Information Security Analyst Sr Principal - Cloud - Hybrid
$142.79k - $184kFull-time
GDIT
Responsibilities for this Position
Location: USA MD Fort MeadeFull Part/Time: Full time
Job Req: RQ227262 Type of Requisition:
Regular Clearance Level Must Currently Possess:
Secret Clearance Level Must Be Able to Obtain:
Secret Public Trust/Other Required:
None Job Family:
Cyber and IT Risk Management Job Qualifications: Skills:
Cybersecurity, Information Security, RMF, Security Requirements, System Security
Certifications:
None
Experience:
8 + years of related experience
US Citizenship Required:
Yes Job Description: As an Information Security Analyst Sr Principal, you will be responsible for the ICAM program's network accreditation on both unclassified and classified networks. You will also be responsible for executing and reviewing security assessments of computing environments to identify points of vulnerability, non-compliance with established IA standards and regulations, and recommend mitigation strategies. In this role, a typical day will include:
- Execute success in obtaining an accreditation and maintaining the accreditation for ICAM on a classified network.
- Perform Risk Management Framework (RMF) actions in eMASS such as control assessments, PPSM, upload and manage ICAM assets in hardware/software list, upload STIG checklists and ACAS vulnerability reports.
- Define, draft, publish, and maintain Information Security policies, standards, and guidelines such as Access Control Plan, Identification and Authentication Plan, Auditing and Accountability Plan, Contingency Plan, Incident Response Plan, Vulnerability Management, Continuous Monitoring, Backup and Recovery, System Integrity Plan, Key Management, Media Protection, etc.
- Develop and finalize RMF documentation to include Security Plans, Implementation Plans, Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports
- Assess system compliance against NIST, DoD, and DHA security requirements to include the NIST 800-53 controls, and DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
- Spearhead support government compliance assessments such as penetration testing and accreditation and compliance inspections assessments and mitigations to system security threats/risks throughout the program life cycle.
- Work with the internal and external stakeholders to resolve compliance or audit issues in a timely manner. Enforce the design and implementation of trusted relations among external systems and architectures.
- Ensure system security needs are established and maintained for operations development, security requirements definition, security risk assessment, systems analysis, systems design, security test and evaluation, certification and accreditation, systems hardening, vulnerability, testing and scanning, incident response, disaster recovery, and business continuity planning; and provides analytical support for security policy development and analysis.
- Other related work as directed.
- Active DoD Security Clearance of SECRET, or higher
- Minimum eight (8) + years' experience and proven track record supporting IT customers as part of an enterprise environment.
- BA/BS and 8+ years of Computer Science or equivalent experience
- CISSP, CASP, CISA, CISM or similar for IAM Level III DoD 8570/8140 certification
- Experience with FedRAMP Cloud processes
- Knowledge of the DoD cybersecurity and policy requirements set forth in DoDI 8500.01 "Cybersecurity", NIST 800-53v5 Assessing Privacy and Security Controls and DoDI 8510.01 "Risk Management Framework
- Extensive and experience in NIST 800-53, Risk Framework security controls in eMASS
- Ability to lead in highly collaborative, fast-paced, growth-focused environment.
- Experience and knowledge in cybersecurity tools such as Nessus ACAS, Microsoft Defender Endpoint, McAfee
- Extensive experience and knowledge with Incident Response testing/plans and Contingency testing/plans
- Experience with systems that deploy API gateways, firewalls, access control lists, IP subnetting, NAT and other network device in Cloud.
- Experience communicating with and coordinating across multiple stakeholders and teams to align to and execute unified goals and plans.
- The ability to effectively communicate with people ranging from non-technical to engineering level.
- Familiarization with DoD enterprise environments
- Familiarization with Agile work environments
- Familiarization with Microsoft Azure Cloud environment
40 Travel Required:
25-50% Telecommuting Options:
Hybrid Work Location:
USA MD Fort Meade Additional Work Locations: Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc . Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
PI286797332
As an Information Security Analyst Sr Principal, you will be responsible for the ICAM program's network accreditation on both unclassified and classified networks. You will also be responsible for executing and reviewing security assessments of computing environments to identify points of vulnerability, non-compliance with established IA standards and regulations, and recommend mitigation strategies.
