecurity, and IT Programs

Work at Wentworth · Wentworth Institute of Technology - Main Campus, United States of America

3 months ago

Director, IT and Cybersecurity

Gener8 · San Jose, CA

3 months ago

IT and Cybersecurity Risk Manager

Hrhub · Paris, France

3 months ago

Sodexo-Cloud and Core IT Cybersecurity Architect

Damia Group · Porto, Porto · Onsite

5 months ago

Senior IT Governance, Risk, and Compliance Analyst - Research Cybersecurity

Euv Emory · Atlanta, GA, US

1+ year ago

Senior IT Governance, Risk, and Compliance Analyst - Research Cybersecurity

Staff Emory · Atlanta, GA, US

1+ year ago