Jobs and Careers
USA IL Home Office (ILHOME), United Statesfull_timeVerifiedPosted 17 Jul 2024
💰 $97,750/yr($72,250/yr$97,750/yr)

About the role

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Secret

Clearance Level Must Be Able to Obtain:

Secret

Suitability:

Public Trust/Other Required:

Job Family:

Cyber Security

Job Qualifications:

Skills:

Information Security, Security Compliance, Systems Security

Certifications:

CompTIA - Security+ - CompTIA

Experience:

4 + years of related experience

US Citizenship Required:

Yes

Job Description:

The Global Freight Management (GFM) system supports the Military Surface Deployment and Distribution Command (SDDC) as the surface transportation component of the United States Transportation Command (USTRANSCOM), which leads the Department of Defense with all of their military transportation requirements.  GDIT provides development, maintenance, and sustainment support for the GFM as partners with the SDDC.  GFM is comprised of more than a dozen web-based/cloud-based applications which facilitate the communication between SDDC, shipping businesses, and commercial transport companies in support of  the bidding, selection, and coordination of military equipment and personnel requiring transportation anywhere around the world.

To support this requirement, GDIT is seeking a Cyber Security Analyst Senior.  A successful candidate can demonstrate the following:

JOB DESCRIPTION:

The position will support a Department of Defense program that is playing a major role in leveraging the commercial transportation industry to support the movement and relocation of DoD personnel, equipment, and supplies.  As part of this effort, GDIT has deployed software/database development teams leveraging Agile/Scrum processes to deliver updates through repeated sprint cycles.  The position requires the successful candidate to assess and manage ATO and IATT packages to ensure full STIG compliance under RMF processes in cloud-based environments.

HOW A CYBER SECURITY ANALYST SENIOR WILL MAKE AN IMPACT:

  • Validating and verifying system security requirements and establishing system security designs for large-scale systems, major system elements, and interfacing systems that are part of a large complex network environment with geographically distributed components.

  • Identifying and recommending appropriate information security controls and functionality to ensure uniform application of security policy and enterprise solutions.

  • Recommending and developing technical solutions, products, and standards based on current and desired system security architecture.

  • Assessing and mitigating system security threats and risks throughout the program life cycle.

  • Leading and/or contributing to the security planning, assessment, risk analysis, risk management, certification and awareness activities for various system and networking operations.

  • Provide program specific input for the development of new application security documentation and the updating of existing application security documentation to facilitate the security accreditation of the GFM system, and the EDI and SOA environments IAW the current certification and accreditation guidance DODD 8140.01 - will be migrating to NIST Risk Management Framework model).

  • Sustain the application and its environment in compliance with the DISA STIGs. The results of the DISA STIG documentation must always reflect the current status of the system; provide monthly updates.

  • Provide updates to existing certification and accreditation documentation, such as network diagrams, ports and protocol matrix, application certification package created during release cycle, and other existing documentation. This documentation is required whenever changes are made that may affect the security posture of the application environment.

  • Provide a monthly update, no later than the last business day of the month, to the PM for the applications RMF and/or DIACAP Plan of Action and Milestones (POA&M). POA&Ms are maintained within the Enterprise Mission Assurance Support Service (eMASS)

  • Effectively collaborating with other internal technical experts on a day-to-day basis.

  • Communicating with Program Managers and POCs from customer organizations when necessary regarding security issues of significant importance.

  • Participating in program increment planning and related agile team activities. 

  • Working closely with System Engineering, Test Engineering, and Integration teams to ensure that th

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

General Dynamics Information Technology

View company profile →