Type of Requisition:
RegularClearance Level Must Currently Possess:
Top SecretClearance Level Must Be Able to Obtain:
Top SecretPublic Trust/Other Required:
NoneJob Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
Cybersecurity Compliance, Information Systems, Information System Security, Vulnerability ScanningCertifications:
NoneExperience:
6 + years of related experienceUS Citizenship Required:
YesJob Description:
The Cyber Security Analyst (ISSO) is responsible for maintaining the operational security posture, continuous monitoring, and regulatory compliance of assigned Department of Defense (DoD) information systems and coalition network environments. The Cyber Security Analyst (ISSO) works closely with the Information System Security Manager (ISSM), system owners, and network/systems engineering teams to enforce DoD cybersecurity baselines and technical controls throughout the system lifecycle.
This role requires hands-on experience with core enterprise cybersecurity tools, including Splunk Enterprise/Enterprise Security (ES), Tenable/ACAS, and Trellix ePolicy Orchestrator (ePO), to drive real-time telemetry analysis, vulnerability management, endpoint compliance, and continuous monitoring (ConMon) under the NIST Risk Management Framework (RMF). All compliance tracking, documentation, and authorization management for assigned systems is executed within eMASS.
Primary Responsibilities1. SIEM, Security Analytics & Continuous Monitoring- Perform daily security event reviews, log analysis, and system auditing across servers, network infrastructure, and operating systems in coalition enclaves.
- Develop and execute complex Search Processing Language (SPL) queries in Splunk Enterprise/ES to aggregate and correlate events across multiple data sources.
- Design, implement, and maintain Splunk dashboards, visualizations, and alerts to detect anomalous activity, policy violations, and unauthorized access attempts.
- Troubleshoot log ingestion, forwarding, parsing, and telemetry issues, ensuring comprehensive and accurate data collection.
- Validate NTP time synchronization and log integrity across distributed network devices and servers.
- Ensure audit records are collected, retained, and protected in accordance with DoD policies and applicable regulations.
- Operate and maintain the Assured Compliance Assessment Solution (ACAS) utilizing Tenable Security Center and Nessus scanners across enclave infrastructure.
- Configure, schedule, and execute authenticated/unauthenticated credentialed scans for servers, network devices, databases, and workstations.
- Manage ACAS scan policies, credentials, and plugin updates to ensure comprehensive vulnerability coverage.
- Analyze scan results, validate findings, triage false positives, and track remediation in support of Plans of Action and Milestones (POA&Ms).
- Administer Trellix ePO within the enterprise enclave, including agent deployment, policy enforcement, update scheduling, and verification of signature/definition compliance.
- Produce endpoint compliance metrics and operational reports for leadership, system administrators, and inspection teams.
- Monitor and maintain the security posture of enclave gateways, firewalls, boundary devices, and intrusion detection/prevention systems (IDS/IPS).
- Help protect enclave resources against unauthorized access, modification, destruction, or disclosure.
- Review change requests and conduct Security Impact Analyses (SIA) for system modifications, port/protocol changes, and routing updates.
- Coordinate with systems and network administrators to ensure security and monitoring requirements are integrated into system deployments and changes.
- Support end-to-end RMF activities in eMASS, including maintaining System Security Plans (SSPs), continuous monitoring strategies, and security control implementation statements.
- Populate, update, and manage system milestones, control assessments, test results, and POA&Ms within eMASS.
- Verify implementation and enforcement of DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) across assigned systems.
Education & Experience
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related technical discipline.Equivalent relevant experience, military training, or technical certifications may be considered in lieu of a degree.
- 7+ years of progressive experience in cybersecurity, information assurance, or security operations supporting DoD systems and networks.
Certifications
- Active DoD 8570.01-M / DoD 8140 baseline certification meeting IAT Level III
Technical Experience
- Hands-on operational experience with Splunk Enterprise and/or Splunk Enterprise Security (ES), including SPL query development, correlation searches, dashboard creation, alerting, and forwarder troubleshooting.