In this role, a typical day will include:
- Execute success in obtaining an accreditation and maintaining the accreditation for ICAM on a classified network.
- Perform Risk Management Framework (RMF) actions in eMASS such as control assessments, PPSM, upload and manage ICAM assets in hardware/software list, upload STIG checklists and ACAS vulnerability reports.
- Define, draft, publish, and maintain Information Security policies, standards, and guidelines such as Access Control Plan, Identification and Authentication Plan, Auditing and Accountability Plan, Contingency Plan, Incident Response Plan, Vulnerability Management, Continuous Monitoring, Backup and Recovery, System Integrity Plan, Key Management, Media Protection, etc.
- Develop and finalize RMF documentation to include Security Plans, Implementation Plans, Plans of Action and Milestones (POA&Ms), and Risk Assessment Reports
- Assess system compliance against NIST, DoD, and DHA security requirements to include the NIST 800-53 controls, and DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
- Spearhead support government compliance assessments such as penetration testing and accreditation and compliance inspections assessments and mitigations to system security threats/risks throughout the program life cycle.
- Work with the internal and external stakeholders to resolve compliance or audit issues in a timely manner. Enforce the design and implementation of trusted relations among external systems and architectures.
- Ensure system security needs are established and maintained for operations development, security requirements definition, security risk assessment, systems analysis, systems design, security test and evaluation, certification and accreditation, systems hardening, vulnerability, testing and scanning, incident response, disaster recovery, and business continuity planning; and provides analytical support for security policy development and analysis.
- Other related work as directed.
Required Qualifications:
- Active DoD Security Clearance of SECRET, or higher
- Minimum eight (8) + years' experience and proven track record supporting IT customers as part of an enterprise environment.
- BA/BS and 8+ years of Computer Science or equivalent experience
- CISSP, CASP, CISA, CISM or similar for IAM Level III DoD 8570/8140 certification
- Experience with FedRAMP Cloud processes
- Knowledge of the DoD cybersecurity and policy requirements set forth in DoDI 8500.01 "Cybersecurity", NIST 800-53v5 Assessing Privacy and Security Controls and DoDI 8510.01 "Risk Management Framework
- Extensive and experience in NIST 800-53, Risk Framework security controls in eMASS
- Ability to lead in highly collaborative, fast-paced, growth-focused environment.
- Experience and knowledge in cybersecurity tools such as Nessus ACAS, Microsoft Defender Endpoint, McAfee
- Extensive experience and knowledge with Incident Response testing/plans and Contingency testing/plans
- Experience with systems that deploy API gateways, firewalls, access control lists, IP subnetting, NAT and other network device in Cloud.
- Experience communicating with and coordinating across multiple stakeholders and teams to align to and execute unified goals and plans.
- The ability to effectively communicate with people ranging from non-technical to engineering level.
Desired Qualifications:
- Familiarization with DoD enterprise environments
- Familiarization with Agile work environments
- Familiarization with Microsoft Azure Cloud environment
The likely salary range for this position is $142,792 - $184,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
25-50%
Telecommuting Options:
Hybrid
Work Location:
USA MD Fort Meade
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc .
