Cybersecurity Compliance & Continuous Monitoring Analyst

General Dynamics Information Technology, Inc.

McLean (VA)

On-site

USD 159,000 - 215,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

General Dynamics Information Technology, Inc. is seeking a Cyber Technical Analyst Sr Principal to advance national security in cyber operations for the federal government.

The role focuses on securing a classified workstation enclave, maintaining FedRAMP/A&A artifacts, and leading security control audits and continuous monitoring programs to deliver a strong security posture.

Qualifications

  • 8+ years of related experience
  • Bachelor's degree (BA/BS) or higher
  • DoD 8140 / 8570.01-M compliant
  • CISSP certification strongly preferred

Responsibilities

  • Support the RMF and A&A lifecycle for the workstation secure enclave, including control implementation, assessment, authorization, and continuous monitoring
  • Maintain evidence for FedRAMP/DoW A&A packages, POA&M tracking, reporting and remediation
  • Collaborate with security engineers, ISSO/ISSM, vendors, and leadership to align with FedRAMP, DoD and CNSSI 1253 requirements
  • Identify and remediate vulnerabilities using Tenable Nessus, Tenable.sc, SCC, STIG tooling
  • Review scan results, STIG findings and patching to harden OS, network devices and applications
  • Evaluate system designs and architectures to ensure security principles are integrated
  • Lead security control audits and FedRAMP 3PAO assessments with artifact review
  • Provide security control assessment and audit oversight of engineering work
  • Manage a robust continuous monitoring and GRC program with risk insights for leadership
  • Support risk assessments and incident response with ISSM and IR team

Skills

Continuous Monitoring
Control Assessment
FedRAMP
Security Controls

Education

Bachelor's degree (BA/BS)

Tools

Tenable Nessus
Tenable.sc

Job description

Req ID: RQ227719

Type of Requisition: Regular

Clearance Level Must Be Able to Obtain: Top Secret/SCI

Public Trust/Other Required: None

Job Family: Cyber and IT Risk Management

Skills:

Continuous Monitoring,Control Assessment,Federal Risk and Authorization Management Program (FedRAMP),Security Controls

Certifications:

Certified Information Systems Security Professional (CISSP) | International Information System Security Certification Consortium (ISC2) - International Information System Security Certification Consortium (ISC2)

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

CYBER TECHNICAL ANALYST SR PRINCIPAL

Advance your career while impacting our national security in cyber as a Cyber Technical Analyst Sr Principal at GDIT. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government.

MEANINGFUL WORK AND PERSONAL IMPACT

As a Cyber Technical Analyst Sr Principal, the work you’ll do at GDIT will be impactful to the mission of our customer’s classified commercial cloud environment. You will play a crucial role in securing and continuously monitoring a classified workstation secure enclave, ensuring it meets stringent FedRAMP and CNSSI 1253 requirements while enabling mission‑critical operations.

  • Support the full RMF and Assessment & Authorization (A&A) lifecycle for the workstation secure enclave, including control implementation, assessment, authorization, and continuous monitoring.

  • Maintain a comprehensive body of evidence for FedRAMP/DoW A&A packages and continuous monitoring requirements, including POA&M tracking, reporting, and remediation.

  • Collaborate with security engineers, system administrators, ISSO/ISSM, vendors, and leadership to integrate and validate security controls and align operations with FedRAMP, DoD, and CNSSI 1253 requirements.

  • Identify, assess, and remediate vulnerabilities using Tenable Nessus, Tenable.sc, SCC, STIG tooling, and related security tools; ensure host inventory and scan policies are accurate and complete.

  • Review scan results, STIG findings, and patching activities to ensure accurate, actionable data and effective hardening of operating systems, network devices, and applications.

  • Evaluate system designs, network architectures, firewall rules, and PPSM submissions to ensure security principles are integrated from the outset and architecture risks are addressed.

