Information Security Analyst Sr Principal - Cloud - Hybrid

Socket.dev

Fort Meade (MD)

Hybrid

USD 143,000 - 184,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

GDIT in Fort Meade, MD seeks an Information Security Analyst Sr Principal to manage ICAM accreditation on unclassified and classified networks. You will assess computing environments for vulnerabilities and ensure IA compliance across programs.

Responsibilities include RMF actions in eMASS, drafting Security Plans and POA&Ms, and ensuring DoD/NIST SRG compliance. Collaboration with stakeholders is essential for risk mitigation and continuity planning.

Qualifications

  • Active DoD Security Clearance of SECRET, or higher.
  • 8+ years of experience supporting IT customers in an enterprise environment.
  • BA/BS and 8+ years of Computer Science or equivalent experience
  • CISSP, CASP, CISA, CISM or similar IAM DoD 8570/8140 certification
  • Experience with FedRAMP Cloud processes
  • Knowledge of DoD cybersecurity policies DoDI 8500.01, NIST 800-53v5, DoDI 8510.01
  • Extensive experience with NIST 800-53, RMF in eMASS
  • Ability to lead in a fast-paced, collaborative environment
  • Experience with Nessus, ACAS, Defender, McAfee
  • Incident Response and Contingency testing experience

Responsibilities

  • Execute accreditation for ICAM on a classified network.
  • Perform RMF actions in eMASS including control assessments and asset management.
  • Draft, publish, and maintain Information Security policies and plans.
  • Develop RMF documentation: Security Plans, POA&Ms, Risk Assessments.
  • Assess compliance against NIST, DoD, DHA requirements (NIST 800-53, STIGs, SRGs).
  • Lead government compliance assessments and mitigate security threats.
  • Coordinate with stakeholders to resolve audits and enforce trusted interfaces.
  • Ensure security needs across operations, system design, testing, and continuity planning.
  • Provide analytical support for policy development and analysis.

Skills

Cybersecurity
Information Security
RMF
Security Requirements
System Security

Education

BA/BS in Computer Science or equivalent

Tools

Nessus
ACAS
Microsoft Defender Endpoint
McAfee

Job description

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Secret

Clearance Level Must Be Able to Obtain:

Secret

Public Trust/Other Required:

None

Job Family:

Cyber and IT Risk Management

Job Qualifications:
Skills:

Cybersecurity, Information Security, RMF, Security Requirements, System Security

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

As an Information Security Analyst Sr Principal, you will be responsible for the ICAM program’s network accreditation on both unclassified and classified networks. You will also be responsible for executing and reviewing security assessments of computing environments to identify points of vulnerability, non-compliance with established IA standards and regulations, and recommend mitigation strategies.

