Type of Requisition: Regular
Clearance Level Must Currently Possess: Top Secret
Clearance Level Must Be Able to Obtain: Top Secret/SCI
Public Trust/Other Required: None
Job Family
Cyber and IT Risk Management
Job Qualifications
Skills: Information Systems, Information System Security, Plan of Action and Milestones (POA&M) Certifications: None
Experience: 5 + years of related experience
US Citizenship Required: Yes
Job Description
General Dynamics Information Technology (GDIT) seeks a highly motivated and experienced Information System Security Officer (ISSO) supporting the Defense Threat Reduction Agency (DTRA). You will be the designated cybersecurity professional responsible for the Defense Stockpile Management Systems (DSMS) which includes: Defense Integration and Management of Nuclear Data Services (DIAMONDS), Joint Application Design Environment (JADE), Nuclear Inventory Management and Cataloging System (NIMACS). T he ISSO ensures all systems comply with the NIST Risk Management Framework (RMF) , DoD directives, and agency-specific security mandates.
What You Will Do
- Performs Cybersecurity activities for a large Program; coordinates with government Program staff, DTRA, and other government agencies to assist in the creation, dissemination, direction, and auditing of program policy, standards, and operating procedures.
- Support the government ISSMs in the development and staffing of documentation related to the Authorization to Operate (ATO), Authorization to Connect (ATC), Interim Authorization to Test (IATT), Plans of Action & Milestones (POA&Ms), etc.
- Assist in the development and execution of any required Security Test and Evaluation (S&E) plans.
- Provide USG with a review of architecture documentation, security impact analysis, and risk mitigation/acceptance to support RMF for DoW IT authorization.
- Provide security design management control of build processes for servers, services, and end points.
- Ensure good cybersecurity and vulnerability management practices are developed, implemented, and enforced.
- Conduct network and system audits for vulnerabilities using Security Technical Implementation Guides (STIGs), DISA SCAP, ACAS vulnerability scanner, ESS Policy Auditor to mitigate those findings for Linux, Windows, Cisco, Juniper, VMWare and other associated operating systems and technologies.
- Implement the Continuous Monitoring program by creating, tracking, reviewing, and closing Plan of Action and Milestones (POA&Ms) and Risk Acceptances and assist in conducting solution identification to assist in problem remediation and resolution.
- Communicate tactical and strategic threat information to Government leaders, Cybersecurity-Ops and Security Staff to assist them in making cyber risk decisions and to mitigate threats.
- Carries out DoW Risk Management Framework (RMF) in accordance with DoW 8510 to ascertain information systems’ security posture by utilizing security control validation activities and coordinating security testing.
- Coordinates with DTRA and other organizations in support of audits and inspections and provides all necessary documentation as required for SAVs, ST&Es, and CCRI
- Evaluate change requests (firewall, systems, networks) and assess organizational risk.
- Ensures the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
- Provides guidance and work leadership to less-experienced technical staff members.
- Maintains current knowledge of relevant technology as assigned.
- Process tickets in support of the program using the accepted ITSM system.
What You Will Need
- BA/BS or the equivalent combination of education, technical training, or work/military experience.
- 5+ years of IT experience with at least 5+ years ISSO experience.
- Must have working knowledge of DOW Risk Management Framework (RMF)
- Must meet DOW 8750 requirements and be eligible for IAM level II
- Required clearance: must have an active/current Top Secret/SCI (TS/SCI) Security Clearance.
- Ability to work in a team-oriented, collaborative environment.
- Ability to work efficiently in a fast-paced environment and multi-task while still ensuring high quality of work.
- Highly organized with strong ability to prioritize work and work autonomously.
- Excellent verbal and written communication skills
- Great attention to detail and presentation
- Results driven, highly efficient, energetic, and highly motivated.
- Must possess a high degree of intelligence, competence, maturity, adaptability, resilience, integrity, and initiative.
Work location is on site at Fort Belvoir, VA. Not a remote or hybrid role and must be able to work on site 5 days a week.
What GDIT Can Offer
At GDIT, the mission is our