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
PI286797332
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Information Security Analyst Sr Principal - Cloud - Hybrid in Maryland, MD vacancy
$70 - $80 per hour
...Info Security Analyst IV Location: Mount Laurel, NJ Onsite Flexibility: Hybrid — 2 days in office, 3 days work from home (could potentially go to 4 days in office); anchor days flexible Contract Details Position Type: Contract Contract Duration: 4 months...SuggestedPermanent employmentContract workTemporary workFor contractorsWork at officeWork from homeWork visaMonday to FridayFlexible hoursShift work- ...Senior Information Security Analyst Remote Contract to Hire Hours: Core overlap with CST business hours required Senior Information... ...across vulnerability management, security controls, cloud operations, data protection, governance, risk, compliance,...CloudSeniorContract workRemote work
- ...to improve the lives and ensure the security of all Americans—from soldiers and veteran... ...of Scope: We are seeking an Information Security Analyst who is responsible for providing security... ...in cybersecurity architecture, cloud security, DevSecOps, security engineering...CloudWork experience placementRemote work
- VITG is looking for an Cloud Information Security Analyst (CISA) responsible for taking the lead on implementing security tools, security tool usage,... ...hours support depending on deployment schedule Work Type: Hybrid remote in Ellicott City, MD 21043 1 to 2 days in office...CloudFull timeWork experience placementWork at officeRemote workShift work
$55 - $60 per hour
DescriptionPosition Overview The Information Security Analyst II (GRC) provides support for Governance, Risk, and Compliance activities aligned... ...Leave (PTO, Vacation or Sick Leave)Workplace TypeThis is a hybrid position in Columbia,MD.Application DeadlineThis position...SuggestedContract workTemporary work- ...Senior Information Security Analyst As a Senior Information Security Analyst, you will be a key member of our security team, responsible for safeguarding our organization's systems and data from cyber threats. Your primary focus will be assessing security risks, developing...SeniorContract workWork experience placement
- ...IT Security Analyst IIIJohns Hopkins Health Plans (JHHP) is the managed care and health services... ...for implementing and supporting information security engineering for all Johns Hopkins... ...preferred.Demonstrated experience securing cloud environments (Azure Government and/or...CloudLocal area
- We are seeking an experienced Info Security Analyst IV to support FIPS 140 validation projects within a hands-on lab environment. This role focuses on security analysis, cryptographic validation testing, product evaluations, automation, and technical reporting in support...SeniorLocal area
- ...Description Job Description iQuasar is seeking to fill an Information Security Analyst IV position. At iQuasar, we strive to provide the next... ...merit, and business need. Best Regards, Khalid Banday Sr. Recruitment Professional iQuasar, LLC 6 Pidgeon...Contract work
- ...Network Security Analyst LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI Full Poly (Please note this position requires... ...incidents, and implementing measures to safeguard sensitive information. Collaborating with cross-functional teams, you will play a...Temporary workFor contractorsImmediate startFlexible hours
- ...Job Description Job Description Description: Onsite in Fort Meade, MD Our client seeks a Security Analyst serving as an Information Systems Security Officer to lead implementation and enforcement of security policies aligned to NIST frameworks. The role will...Hourly payContract workLocal area
$100k - $330k
...Innovations is a trusted national security partner, dedicated to... ...practices. We focus on challenges in Information Warfare, Cyber Operations,... ...in national security.Principal Information Security Specialist... ...regarding containerization and cloud infrastructure.Key ResponsibilitiesATO...PrincipalCloudSenior- ...impact by connecting and securing critical operations... ...SYSTEMS ENGINEER PRINCIPAL General Dynamics Information Technology (GDIT) is... ...a Systems Engineer Sr Principal with a strong... .... This is hybrid position and requires... ...environments (e.g., cloud-native VMs), ensuring...PrincipalCloudSeniorRemote work
$107.9k - $195.05k
The C5ISR Center Cyber Security Service Provider (CSSP) is a premier... ...vulnerability management across cloud and on-premises environments,... ...experienced Endpoint Security Analyst to support a highly visible, strategic... ...cyber threats.Location: Hybrid - 3 days on site at Adelphi,...CloudFull timeImmediate start$10k
...Technology Partners is hiring a Principal Systems Engineer to lead the... ...platforms supporting both cloud‑hosted and on‑premises environments... ...resilience, uptime, and security compliance.Integrate,... ...With a proven track record in information security, project management,...PrincipalCloudTemporary workFor contractorsLocal area- ...Remote) Position Summary The Cloud Network Architect (Senior)... ..., and sustainment of hybrid cloud and tactical network architectures... ...tactical networks, ensuring secure, resilient, and interoperable... ..., Computer Science, Information Technology, or related field...CloudSeniorFull timeRemote work