- Demonstrated experience configuring, executing, and troubleshooting ACAS/Tenable scans; managing plugins and credentials; and assessing vulnerability findings in support of POA&M management.
- Experience administering Trellix ePO in an enterprise environment, including policy tuning, agent management, and endpoint compliance reporting.
- Proven proficiency using eMASS as the primary RMF governance tool for managing packages, documenting controls, uploading test results, and managing POA&Ms.
- In-depth experience implementing and remediating DISA STIGs and SCAP benchmarks for Windows/Linux systems, applications, and network infrastructure.
Clearance
- Active DoD Secret security clearance (or higher), with the ability to maintain the clearance as a condition of employment.
Preferred Qualifications
- Active IAT Level III certification (e.g., CASP+ CE, CISSP, or equivalent).
- Prior experience securing and monitoring coalition or partner network enclaves (e.g., CENTRIXS, BICES, Mission Partner Environments [MPE]).
- Advanced proficiency with eMASS package management, workflow transitions, and artifact mapping.
- Tool-specific certifications such as Splunk Certified Power User/Enterprise Admin or Tenable Certified Nessus Auditor.
- Scripting experience (e.g., Bash, Python, PowerShell) to support automation of log parsing, reporting, and administrative workflows.
- Strong written and verbal communication skills, including experience presenting technical risk and compliance posture to ISSMs, system owners, and other stakeholders.
#DefenseOCONUS
The likely salary range for this position is $83,927 - $113,549. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Total compensation for international positions varies by tax, social security, and immigration statuses, as well as location. Generally, an international assignment may include allowances, premium uplifts, and/or relocation or transportation benefits, above base salary range noted.Scheduled Weekly Hours:
40Travel Required:
Less than 10%Telecommuting Options:
OnsiteWork Location:
InternationalAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected VeteransSkills Required
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related technical discipline, or equivalent relevant experience, military training, or technical certifications
- 6+ years of related experience
- 7+ years of progressive experience in cybersecurity, information assurance, or security operations supporting DoD systems and networks
- Active DoD 8570.01-M or DoD 8140 baseline certification meeting IAT Level III
- Hands-on experience with Splunk Enterprise or Splunk Enterprise Security, including SPL queries, correlation searches, dashboards, alerting, and forwarder troubleshooting
- Experience configuring, executing, and troubleshooting ACAS/Tenable scans, including plugin and credential management and vulnerability assessment
- Experience administering Trellix ePO, including policy tuning, agent management, and endpoint compliance reporting
- Proficiency using eMASS for RMF packages, controls, test results, and POA&M management
- Experience implementing and remediating DISA STIGs and SCAP benchmarks for Windows, Linux, applications, and network infrastructure
- Active DoD Secret security clearance or higher, with ability to maintain it
- Active IAT Level III certification such as CASP+ CE, CISSP, or equivalent
- Experience securing coalition or partner network enclaves such as CENTRIXS, BICES, or Mission Partner Environments
- Advanced eMASS package management, workflow transition, and artifact mapping experience
- Splunk Certified Power User or Enterprise Admin certification
- Tenable Certified Nessus Auditor certification
- Bash, Python, or PowerShell scripting experience
- Strong written and verbal communication skills with experience presenting technical risk and compliance posture
General Dynamics Information Technology Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about General Dynamics Information Technology and has not been reviewed or approved by General Dynamics Information Technology.
-
Affordable Benefits — Pay and benefits are described as good or okay in multiple places, and the overall package is often portrayed as acceptable even when base pay is not viewed as top-tier.
-
Healthcare Strength — Medical, dental, and vision plan options are presented as comprehensive, with additional protections like disability and life insurance contributing to a well-rounded health and protection offering.
-
Retirement Support — A 401(k) plan with company match is consistently highlighted as part of the total rewards package, supporting longer-term financial planning.
General Dynamics Information Technology Insights
What We Do
We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.







