Cybersecurity Information Security Assessor
General Dynamics Information Technology Fort Meade, Maryland, United States · $128K–$172K/yr
IT System Data Services · 10,001+ employees
About the role
Provide cybersecurity support and guidance for the confidentiality, availability, and integrity of Microsoft Azure environments. Participate in risk assessments, design security countermeasures, and support cyber threat hunt initiatives to protect the Department of Defense Information Network.
What they look for
Requirements
Requires a Bachelor's degree, an active Top Secret security clearance, and 5+ years of related experience. Must hold a current 8570 IAT Level II certification and have 3+ years of experience supporting MS Azure in a large-scale environment.
Benefits
Full description
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
Top Secret
Clearance Level Must Be Able to Obtain:
Top Secret/SCI
Public Trust/Other Required:
None
Job Family:
Cyber and IT Risk Management
Job Qualifications:
Skills:
Cyber Defense, Cybersecurity Operations, Information Assurance, Information Systems, Network DefenseCertifications:
NoneExperience:
5 + years of related experienceUS Citizenship Required:
Yes
Job Description:
GDIT is seeking a Cybersecurity Information Assurance (IA)/Security Assessor to provide support on our Defense Enterprise Office Solution (DEOS) Cloud Service Offering contract.
This position is a combination of remote (20%) and onsite (80%) support at either Chantilly, VA or Fort Meade, MD. Please be advised that no travel costs will be provided.
Meaningful Work and Personal Impact:
- Provide cybersecurity support and guidance for overall confidentiality, availability, and integrity of capabilities in Microsoft (MS) Azure environments. This role works closely with the Cybersecurity Lead, as well as the other areas supporting the customer (e.g., Threat Hunting, Engineering, Operations) and is expected to represent the customer in various briefings and meetings with senior leadership.
- Participate in risk assessment during the Accreditation and Authorization process.
- Design, develop, test, implement, and integrate IA architecture, system, or system components.
- Participate in information systems (IS) risk assessments and design security countermeasures to mitigate identified risks.
- Ensure the architecture and design of Department of War (DoW) IS are functional and secure.
- Design and develop IA or IA enabled products, interface specifications, and approaches to secure the environment, as necessary.
- Utilize experience and judgment to plan and accomplish the organization's security related goals.
- Support system or network designs that encompass multiple boundaries to include those with differing data protection/classification requirements.
- Report to IA issues with separate reporting to other senior management for network operational requirements, as necessary.
- Provide support services for protecting the Department of Defense Information Network (DoDIN) from cyber threats, both foreign and domestic, using cybersecurity systems, in combination with Techniques, Tactics, and Procedures (TTP) and information sharing with DoW, Department of Homeland Security (DHS), and other federal agencies.
- Support cyber threat hunt initiatives to search for signs of malicious activities or security vulnerabilities within an organization’s network and/or digital infrastructure.
- Support cybersecurity operations, including incident detection, triage, and response.
- Analyzing logs, network traffic, and endpoint telemetry to identify suspicious activity.
- Conduct thorough investigations of security incidents and provide high-quality reports on findings and strategies of mitigation.
What You’ll Need to Succeed (Required):
Education: Bachelor’s Degree.
Certification: Current 8570 IAT Level II (Security+ CE, CCNA Security, CySA+, GICSP, GSEC, or SSCP) required.
Clearance: Active Top Secret security clearance with ability to obtain SCI.
Experience: 5+ years of related experience.
Technical skills:
- Must have 3+ years’ experience supporting MS Azure in a large-scale environment.
- Expert knowledge of commonly used cybersecurity systems to include, but not limited to, DoW Host Based Security System (HBSS), Assured Compliance Assessment Solution (ACAS), Continuous Monitoring and Risk Scoring (CMRS), Joint Incident Management System (JIMS), and Enterprise Mission Assurance Support Service (eMASS).
- Experience in cybersecurity program policies and implementation for DoW Impact Level 6 (IL6) and Impact Level 7 (IL7).
- Expert knowledge implementing heightened security controls for sensitive systems (i.e., Access Control [AC], Physical and Environmental Protection [PE], IA, Audit and Accountability [AU], and Personal Security [PS]).
- Experience in Cyber Network Defense (CND).
What You’ll Need to Succeed (Desired):
- IAT Level III preferred (CISSP, CASP CE, CCNP, CISA).
- Experience with Azure Sentinel, Lighthouse and Defender Advanced Threat Protection (ATP).
- Hands-on experience with MS Sentinel (Azure Sentinel), including:
- Creating, tuning, and maintaining analytics rules, workbooks, and dashboards.
- Writing advanced Kusto Query Language (KQL) queries for detection, threat hunting, and reporting.
- Building and maintaining playbooks/automation (e.g., Logic Apps) to orchestrate response.
- Integrating Sentinel with diverse data sources (on-prem, cloud, and third-party security tools).
- Hands-on threat hunting experience, including:
- Conducting proactive, hypothesis-driven threat hunts across endpoints, networks, cloud, and identity.
- Using threat intelligence and MITRE ATT&CK to guide hunting and improve detection coverage.
- Analyzing logs, network traffic, and endpoint telemetry to identify and investigate suspicious activity.
- Experience with commercial cloud services (i.e., Amazon Web Services [AWS], Azure, and Google Cloud Platform [GCP]) is a plus.
- Experience with Agile software development is a plus.
- Ability to thrive in a highly collaborative, fast-paced, growth-focused environment.
- Provide guidance and direction to other professionals, acts in a consulting and/or advisory capacity.
- Coordinates resolution of highly complex problems and tasks possesses ability to meet and operate under deadlines.
GDIT IS YOUR PLACE: At GDIT, the mission is our purpose, and our people are at the center of everything we do.
- Growth: AI-powered career tool that identifies career steps and learning opportunities.
- Support: An internal mobility team focused on helping you achieve your career goals.
- Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off.
- Community: Award-winning culture of innovation and a military-friendly workplace.
OWN YOUR OPPORTUNITY:
- Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
Telecommuting Options:
Hybrid
Work Location:
USA VA Chantilly
Additional Work Locations:
USA MD Fort Meade
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events atgdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Similar roles
-
Application Security Engineer
endeavour group careers Sydney, New South Wales, Australia
-
Network Security Engineer
Thakral One Bangalore, Karnataka, India
-
Senior Associate - Cybersecurity
PwC Kuala Lumpur, Kuala Lumpur, Malaysia
-
Cybersecurity Consultant (GRC)
Ensign Services Singapore, Singapore, Singapore
-
AT Senior IP Security Engineer
Micron Technology Taichung, Taiwan
-
Associate Cybersecurity Consultant (Access & Identity)
Ensign Services Singapore, Singapore, Singapore