Cyber Security Analyst SME

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in United States
Remote
128K-173K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
The Role
The Cyber Security Analyst SME governs security and compliance across cloud infrastructure and application environments. Responsibilities include maintaining security evidence mappings, enforcing CI/CD pipeline gates, conducting vulnerability assessments, analyzing CND events and logs, developing security policies, managing ATO and compliance activities, and advising engineering and governance teams. The role also supports AWS cloud security, data governance, reporting, risk analysis, incident response, and stakeholder communications.
Summary Generated by Built In

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

None

Clearance Level Must Be Able to Obtain:

None

Public Trust/Other Required:

None

Job Family:

Cyber and IT Risk Management

Job Qualifications:

Skills:

Cyber Defense, Information System Security, NIST Standards, Security Risk, Vulnerability Management

Certifications:

None

Experience:

7 + years of related experience

US Citizenship Required:

No

Job Description:

Seize your opportunity to make a personal impact supporting the Case Management Modernization (CMM) Program.  The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States.

GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The Cyber Security Analyst SME will work as part of the CMM cloud engineering and security team, serving as the program's subject matter expert on information systems security and compliance across its Infrastructure and Application environments.

The CMM program maintains separate evidence mapping for Infrastructure and Application pipelines and mandates pipeline gating so that deployments cannot occur unless security criteria are met. The Cyber Security Analyst SME provides the day-to-day governance and evidence necessary to keep releases moving without compromising control integrity, while serving as the program's subject matter expert on Information Assurance (IA), Computer Network Defense (CND), and enterprise security strategy.

The Cyber Security Analyst SME will execute the following responsibilities:

  • Maintain separate security evidence mapping for Infrastructure and Application pipelines, ensuring artifacts satisfy required controls at each stage of the CI/CD process.
  • Enforce pipeline gating criteria so that deployments cannot proceed to production unless required security evidence and approvals are in place.
  • Perform, monitor, test, and troubleshoot hardware and software Information Assurance (IA) problems pertaining to the Computing Environment (CE), Network Environments (NE), Data Platforms (DP), and enclave environments.
  • Collect and analyze data and events from Computer Network Defense (CND) tools such as system alerts, firewall, and network traffic logs, and host system logs.
  • Assess and identify the systems and networks within the NE acceptable configurations and policies.
  • Develop and manage security for more than one IT functional area (e.g., data, systems, network, and/or web) across the enterprise.
  • Lead the development and implementation of security policies and procedures (e.g., user log-on and authentication rules, security breach escalation procedures, security auditing procedures, and use of firewalls and encryption routines).
  • Brief and present status reports on security matters, developing security risk analysis scenarios and response procedures.
  • Track and monitor software viruses and other malicious code across the environment.
  • Lead the evaluation of products and/or procedures to enhance productivity and effectiveness.
  • Provide direct support to the business and IT staff for security-related issues.
  • Partner with DevSecOps, engineering, and governance teams to integrate security and compliance requirements into the release and deployment process.

QUALIFICATIONS

  • BS/BA degree with 7+ years of experience of general experience in information systems providing project leadership monitoring computer networks and security issues and investigating and resolving security and cybersecurity incidents.
  • Experience documenting security incidents and performing security vulnerability assessments.
  • Experience working with Agile teams and SAFe to perform testing and uncover system and network vulnerabilities.
  • Experience may be considered in lieu of degree.
  • Strong working experience in AWS Cloud Security (certification preferred); 3+ years' experience.
  • Prior ATO experience in an AWS environment for a large agency; 4+ years' experience.
  • Solid understanding of NIST Standards.
  • Prior experience with the ATO process, FedRAMP, CIS, and ISO 27001 (4+ years).
  • Solid understanding of ICAM, SIEM, and vulnerability management tools.
  • Experience with CSAM or similar tools.
  • Familiarity with data governance, metadata management, and data quality practices.
  • Experience with SQL for data querying and validation.
  • Proficiency with BI/reporting tools such as Power BI, Tableau, or QuickSight.
  • Familiarity with statistical analysis tools/techniques (e.g., Excel, R, Python) preferred.
  • Experience with cloud data platforms (Snowflake, Databricks, AWS preferred).
  • Understanding of data architecture concepts (data lake, lakehouse, warehouse).
  • Strong analytical, problem‑solving, & statistical analysis skills with attention to detail and data accuracy.
  • Preferred: Certified Information Systems Security Professional (CISSP).

