We are seeking a qualified, motivated individual to join GDIT as an Information Security Analyst Advisor. We are seeking a highly skilled and hands-on Azure Government Secret Cloud Security Engineers to architect, implement, and manage secure cloud solutions in compliance with DoD IL6, FedRamp High and related cybersecurity standards. The ideal candidate will have deep expertise in Azure Gov cloud services, strong scripting and automation skills, and a proven track record of securing mission-critical workloads in classified environments. This position will be responsible for implementing and monitoring necessary security controls to receive and maintain an Authorization to Operate (ATO) along with tracking and maintaining certification information databases, websites and tools to ensure that networks, systems and devices are properly documented and managed from a security perspective. As part of our Cyber Security Team, you will be joining an Agile Team utilizing multiple Scrum Teams to support the complex systems governing and facilitating our customer business operations, making recommendations, and implementing changes to increase efficiency and support overall application objectives. You will collaborate with GDIT technical leadership, Government customers, and other key stakeholders to assess our existing and new systems infrastructure. How You'll Make an Impact: Ensure security policies and procedures are implemented Identifying corrective actions/mitigation strategies to achieve/sustain RMF compliance Review of virus detection software to ensure compliance Review and analyze system implementation plans Advising system owners and stakeholders on new deployments and advanced cyber security techniques Information Security Analyst Duties and Responsibilities: Design, implement, and maintain secure cloud architectures within Azure Government Secret classified environments Enforce zero trust principles, role-based access control (RBAC), and identity federation (e.g., AZURE AD B2B/B2C with CAC/PIV) Configure and manage security controls such as Microsoft Defender for Cloud, Key Vault, Azure Policy, NSGs, and Private Endpoints Automate compliance and security operations using PowerShell, Terraform, or ARM templates Integrate SIEM/SOAR tools (e.g., Microsoft Sentinel for IL6) for continuous monitoring, logging, and incident response Conduct vulnerability assessments and implement remediations aligned to NIST 800-53, DoD STIGs, and JSIG Collaborate with mission owners, compliance teams, and developers to ensure secure DevSecOps pipelines Support Authority to Operate (ATO) processes by generating security documentation, control evidence, and supporting audits Navigate federal systems through the authorization process to achieve and maintain Authority to Operate (ATO) Work with the ISSO, Program and DOC ITD IA teams to maintain the necessary security authorizations Develop comprehensive System Security Plans (SSPs) documenting all implemented NIST 800-53 controls Coordinate security assessments with third-party assessors Manage Plans of Actions & Milestones (POA&Ms) for addressing identified vulnerabilities Ensure continuous monitoring plans meet agency requirements Prepare authorization packages for government review Maintain ongoing compliance through change management processes Serve as the liaison between technical teams and authorizing officials Translate security requirements into actionable tasks Ensure all documentation meets the rigorous standards required for federal information systems
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Industry
Professional, Scientific, and Technical Services
Number of Employees
5,001-10,000 employees