Sr. Information System Security Officer (ISSO)
General Dynamics Information TechnologyAbout the role
Type of Requisition:
RegularClearance Level Must Currently Possess:
SecretClearance Level Must Be Able to Obtain:
SecretPublic Trust/Other Required:
NoneJob Family:
Information SecurityJob Qualifications:
Skills:
Security Controls, Security Policies, Security Standards, System Audits, Vulnerability AssessmentsCertifications:
NoneExperience:
7 + years of related experienceUS Citizenship Required:
YesJob Description:
Information Security Analyst Senior
Transform technology into opportunity as an Information Security Analyst Senior with GDIT. A career in enterprise IT means connecting and enhancing the systems that matter most. At GDIT you’ll be at the forefront of innovation and play a meaningful part in improving how agencies operate.
Responsible for coordinating the scanning and identification of vulnerabilities associated with hosts connected to the network. Maintains all tools that are used in the scanning and identification of vulnerabilities, as well as the tools used to rationalize, consolidate, and apply additional contextual information. Maintains a cooperative relationship with Engineering and Operations teams to drive remediation efforts.
How an Information Security Analyst Will Make an Impact:
- Support the ISSM to define, create, and maintain the documentation for certification and authorization of the Air Defense Communication Service (ADCS) system in accordance with requirements.
- Assess the impacts on system modifications and technological advances.
- Develop, implement, and maintain information security policies, procedures, and standards in accordance with industry best practices and regulatory requirements (e.g., NIST, ISO 27001, etc.).
- Conduct regular security assessments, vulnerability scans to identify and mitigate security risks.
- Monitor security logs and alerts for suspicious activity and respond to security incidents in a timely and effective manner.
- Collaborate with IT and business stakeholders to ensure security requirements are integrated into all phases of the system development lifecycle.
- Maintain up-to-date knowledge of current and emerging security threats and vulnerabilities.
- Participate in security audits and assessments conducted by internal and external parties.
- Develop and maintain disaster recovery and business continuity plans.
- Manage and maintain security documentation, including incident reports, risk assessments, and security policies.
- Stay abreast of current industry best practices and regulatory requirements related to information security.
What you Will Need to Succeed (Required):
- Bachelor’s degree in computer science, Information Systems, or a related field, or equivalent years of experience.
- Minimum 5+ years with BA/BS OR 7 years in lieu of degree
- Current active clearance: Secret
- US Citizenship Required
- Possess and maintain a minimum of IAM level III certification IAW the DoD directive 8140.01 Cyberspace Workforce Management such as CISSP, CISM, or CompTIA Security+.
- Strong understanding of information security principles, practices, and technologies.
- Experience with security frameworks such as NIST, ISO 27001, and HIPAA.
- Hands-on experience with security tools and technologies, such as firewalls, intrusion detection/prevention systems, and vulnerability scanners.
- Excellent problem-solving and analytical skills.
- Strong communication and interpersonal skills.
- Ability to work independently and as part of a team.
Preferred Qualifications:
- Experience with implementing and managing security tools and technologies, including firewalls, intrusion detection/prevention systems, anti-virus software, and data loss prevention solutions.
- Experience and training with Microsoft Server 2016/ 2019 or newer to include Active Directory, Radius, Cisco Identity service engine, DNS and Group Policy
- Experience and training with virtual environments (VMware, Hyper-V, etc.)
- Familiar with maintaining and operating SQL server, tenable security center (ACAS) Scans, and Microsoft endpoint security,
- Experienced in applying patches/updates and STIGs
- Familiar with eMASS
- How to upload STIG and ACAS scans.
- How to manage Plan of Action and Milestones
- Experience with Cyber Security Service Provider implementation
- Experience with DoD Cyber Protection Team
GDIT Is Your
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s