In this role, a typical day will include:
  • Execute success in obtaining an accreditation and maintaining the accreditation for ICAM on a classified network.
  • Perform Risk Management Framework (RMF) actions in eMASS such as control assessments, PPSM, upload and manage ICAM assets in hardware/software list, upload STIG checklists and ACAS vulnerability reports.
  • Define, draft, publish, and maintain Information Security policies, standards, and guidelines such as Access Control Plan, Identification and Authentication Plan, Auditing and Accountability Plan, Contingency Plan, Incident Response Plan, Vulnerability Management, Continuous Monitoring, Backup and Recovery, System Integrity Plan, Key Management, Media Protection, etc.
  • Develop and finalize RMF documentation to include Security Plans, Implementation Plans, Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports
  • Assess system compliance against NIST, DoD, and DHA security requirements to include the NIST 800-53 controls, and DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
  • Spearhead support government compliance assessments such as penetration testing and accreditation and compliance inspections assessments and mitigations to system security threats/risks throughout the program life cycle.
  • Work with the internal and external stakeholders to resolve compliance or audit issues in a timely manner. Enforce the design and implementation of trusted relations among external systems and architectures.
  • Ensure system security needs are established and maintained for operations development, security requirements definition, security risk assessment, systems analysis, systems design, security test and evaluation, certification and accreditation, systems hardening, vulnerability, testing and scanning, incident response, disaster recovery, and business continuity planning; and provides analytical support for security policy development and analysis.
  • Other related work as directed.
Required Qualifications:
  • Active DoD Security Clearance of SECRET, or higher
  • Minimum eight (8) + years’ experience and proven track record supporting IT customers as part of an enterprise environment.
  • BA/BS and 8+ years of Computer Science or equivalent experience
  • CISSP, CASP, CISA, CISM or similar for IAM Level III DoD 8570/8140 certification
  • Experience with FedRAMP Cloud processes
  • Knowledge of the DoD cybersecurity and policy requirements set forth in DoDI 8500.01 “Cybersecurity”, NIST 800-53v5 Assessing Privacy and Security Controls and DoDI 8510.01 “Risk Management Framework
  • Extensive and experience in NIST 800-53, Risk Framework security controls in eMASS
  • Ability to lead in highly collaborative, fast-paced, growth-focused environment.
  • Experience and knowledge in cybersecurity tools such as Nessus ACAS, Microsoft Defender Endpoint, McAfee
  • Extensive experience and knowledge with Incident Response testing/plans and Contingency testing/plans
  • Experience with systems that deploy API gateways, firewalls, access control lists, IP subnetting, NAT and other network device in Cloud.
  • Experience communicating with and coordinating across multiple stakeholders and teams to align to and execute unified goals and plans.
  • The ability to effectively communicate with people ranging from non-technical to engineering level.
Desired Qualifications:
  • Familiarization with DoD enterprise environments
  • Familiarization with Agile work environments
  • Familiarization with Microsoft Azure Cloud environment

The likely salary range for this position is $142,792 - $184,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

25-50%

Telecommuting Options:

Hybrid

Work Location:

USA MD Fort Meade


Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst Sr Principal - Cloud - Hybrid
Information Security Analyst Sr Principal - Cloud - Hybrid

General Dynamics Corporation • Fort Meade (MD), Northern (KY)

Hybrid
USD 143,000 - 184,000
IT and Cyber Risk Auditor Principal
IT and Cyber Risk Auditor Principal

Socket.dev • La Plata (MD)

On-site
USD 119,000 - 161,000
Information Assurance Analyst
Information Assurance Analyst

General Dynamics Information Technology • International Falls (MN)

On-site
USD 81,000 - 104,000
Information Security Analyst Advisor (Azure Security Senior Engineer)
Information Security Analyst Advisor (Azure Security Senior Engineer)

General Dynamics Information Technology • Washington

Hybrid
USD 84,000 - 114,000
Information Systems Security Manager - TS/SCI with Polygraph
Information Systems Security Manager - TS/SCI with Polygraph

General Dynamics Information Technology • North Dakota

On-site
USD 162,000 - 219,000
401K with company match
Comprehensive health benefits
Professional growth opportunities
+1
Info. Security Analyst Principal
Info. Security Analyst Principal

General Dynamics Information Technology • McLean (VA)

On-site
USD 109,000 - 147,000
Cybersecurity Information Security Assessor
Cybersecurity Information Security Assessor

General Dynamics Information Technology • Chantilly (VA)

Hybrid
USD 128,000 - 173,000
Cyber Security Analyst Senior
Cyber Security Analyst Senior

General Dynamics Information Technology • Hampton (VA)

On-site
USD 98,000 - 113,000
401K with company match
Comprehensive health and wellness
Paid educational opportunities
+1
System Engineer Sr Principal
System Engineer Sr Principal

General Dynamics Corporation • Fort Meade (MD), Northern (KY)

Hybrid
USD 133,000 - 181,000
IAM - Identity and Access Management Sr Engineer - Active Top Secret required
IAM - Identity and Access Management Sr Engineer - Active Top Secret required

General Dynamics Information Technology • Washington

On-site
USD 164,000 - 173,000