Washington, District of Columbia, USA
14 hours ago
Information Assurance NIST RMF - Active Top Secret
REQ#: RQ189938Public Trust: None Requisition Type: Regular Your Impact

Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.

Job Description

Information Engineer - Information Assurance (IA) – Active Top Secret/SCI Eligibility Required

As a INFORMATION ENGINEER with GDIT, you perform all procedures necessary to ensure the safety of information systems assets and to protect systems from intentional or inadvertent access or destruction. Monitor, evaluate, and maintain systems and procedures to safeguard internal information systems, network, databases, and Web-based security. 

At GDIT, people are our differentiator. As a Principal Information Engineer, you will help ensure today is safe and tomorrow is smarter. Our work depends on a Principal Storage Engineer joining our team to bring professionalism and initiative to a fast-paced environment that offers extensive options for training, certification, and career advancement. When we succeed, you succeed and together our best becomes better.

HOW A INFORMATION ENGINEER WILL MAKE AN IMPACT:

Security Policy Expertise: Stays current with headquarter’s policies and provides recommendations for new or updates to local policies, procedures and standards based on NIST 800-53 standards, headquarter changes, and best practices. 

Develops recommended new or updated local policies, procedures, and standards. 

Provides in a timely manner, summary advisory and assessment reports outlining the effects of headquarter’s policy changes or recommendations to local policies.  

Provides in a timely manner, a Policy Change Summary Report for the development of new or updated policies, procedures, standards, strategies, network architecture, etc. 

Vulnerability Management Expertise: 

Utilize ACAS to scan systems, review scan results, prioritize vulnerabilities. 

Create in a timely manner, customized reports to recommend the best course of action to mitigate newly found vulnerabilities. 

Disseminate in a timely manner, system scan results to technical team leads to facilitate system patching. 

Develops and tracks Plans of Actions and Milestones (POA&M) items to resolution in support of IA compliance. 

Security Assessment and Authorization Expertise: 

Conducts RMF compliant Security Assessment and Authorization (SA&A) in line with NIST and client guidance and directives for new and existing applications, systems, and programs, including evaluation of organizational policies, procedures, and security measures and provide recommendations to system stakeholders for appropriate mitigation techniques or strategies in support of risk acceptance decisions. 

Submit all required documentation for obtaining an Authorization to Operate/Connect to the Approving Officer. 

Maintain Xacta records and RMF artifacts to support system accreditation. 

Provide monthly status reports of SA&A activities. 

WHAT YOU’LL NEED TO SUCCEED:

Educations: Bachelor’s Degree  

Required Experience: 7 years of related experience in Information Assurance with at least 3 years of experience within each expertise area of security policy, vulnerability management, and security assessment and authorization. 

Required Technical Experience: In depth knowledge and experience implementing NIST guidance relating to SA&A, including System Security Plans, Security Test & Evaluation Plans, Risk Assessments, Contingency Plans, and Business Impact Analysis, and applying applicable standards and guidance to managed systems. 

Security Clearance Level: Active Top Secret with SCI eligibility and a T5 or T5R within the last 5 years 

Required Skills and Abilities Communication skills required in one-on-one, team, and senior management settings.  The ability to work and set priorities on multiple projects/tasks at once and operate in a dynamic, fast-paced team-oriented environment. Must have IAM Level III Certification (CISSP, CISM or GSLC)


GDIT IS YOUR PLACE:

401K with company match

Comprehensive health and wellness packages

Internal mobility team dedicated to helping you own your career

Professional growth opportunities including paid education and certifications

Cutting-edge technology you can learn from

Rest and recharge with paid vacation and holidays

#GDITpriority

Confirm your E-mail: Send Email