Cybersecurity Manager

General Dynamics Information Technology, Inc.

• $128K — $173K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of IT experience in DoD government contracting
  • 5+ years of managerial experience leading a cybersecurity team of 20+
  • Bachelor's degree in a related field or 12 years of relevant experience without a degree
  • Hands-on experience with NIST Risk Management Framework and cybersecurity tools
  • Required certifications: CISSP, CISM, CCSP, or equivalent

Responsibilities

  • Determine enterprise information assurance and security standards
  • Develop and implement security standards and procedures
  • Lead the implementation of digital identity and multi-factor authentication
  • Coordinate and evaluate security programs for the organization
  • Recommend security solutions to meet customer requirements
  • Establish information assurance requirements based on analysis
  • Perform analysis and design of security features for system architectures

Benefits

  • Variety of medical, dental, and vision plan options
  • 401(k) plan with company match
  • Flexible work weeks and paid time off plans
  • Short and long-term disability benefits
  • Life and accident insurance options
  • Regular review of benefits to ensure competitiveness
Full Job Description
Type of Requisition:
Pipeline

Clearance Level Must Currently Possess:
Top Secret

Clearance Level Must Be Able to Obtain:
Top Secret

Public Trust/Other Required:
None

Job Family:
Cyber and IT Risk Management

Job Qualifications:

Skills:
Information Technology (IT), Security Requirements, Security Standards
Certifications:
None
Experience:
7 + years of related experience
US Citizenship Required:
Yes

Job Description:

Job Description

We think. We act. We deliver. There is no challenge we can't turn into opportunity. And our work depends on a CYBER SECURITY Manager joining our team to support Navy Enterprise Tactical Training Network (NETTN) activities. They shall provide cybersecurity operations in support of this effort.

Support shall include vulnerability management, risk management framework assessment and authorization, network security, cybersecurity incident response, Host Base Security System support, information system auditing, patching support, cross domain solution support, cybersecurity configuration management and annual cybersecurity inspections.

RESPONSIBILITIES INCLUDE:
  • Determines enterprise information assurance and security standard for authentication and authorization.
  • Develops and implements information assurance/security standards and procedures.
  • Serves as the project manager to lead the implementation of a digital identity and multi-factor authentication effort for multiple web applications
  • Coordinates, develops, and evaluates security programs for an organization.
  • Recommends information assurance/security solutions to support customers' requirements.
  • Establishes and satisfies information assurance and security requirements based upon the analysis of user, policy, regulatory, and resource demands.
  • Performs analysis, design, and development of security features for system architectures.
  • Review and assesses current application authentication topologies and develops a recommended path forward to implement a centralized federated authentication solution
  • Leads the development of the design documentation associated with the to-be federated authentication topology
  • Assists with the development and implementation of a Zero-Trust architecture roadmap
  • Shall ensure that its cyberspace workforce (CSWF) personnel are identified, categorized, certified, qualified and/or otherwise competent for their assigned tasking IAW all applicable DoW directives, instructions, manuals and policies and updates thereto, including the most current version of SECNAV M-5239.2 and deliver a report identifying all of its certified CSWF personnel IAW CDRL A008 Cybersecurity Workforce (CSWF) Report
  • shall institute a scan- remediate-rescan and validation methodology covering all networked and stand-alone systems utilizing the DISA Assured Compliance Assessment Solution or other current DoW mandated tool
  • Develop documented Vulnerability Management procedures establishing a methodology for scan-remediate-rescan and quarterly STIG validation and maintain the procedures in IMS
  • Shall ensure all networks and systems are covered by automated or manual authenticated scans and remediate or mitigate any vulnerabilities
  • Scan assets on a weekly basis, at a minimum, to ensure remediation efforts are successfully implemented and perform asset discovery scans at minimum on a monthly basis
  • Shall develop documented patch management procedures establishing a methodology for patching and confirming patch management
  • Perform duties as assigned


Minimum Requirements:
  • Seven (7) years of information technology experience with DoW government contracting efforts
  • Five (5) years of managerial experience with DoW government contracting efforts, including leading a team of at least 20 plus cybersecurity professionals
  • Experience managing dispersed workforce in support of securing an integrated network as well as a dispersed group of networks
  • Bachelor's degree in computer science, Information Systems, Software Engineering, Business, or other related discipline with 8 years of increasingly responsible and relevant experience in defining security requirements. Without a degree at least 12 years of relevant experience is required
  • Knowledge of computer communications systems, and networks that are used to support Navy and Joint training events
  • Familiarity with ISO 9000:2015 Quality Management System
  • 6+ years of hands-on cybersecurity experience, including the NIST Risk Management Framework (800-63-3), architecture, digital identity, federated authentication, and penetration testing, firewalls, encryption, security monitoring, event and anomaly analysis and intrusion detection/prevention.
  • 3+ years of hands-on experience with the development federated authentication solutions and digital identity management
  • 3+ years of hands-on experience leading a team of Cyber Security professionals
  • 3+ years' experience in the design and implementation of SAML and Open Connect authentication methodologies
  • Hands-On experience with the implementation of Zero-Trust principles applicable to business (web) applications
  • Experience in Microsoft and Linux including Red Hat web server platforms
  • Required certifications in accordance with DOWI-8140/8570: CISSP or CISM or CCSP or GCIH or GCIA or GSEC or OSCP or CHFI or CEH


Desired Qualifications:
  • Experience with Anti-Virus, Intrusion Detection/Protection Systems, Firewalls, Active Directory, Vulnerability Assessment tools and other security tools found in large network environments.
  • Experience with technologies, including ADFS, Ping Federate, SAML and Open Connect Authentication, Azure or AWS cloud application experience
  • ITIL v3 or v4 certification


Active Top-Secret DOW Clearance

Location: Virginia Beach, VA

Scheduled Weekly Hours:
40

Travel Required:
Less than 10%

Telecommuting Options:
Onsite

Work Location:
USA VA Virginia Beach

Additional Work Locations:

Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

Similar Jobs

More Jobs at General Dynamics Information Technology, Inc.

More Information Technology Jobs

Find similar Cybersecurity Manager jobs: