GDIT is seeking a highly skilled and multi-faceted Cyber Analyst Principal for a critical contract role supporting a commercial cloud service provider's mission-critical systems. This position requires the employee to report full time on site in McLean, VA. The ideal candidate is a proactive and seasoned professional with extensive, hands-on experience navigating the Intel Community (IC) Risk Management Framework (RMF) requirements for classified commercial cloud services and cross domain solutions. This role requires a unique blend of technical engineering prowess, security assessment and auditing skills, deep expertise in continuous monitoring, and the polish to communicate risk to executive leadership. You will be a key contributor to our Governance, Risk, and Compliance (GRC) program, supporting the Information System Security Manager (ISSM), and Cyber Lead in ensuring the unyielding security and integrity of mission-critical systems. The Cyber Analyst Principal will support the following key areas - RMF & Assessment and Authorization (A&A) Security Engineering & System Hardening Security Control Assessor (SCA) & Auditing Continuous Monitoring & GRC Additionally, the Cyber Analyst Principal will - Support Assessment & Authorization (A&A) execution for classified commercial cloud service offerings, and Cross Domain Solutions (CDS) as needed, through the entire respective IC RMF lifecycles to obtain and maintain the applicable authorizations. Assist in maintaining a comprehensive body of evidence for A&A packages. Support the monthly and overall IC Continuous Monitoring requirements. Work with security engineering to proactively identify and assess vulnerabilities related to scans, STIGs, security controls, etc. Support assessment preparation for security control audits, traditional security reviews, and formal inspections, including preparing for and executing IC assessments. Meticulously review artifacts, logs, and system configurations to ensure they provide sufficient evidence of compliance. Coordinate and/or participate in security testing and penetration testing activities to provide an independent validation of the system's security posture.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal
Education Level
Associate degree