$101.8k - $193.8k
...Sr Cybersecurity Consulting & Microsoft Security Platform Technical Specialist Overview We are... ...Identities, cross-tenant access, hybrid identity (Entra Connect)... ...and mission systems. Cloud Security & Workload... ...Azure environments. Information Protection & Data...CloudSeniorOngoing contractLocal area- ...Riverdale, MD Our client is seeking a Security Analyst with a strong security background to... ...assessments across systems, applications, cloud environments, and business processes;... ...Qualifications Proven experience in information security, security assessments, and risk...CloudPermanent employmentFull timeTemporary work
$133.45k - $180.55k
...Qualifications: Skills: Cloud Based Services, DISA... ...SYSTEMS ENGINEER PRINCIPAL General Dynamics Information Technology (GDIT) is... ...a Systems Engineer Sr Principal with a... ...in highly secure environments. As... ...systems. This is hybrid position and requires...PrincipalCloudSeniorFull timeTemporary workPart timeImmediate startRemote workWorldwideFlexible hours- ...a Portfolio/Senior Program Manager to lead a cloud big data program in Columbia, MD. This role is... ...leadership and strategic development in a hybrid working environment. The position requires maintaining an active security clearance, managing contracts effectively, and...CloudSenior
$69.55k - $125.73k
...team at Fort Meade in Maryland. This is a hybrid position based primarily on-site, with... ...Service (eMASS) system. Provide professional security services for IA/Cybersecurity in... ...support to monitor and ensure compliance with information security policies, procedures and...Summer workRemote work2 days per week1 day per week- ...strong backgrounds in Windows and Linux administration, cloud infrastructure, and automation. Responsibilities include administering hybrid environments, implementing automation solutions, and ensuring system security and availability for national security missions. This...CloudSenior
$149.1k - $218.1k
...applications are received.This role is hybrid in Virginia, Maryland,... ...that thrives with learning information quickly and uses resources to... ...engineering, DevOps, cloud infrastructure, or other relevant... ...QualificationsActive U.S. Government Security Clearance.Hands-on experience...CloudFull timeTemporary workLocal areaFlexible hours$69.55k - $125.73k
Via Logic LLC is seeking a cyber professional for a hybrid position in Odenton, Maryland. This role supports the Assessment and Authorization of DoD systems and requires a Bachelor's Degree and 2+ years of experience. The ideal candidate must have an active DoD Secret...$118.3k - $224.9k
...0 Position Role Type:Hybrid U.S. Citizen, U.S. Person... ....S. government issued security clearance is required.... .... We are seeking a Principal Systems Engineer to... ...advancements in Multi-Sensor and Information Fusion, Networked... ...and test of cloud-based software deployments...PrincipalCloudTemporary workWork experience placementWork at officeRemote workFlexible hours$220k - $224k
...REQUIRED Position Overview: Red Arch Solutions is hiring a Principal Backend Software Engineer to join a priority program in... ...AWS, and collaborates effectively using Jira and Confluence. Hybrid TELEWORK position, up to 16 hours per week dependent on tasking...Principal16 hoursFull timeContract workWork experience placementLocal areaRemote work$99k - $225k
Security & Compliance AdministratorThe Opportunity: As an information security risk specialist on our team, you’ll use your experience to work with military clients to... ...in person at a Booz Allen or customer facility.Hybrid: If this position is listed as hybrid, you will...Full timeContract workPart timeWork at officeLocal areaRemote work- ...provisioning of and deploying within hybrid, multi-cloud environments. Leverage AI... ...prototypes to improve analyst workflow. What we are... ...intelligence, cyber security analytics Nice to have... ...analytic tools Formal or informal technical leadership experience...PrincipalCloudFull time
- ...looking for a Portfolio/Senior Program Manager to lead a cloud big data program. This hybrid role involves overseeing program execution, managing... ...technical experts. Candidates must hold an active Secret level security clearance and have the skills to effectively communicate...CloudSeniorFor contractors
$180k - $230k
...Description Job Description Sr. Systems Administrator... ...geographically distributed and highly secure systems. This role provides... ...security protocols, standards, and information security principles. ~... ...mission-critical challenges across cloud-native technologies, software...CloudSeniorFor contractorsCurrently hiringLocal areaImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Analyst Sr Principal - Cloud - Hybrid. Be the first to apply!




