IT Risk and Compliance Specialist Principal

General Dynamics Information TechnologyWashington, DC
$136,000 - $184,000Hybrid

About The Position

The TSS Governance, Risk, and Compliance (GRC) Team is seeking an IT Risk and Compliance Specialist Principal to support an awarded contract with the Department of Commerce, performing Information System Security Officer (ISSO) duties and responsibilities. This role requires a strong cyber background and a drive for innovation. The specialist will be responsible for managing various aspects of information system security, risk management, and compliance within a federal environment.

Requirements

  • Active Secret clearance.
  • Technical Training, Certification(s) or Degree with 5+ years of related experience.
  • Management of Microsoft Azure Security Stack (Sentinel, Defender, Auditing).
  • Applying Risk Management Framework (RMF) for Classified Systems/Applications to obtain and maintain an Authorization to Operate (ATO).
  • Management of Plan of Action and Milestones (POA&Ms) and cyber hygiene continuous monitoring.
  • Experience with GRC Tools CSAM, SCAP, STIG, Patching, eMASS, and other RMF tools.
  • Cybersecurity, A&A package development and processes.
  • Experience with gaining an ATO for systems and working the systems through the assessment and authorization process.
  • Experience with Cybersecurity, Information Security, and Information Technology Security processes, protocols, and procedures.
  • Experience with Cloud Security (Azure for Government) and SIPRNET.
  • Experience working with internet, web, application and network security techniques.
  • US citizenship required.
  • 3 Days per Week on-site at customer location in NW Washington DC.
  • Experience working in Federal environments.
  • Ability to work independently and remote.
  • Strong communication skills.

Nice To Haves

  • Top Secret clearance (must be able to obtain).

Responsibilities

  • Perform Information System Security Officer (ISSO) duties and responsibilities.
  • Manage Microsoft Azure Security Stack (Sentinel, Defender, Auditing).
  • Apply Risk Management Framework (RMF) for Classified Systems/Applications to obtain and maintain an Authorization to Operate (ATO).
  • Manage Plan of Action and Milestones (POA&Ms) and cyber hygiene continuous monitoring.
  • Utilize GRC Tools such as CSAM, SCAP, STIG, Patching, eMASS, and other RMF tools.
  • Develop Cybersecurity, A&A packages and processes.
  • Gain ATO for systems and manage systems through the assessment and authorization process.
  • Implement Cybersecurity, Information Security, and Information Technology Security processes, protocols, and procedures.
  • Manage Cloud Security, specifically Azure for Government and SIPRNET.
  • Implement internet, web, application, and network security techniques.
  • Work in Federal environments.
  • Communicate effectively.

Benefits

  • AI-powered career tool that identifies career steps and learning opportunities
  • Internal mobility team focused on helping you achieve your career goals
  • Comprehensive benefits and wellness packages
  • 401K with company match
  • Competitive pay
  • Paid time off
  • Variety of medical plan options, some with Health Savings Accounts
  • Dental plan options
  • Vision plan
  • 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
  • Full flex work weeks where possible
  • Variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service