Jobs and Careers
GE

Senior Information Security Specialist - Remote!

General Dynamics Information Technology
USA MD Home Office (MDHOME), United StatesRemotefull_timeVerifiedPosted 9 Dec 2024
💰 $138,000/yr($102,000/yr$138,000/yr)

About the role

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

None

Clearance Level Must Be Able to Obtain:

None

Public Trust/Other Required:

SSBI (T5)

Job Family:

Information Security

Job Qualifications:

Skills:

Computer Security, Information Technology Security, Security Information, System Security

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

No

Job Description:

We are GDIT. As one of the largest IT and mission services providers to the government, we own our opportunities to better enable these organizations to identify theirs.  

You can make GDIT your place. You make it your own by turning obstacles into action. By owning your opportunity at GDIT, you’ll play an important role in providing the technologies and services that millions of professionals depend on, every day. Our work depends on a Senior Information Security Specialist joining our team to support the Social Security Online Accounting and Reporting System (SSOARS) Operational Support Services and Independent Verification and Validation (IV&V) program activities. 

At GDIT, we put our people first. As a Senior Information Security Specialist supporting the SSOARS and IV&V program, you will be trusted to manage compliance systems for customers across GDIT.

HOW AN INFORMATION SECURITY ANALYST SENIOR WILL MAKE AN IMPACT:

FISMA Support

  • Creating NIST 800-53 Requirements Matrix document to track compliance.
  • Performing reviews of the SSOARS SSP and cross referencing FISMA requirements with the Security Plan.
  • Producing written deliverables that identify gaps in compliance with existing controls or the need for implementation of new controls in which we will write new control implementation statements.
  • Providing a report with specifics on corrective actions to be taken and recommendations to fully meet the FISMA requirement.

STIG Compliance

  • Supporting OFAS in Security Technical Implementation Guide (STIG) compliance by creating a STIG Checklist document comparing STIG operating system (OS) and database (DB) requirements with the existing system.
  • Determining existing system configuration by the output from the SSA-supplied system scan tool.
  • Identifying gaps in the OS and DB and mark these as non-compliant and in need of corrective action.
  • Producing a written deliverable that identifies items requiring corrective action. Tracking and providing status updates on non-compliant items.

ADDITIONAL RESPONSIBILITIES INCLUDE:

  • Leading the execution efforts of all ATO-related activities for a given information system and developing all supporting documentation for that system.
  • Conducting regular assessments of continuous monitoring activities and the security controls that have been implemented to support those activities.
  • Responding to vulnerability reports and decides which remediation actions are appropriate to take.
  • Selecting security controls to create system and accreditation documentation based upon understanding of the process of information system categorization and how it is used.
  • Maintaining knowledge of relevant network and security technologies and trends.
  • Managing vulnerability by responding to vulnerability reports and decides which remediation actions are appropriate to take. 
  • Participating in designing secure networks, systems, & application architectures.
  • Participating in planning, researching, & developing security policies, standards & procedures; in system administration activities; and supports multiple platforms and applications.

WHAT YOU'LL NEED TO SUCCEED:

  • BA/BS (or equivalent experience).
  • 8+ years experience in Information Security, IT Assurance, IT Governance, Risk Management and/or Cyber Engineering.
  • Requires two or more of the following governance risk, assurance or security certifications: CISSP, CRMA, CGEIT, CRISC, CISM, CISA, CBCP, GIAC, CompTIA Security + or related governance certifications.
  • Strong understanding of IT Security and Privacy compliance issues.
  • Expertise with FISMA, OMB, NIST, Federal Government or private sector security certification requirements.
  • Advanced understanding of information systems and architectures.
  • Expertise with several security platforms, including but not limited to firewalls, intrusion detection systems, two-factor auth

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

General Dynamics Information Technology

View company profile →