Info. Security Analyst Principal

General Dynamics Information Technology

Virginia (MN)

On-site

USD 109,000 - 147,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

General Dynamics Information Technology at Langley AFB, VA seeks an experienced cybersecurity professional to manage RMF and security posture for a large DoD program. The role requires coordinating with government staff and USAF, conducting vulnerability assessments, and ensuring policy compliance.

Responsibilities include performing audits, applying STIGs and DISA SCAP, and producing POA&Ms for remediation.

Qualifications

  • Requires data security administration knowledge and methods.
  • Must meet DoD 8570.01M requirements for IAT Level II (e.g., CASP CE).
  • Understanding of DoD RMF (800-53 Rev 4 and Rev 5) and related policies.

Responsibilities

  • Perform cybersecurity activities for a large program, coordinating with government staff and agencies to implement policy and procedures.
  • Utilize resources to report on overall program security posture to leadership.
  • Conduct vulnerability scans and audits (STIGs, DISA SCAP, ACAS) to mitigate findings across multiple systems.
  • Create, track, and review POA&Ms to aid remediation.
  • Communicate threat information to government leaders to support risk decisions.
  • Maintain RMF and security posture by verification and testing.
  • Coordinate with organizations like AFRL and USAF for audits and required documentation.
  • Evaluate firewall change requests and assess organizational risk.
  • Provide guidance on vulnerability countermeasures for non-compliant controls.
  • Ensure integrity and protection of networks, systems, and applications.

Skills

ACAS
DISA STIG
RMF
Splunk

Education

BA/BS degree

Job description

Job Details

Type of Requisition: Regular. Clearance Level Currently Possess: Secret. Clearance Level Must Be Able to Obtain: Top Secret/SCI. Public Trust/Other Required: None. Job Family: Cyber and IT Risk Management. Job Qualifications: Skills: ACAS, DISA STIG, RMF, Splunk (Inactive). Certifications: None. Experience: 10+ years of related experience. US Citizenship Required: Yes.

Responsibilities
  • Perform cybersecurity activities for a large program, coordinating with government program staff, USAF, and other agencies to assist in creation, dissemination, direction, and auditing of program policy, standards, and operating procedures.
  • Utilize available resources to conduct cybersecurity activities and report to senior GDIT and government personnel on overall program security posture.
  • Conduct network and system audits for vulnerabilities using Security Technical Implementation Guides (STIGs), DISA SCAP, ACAS vulnerability scanner, ESS Policy Auditor to mitigate findings for Linux, Windows, Cisco, Juniper, VMWare and other associated operating systems.
  • Create, track, and review Plan of Action and Milestones (POA&Ms) and conduct solution identification to assist in problem remediation and resolution.
  • Communicate tactical and strategic threat information to Government leaders, Cybersecurity-Ops, and A&A staff to assist them in making cyber risk decisions and mitigating threats.
  • Carry out DoW Risk Management Framework (RMF) in accordance with DoW 8510 to ascertain information systems' security posture by utilizing security control validation activities and coordinating security testing.
  • Maintain the Security Accreditation status, including system documentation of multiple DoW classified networks and interconnected systems.
  • Coordinate with AFRL, USAF, and other organizations in support of audits and inspections and provide all necessary documentation as required for SAVs, STEs, and CCRI.
  • Evaluate firewall change requests and assess organizational risk.
  • Provide guidance on vulnerability countermeasures or mitigation of non‑compliant controls.
  • Ensure the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
  • Perform periodic and on-demand system audits and vulnerability assessments, including user accounts, application access, and file system to determine compliance.
  • Provide guidance and work leadership to less‑experienced technical staff members.
  • Maintain current knowledge of relevant technology as assigned.
  • Participate in special projects as required.
Required Qualifications
  • 10+ years of experience required (8+ years preferred).
  • Must possess and maintain a Secret clearance.
  • BA/BS degree – may substitute additional years of experience.
  • Comprehensive knowledge of data security administration principles, methods, and techniques.
  • Must meet DOW 8570.01M requirements for IAT Level II (e.g., CASP CE).
  • Requires understanding of DOW RMF (800‑53 Rev 4 and Rev 5).
  • Requires understanding of DoW policies and procedures, including FIPS 199, FIPS 200, NIST 800‑53 and other applicable policies.
Preferred Qualifications
  • Ability to acquire and maintain a TS/SCI clearance.
  • The ability to work and set priorities on multiple projects/tasks at once and operate in a dynamic, fast‑paced team‑oriented environment.
  • Depending on job assignment, additional specific certifications may be required.
Salary Range

Likely salary range: $108,800 - $147,200 (subject to experience, geographic location and contractual requirements).

Location and Schedule

Work Location: USA, VA – Langley AFB. Additional Work Locations: as required. Scheduled Weekly Hours: 40. Travel Required: None. Telecommuting Options: Onsite. Work Environment: Office.

Equal Opportunity Employer

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans Opportunity Owned.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Info. Security Analyst Principal
Info. Security Analyst Principal

General Dynamics Information Technology • McLean (VA)

On-site
USD 109,000 - 147,000
Cyber Security Analyst Senior
Cyber Security Analyst Senior

General Dynamics Information Technology • Hampton (VA)

On-site
USD 98,000 - 113,000
401K with company match
Comprehensive health and wellness
Paid educational opportunities
+1
Information Security Analyst
Information Security Analyst

Amatriot Group, LLC • Honolulu (HI)

On-site
USD 110,000 - 150,000
Jr Cyber Security Eng
Jr Cyber Security Eng

GovCIO • San Antonio (TX)

On-site
USD 105,000 - 110,000
Information Security Analyst Sr Principal - Cloud - Hybrid
Information Security Analyst Sr Principal - Cloud - Hybrid

General Dynamics Corporation • Fort Meade (MD), Northern (KY)

Hybrid
USD 143,000 - 184,000
Cyber Security Analyst Senior
Cyber Security Analyst Senior

General Dynamics Information Technology • McLean (VA)

On-site
USD 98,000 - 113,000
401K match
Health & wellness
Career mobility
+3
Cyber Security Analyst
Cyber Security Analyst

GovCIO • Hampton (VA)

On-site
USD 143,000 - 165,000
Information Security Analyst
Information Security Analyst

The Amatriot Group • Honolulu (HI)

On-site
USD 90,000 - 110,000
IT and Cyber Risk Auditor Principal
IT and Cyber Risk Auditor Principal

General Dynamics Information Technology • La Plata (MD)

On-site
USD 90,000 - 130,000
401K with company match
Paid time off
Wellness packages
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

General Dynamics Corporation • Town of Florida (NY), Northern (KY)

Hybrid
USD 94,000 - 127,000