An application made for this job — a tailored resume and cover letter that speak straight to the posting.
General Dynamics Information Technology seeks an experienced Information System Security Officer (ISSO) to support the Defense Threat Reduction Agency, ensuring RMF compliance across DSMS components such as DIAMONDS, JADE, and NIMACS in line with DoD directives.
This on-site, full-time role at Fort Belvoir, VA requires TS/SCI clearance, strong collaboration with government staff, and hands-on risk management, STIG reviews, and RMF activities to safeguard networks and systems.
General Dynamics Information Technology (GDIT) seeks a highly motivated and experiencedInformation System Security Officer (ISSO) supporting the Defense Threat Reduction Agency (DTRA). You will be the designated cybersecurity professional responsible for the Defense Stockpile Management Systems (DSMS) which includes: Defense Integration and Management of Nuclear Data Services (DIAMONDS), Joint Application Design Environment (JADE), Nuclear Inventory Management and Cataloging System (NIMACS). The ISSO ensures all systems comply with theNIST Risk Management Framework (RMF), DoD directives, and agency-specific security mandates.
Performs Cybersecurity activities for a large Program; coordinates with government Program staff, DTRA, and other government agencies to assist in the creation, dissemination, direction, and auditing of program policy, standards, and operating procedures.
Support the government ISSMs in the development and staffing of documentation related to the Authorization to Operate (ATO), Authorization to Connect (ATC), Interim Authorization to Test (IATT), Plans of Action & Milestones (POA&Ms), etc.
Assist in the development and execution of any required Security Test and Evaluation (ST&E) plans.
Provide USG with a review of architecture documentation, security impact analysis, and risk mitigation/acceptance to support RMF for DoW IT authorization.
Provide security design management control of build processes for servers, services, and end points.
Ensure good cybersecurity and vulnerability management practices are developed, implemented, and enforced.
Conduct network and system audits for vulnerabilities using Security Technical Implementation Guides (STIGs), DISA SCAP, ACAS vulnerability scanner, ESS Policy Auditor to mitigate those findings for Linux, Windows, Cisco, Juniper, VMWare and other associated operating systems and technologies.
Implement the Continuous Monitoring program by creating, tracking, reviewing, and closing Plan of Action and Milestones (POA&Ms) and Risk Acceptances and assist in conducting solution identification to assist in problem remediation and resolution.
Communicate tactical and strategic threat information to Government leaders, Cybersecurity-Ops and Security Staff to assist them in making cyber risk decisions and to mitigate threats.
Carries out DoW Risk Management Framework (RMF) in accordance with DoW 8510 to ascertain information systems' security posture by utilizing security control validation activities and coordinating security testing.
Coordinates with DTRA and other organizations in support of audits and inspections and provides all necessary documentation as required for SAVs, ST&Es, and CCRI
Evaluate change requests (firewall, systems, networks) and assess organizational risk.
Ensures the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
Provides guidance and work leadership to less-experienced technical staff members.
Maintains current knowledge of relevant technology as assigned.
Process tickets in support of the program using the accepted ITSM system.
BA/BS or the equivalent combination of education, technical training, or work/military experience.
5+ years of IT experience with at least 5+ years ISSO experience.
Must have working knowledge of DOW Risk Management Framework (RMF)
Must meet DOW 8750 requirements and be eligible for IAM level II
Required clearance: must have an active/current Top Secret/SCI (TS/SCI) Security Clearance.
Ability to work in a team-oriented, collaborative environment.
Ability to work efficiently in a fast-paced environment and multi-task while still ensuring high quality of work.
Highly organized with strong ability to prioritize work and work autonomously.
Excellent verbal and written communication skills
Great attention to detail and presentation
Results driven, highly efficient, energetic, and highly motivated.
Must possess a high degree of intelligence, competence, maturity, adaptability, resilience, integrity, and initiative.
The work is typically performed at client site locations, which requires proper safety precautions; work may require some physical effort in the handling of light materials, boxes, or equipment.
Work location is on site at Fort Belvoir, VA. Not a remote or hybrid role and must be able to work on site 5 days a week.
WHAT GDIT CAN OFFER:
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
Growth: AI-powered career tool that identifies career steps and learning opportunities
Support: An internal mobility team focused on helping you achieve your career goals
Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
Community: Award-winning culture of innovation and a military-friendly workplace
#ARMA
#GDITPRIORITY