Seize your opportunity to make a personal impact as an Information System Security Engineer (ISSE). GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. At GDIT, people are our differentiator. As an ISSE, you will help ensure today is safe and tomorrow is smarter. Our work depends on an ISSE joining our team. The selected candidate will act as an Information System Security Engineer (ISSE) and should have a broad cybersecurity background with an emphasis on Assessment & Authorization (A&A). The program ISSE should have a working knowledge of AWS to include security groups, encryption, networking, compute, and storage. You will work with program management and developers to ensure security is implemented in the early stages of all systems. The selected candidate will be directly involved in fostering all efforts through the Risk Management Framework and achieving systems "Authority to Operate" (ATO).
Working collaboratively with other program security personnel as well as working independently, acting as the organization's liaison to the ISSM staff promoting security compliance and related security process improvements, working with Information Management Technical Officers and other external stakeholder orgs, coordinating and tracking risks, accreditation status, and reporting status across all project teams, providing team officers with security architecture guidance and engineering reviews, ensuring compliance with Sponsor auditing requirements, conducting security scanning, interpreting results, and working with team members to resolve issues, preparation, updating, and submission of security relevant artifacts to the Sponsor's security management system, completing necessary application security document requirements to include; CONOPS, SSPs, DR/BR Plans, BOEs, etc., creating security briefings and supporting management in all security related matters, maintaining awareness of IT Security policies and practices.
BA/BS in Information Technology or related field or the equivalent combination of education, technical certifications or training, or work experience, 10+ years, extensive knowledge of the sponsors the Risk Management Framework (RMF), experience with system scanning tools, antivirus, siems, network monitoring tools, PKI, experience developing a Body of Evidence (BOE) for gaining and maintaining ATO, experience working with Sponsor security personnel to identify and resolve questions and POA&Ms, experience tracking accreditations and gaining reaccreditations prior to expiration; familiarity with Confluence, Jira, MS-Office Suite, Top Secret/SCI with Polygraph, experience with Linux or Windows administration, any scripting language and/or automation (not mandatory), experience with the Software Development Lifecycle (SDLC) and DevOps, excellent, briefing, writing, and presentation skills, Security+, CISSP, CISM or other Security related certification, Herndon, VA and McLean, VA (On Customer Site), US Citizenship Required.
401K with company match, comprehensive health and wellness packages, internal mobility team dedicated to helping you own your career, professional growth opportunities including paid education and certifications, cutting-edge technology you can learn from, rest and recharge with paid vacation and holidays.