COMMUNICATION & ORGANIZATIONAL

  • Excellent presentation and communication (oral and written) skills.
  • Consultant mindset with the ability to work with high level customer stakeholders and build excellent customer relationships.
  • Experience identifying and applying industry tools, solutions, methods best practices, and emerging technologies.
  • Strong analytical skills and problem-solving skills with the ability to formulate and communicate recommendations for improvement.
  • Demonstrated ability to work effectively, independently, and as part of a team.
  • Strong communication skills, with the ability to translate technical security findings into risk-based guidance for stakeholders and program leadership.

The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

None

Telecommuting Options:

Remote

Work Location:

Any Location / Remote

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

 



Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Skills Required

  • Bachelor’s degree in a relevant field and 7+ years of information systems, network security, cybersecurity incident, or project leadership experience
  • Experience documenting security incidents and performing security vulnerability assessments
  • Experience working with Agile teams and SAFe to test systems and networks and uncover vulnerabilities
  • Strong working experience in AWS Cloud Security
  • At least 3 years of AWS Cloud Security experience
  • At least 4 years of prior ATO experience in an AWS environment for a large agency
  • Strong understanding of NIST Standards
  • At least 4 years of experience with ATO processes, FedRAMP, CIS, and ISO 27001
  • Understanding of ICAM, SIEM, and vulnerability management tools
  • Experience with CSAM or similar tools
  • Familiarity with data governance, metadata management, and data quality practices
  • Experience using SQL for data querying and validation
  • Proficiency with BI and reporting tools such as Power BI, Tableau, or QuickSight
  • Familiarity with statistical analysis tools or techniques such as Excel, R, or Python
  • Experience with cloud data platforms such as Snowflake, Databricks, or AWS
  • Understanding of data architecture concepts including data lakes, lakehouses, and data warehouses
  • Strong analytical, problem-solving, and statistical analysis skills with attention to detail and data accuracy
  • Excellent oral and written presentation and communication skills
  • Ability to work with senior customer stakeholders and build strong customer relationships
  • Experience identifying and applying industry tools, solutions, methods, best practices, and emerging technologies
  • Ability to work effectively independently and as part of a team
  • Ability to translate technical security findings into risk-based guidance for stakeholders and program leadership
  • Certified Information Systems Security Professional (CISSP)

General Dynamics Information Technology Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about General Dynamics Information Technology and has not been reviewed or approved by General Dynamics Information Technology.

  • Affordable Benefits Pay and benefits are described as good or okay in multiple places, and the overall package is often portrayed as acceptable even when base pay is not viewed as top-tier.
  • Healthcare Strength Medical, dental, and vision plan options are presented as comprehensive, with additional protections like disability and life insurance contributing to a well-rounded health and protection offering.
  • Retirement Support A 401(k) plan with company match is consistently highlighted as part of the total rewards package, supporting longer-term financial planning.

General Dynamics Information Technology Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Falls Church, VA
21,625 Employees

What We Do

We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

Similar Jobs

Enverus Logo Enverus

Test Automation Engineer

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
2 Locations
1800 Employees

Motive Logo Motive

Artificial Intelligence Engineer

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
140K-160K Annually

Applied Systems Logo Applied Systems

Manager, HRIS

Artificial Intelligence • Cloud • Payments • Software • Business Intelligence • Generative AI • Automation
Remote or Hybrid
United States
3116 Employees
100K-160K Annually

General Motors Logo General Motors

Manager, AV Evaluation Framework

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
Sunnyvale, CA, USA
165000 Employees
219K-335K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account