  • Lead preparation and execution of security control audits and FedRAMP 3PAO assessments, reviewing artifacts, logs, and configurations to validate evidence of compliance and a strong security posture.

  • Provide security control assessment and audit oversight, including reviewing and validating implementation work performed by engineers and system administrators.

  • Manage a robust continuous monitoring and GRC program, aggregating and analyzing security data to identify trends, anomalies, and potential incidents and providing actionable risk insights to leadership.

  • Support risk assessments and incident response, recommending mitigating controls and assisting the ISSM and incident response team with artifacts and deep system/security expertise.

WHAT YOU’LL NEED TO SUCCEED

Bring your cyber expertise and drive for innovation to GDIT. The Cyber Technical Analyst Sr Principal must have:

Education: Bachelor of Arts/Bachelor of Science

Experience: 8+ years of related experience

Technical skills:

  • Hands‑on experience with Tenable.sc and Tenable Nessus

  • Progressive experience in information assurance and cybersecurity roles

  • Minimum of 5 years of direct, hands‑on experience as an ISSO or ISSM with a proven track record of achieving and maintaining ATO for classified systems

  • Expert‑level knowledge of the NIST SP 800 series (especially 800-37, 800-53, 800-30) and risk management principles

  • Experience with FedRAMP and CNSSI 1253 baselines, continuous monitoring, POA&M management, and A&A body‑of‑evidence documentation

Security clearance level: Active Top Secret
Role requirements
  • On‑site McLean, VA

  • Must be DoD 8140 / 8570.01-M compliant

  • CISSP strongly preferred

GDIT IS YOUR PLACE

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

Growth: AI-powered career tool that identifies career steps and learning opportunities

Support: An internal mobility team focused on helping you achieve your career goals

Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

Community: Award-winning culture of innovation and a military‑friendly workplace

OWN YOUR OPPORTUNITY

Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

The likely salary range for this position is $158,950 - $215,050. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Total Rewards at GDIT

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post‑tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long‑term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission‑ready capabilities in AI, cloud, cyber and software development.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Join our Talent Community to stay up to date on our career opportunities and events at https://gdit.com/tc.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Analyst Principal - TS/SCI with Polygraph
Cyber Analyst Principal - TS/SCI with Polygraph

General Dynamics Information Technology, Inc. • McLean (VA)

On-site
USD 170,000 - 230,000
401K with company match
Paid time off
Health benefits
Senior Information Security Analyst
Senior Information Security Analyst

General Dynamics Information Technology • Virginia Beach (VA)

On-site
USD 98,000 - 127,000
Medical plan options
Health Savings Account
Dental plan options
+7
Cybersecurity Engineer
Cybersecurity Engineer

General Dynamics Information Technology (GDIT) • Herndon (VA)

On-site
USD 170,000 - 230,000
Cybersecurity Engineer
Cybersecurity Engineer

General Dynamics Information Technology (GDIT) • Maryland

On-site
USD 170,000 - 230,000
Health benefits
401(k) matching
Paid time off
Cybersecurity Engineer Principal
Cybersecurity Engineer Principal

General Dynamics Information Technology, Inc. • Bossier City (LA)

On-site
USD 146,000 - 198,000
Health benefits
401K with company match
Paid time off
Information Security Analyst
Information Security Analyst

General Dynamics Information Technology, Inc. • Fort Bragg (CA)

On-site
USD 94,000 - 127,000
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph

General Dynamics Information Technology, Inc. • Colorado Springs (CO)

On-site
USD 149,000 - 201,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

General Dynamics Information Technology, Inc. • Town of Springfield (WI)

On-site
USD 164,000 - 209,000
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph

General Dynamics Information Technology (GDIT) • Colorado Springs (CO)

On-site
USD 149,000 - 201,000
Cybersecurity Systems Administrator
Cybersecurity Systems Administrator

General Dynamics Information Technology, Inc. • Boundary (AK)

On-site
USD 102,000 - 138,000