Information System Security Officer

General Dynamics Information Technology, Inc.

$124K — $149K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of cybersecurity or information security experience
  • Strong proficiency in NIST SP-800-53 frameworks
  • Experience managing security within AWS cloud environments
  • Excellent communication skills for interacting with diverse stakeholders
  • Preferred certifications include CISSP, CISA, or AWS-related security certifications

Responsibilities

  • Develop and implement an information security program for a critical mission system
  • Identify vulnerabilities and implement appropriate risk mitigations
  • Conduct compliance reviews of the information system
  • Coordinate annual continuous monitoring assessments and ATOs
  • Collect and document audit evidence for review
  • Prepare reports on vulnerabilities and system security status
  • Lead training and tabletop exercises for incident response and operations continuity

Benefits

  • Comprehensive medical, dental, and vision plans
  • 401(k) with company match
  • Flexible work arrangements and paid time off
  • Short and long-term disability insurance
  • Life and accident insurance options
  • Paid parental, military, and bereavement leave
  • Competitive total rewards package regularly reviewed for employee satisfaction
Full Job Description
Type of Requisition:
Regular

Clearance Level Must Currently Possess:
None

Clearance Level Must Be Able to Obtain:
None

Public Trust/Other Required:
BI Full 6C (T4)

Job Family:
Cyber and IT Risk Management

Job Qualifications:

Skills:
Cybersecurity, Information System Security, It Communication, IT Security Management, NIST Risk Management Framework
Certifications:
None
Experience:
8 + years of related experience
US Citizenship Required:
No

Job Description:

Job Description:

GDIT is seeking an Information Systems Security Officer (ISSO) to join our team supporting the U.S. Environmental Protection Agency (EPA) Office of Land and Emergency Management (OLEM) Office of Superfund and Emergency Management (OSEM) Analytical Services Branch (ASB). As the ISSO, you will develop and implement an information security program to ensure the operational security of a critical mission-support system. You will update, maintain, and drive procedures and policies designed to protect the system from both internal and external threats. The system is currently hosted in an AWS Cloud environment.

Performance shall include:
  • Identify cyber security vulnerabilities and assist with the implementation of appropriate mitigations or countermeasures
  • Conduct and support, when assessed or audited, periodic reviews of the information system to ensure compliance with the security and privacy authorization package (currently NIST 800-SP53 Rev. 4/5)
  • Coordinate changes to the system infrastructure or software to ensure continued compliance with security and privacy requirements
  • Coordinate the response to the annual continuous monitoring assessment audit, and ensure the system's continued Authorization to Operate (ATO)
  • Ensure audit evidence is collected, reviewed, and documented, including any risk exceptions
  • Identify and notify the program manager when changes occur that might affect the authorization determination for the information system
  • Provide analysis of systems, hardware, software, and maintenance needs
  • Provide document review and updates of all security- and privacy-related documentation
  • Routinely review Tenable scan results and coordinate with team members to ensure vulnerabilities are addressed within the target remediation timeframes.
  • Routinely review Splunk reports to detect security threats, anomalous activities, unauthorized access, or other malicious behavior.
  • Develop, coordinate and conduct training and tabletop exercises related to continuity of operations, contingency planning, incident handling and response, awareness, disaster recovery, etc.
  • Coordinate with other EPA organizational entities to ensure compliance with EPA and other federal requirements, specifications, and reporting
  • Prepare reports on the status of system security and privacy, vulnerabilities, and responses to other customer inquiries and data calls

What You'll Need to Succeed:
  • Education: Masters or Bachelor's degree in Computer Science, Information Security, Cyber Security, or relevant discipline
  • Required Experience: Eight (8) years of related experience. Without a master's degree, ten (10) years of related experience is required.
  • Required Technical Skills
    • Prior performance in roles such as system administration, networking administration, or ISSO
    • Knowledge of NIST SP-800-53, Rev 4 and Rev 5
    • Familiarity with system security and privacy within cloud environments (AWS, specifically)
    • Demonstrated experience with risk management and auditing
  • Certifications
    • CISSP, CISA, CISM, and/or cloud-based security certification (e.g. CCSP, COMPTIA Cloud+, or equiv)preferred.
  • Clearance Required: Position of Trust or greater (can be obtained after starting)
  • Excellent verbal and written communications skills, including the ability to communicate complicated technical and security concepts to both technical and non-technical stakeholders.
  • Knowledge of and experience with Environmental Protection Agency (EPA) security policies and procedures, while not required, would be advantageous.


The likely salary range for this position is $124,093 - $149,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:
40

Travel Required:
None

Telecommuting Options:
Remote

Work Location:
USA VA Chantilly

Additional Work Locations:

Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

Similar Jobs

More Jobs at General Dynamics Information Technology, Inc.

More Information Technology Jobs

Find similar Information System Security Officer jobs: