Current jobs related to Cybersecurity Control Evaluator - Bethesda, Maryland - General Dynamics Information Technology

  • Cybersecurity Assessor

    2 months ago


    Bethesda, Maryland, United States McIntire Solutions, LLC Full time

    Job SummaryMcIntire Solutions, LLC is seeking a highly skilled Security Control Assessor to support our customer's cybersecurity needs. As a Security Control Assessor, you will be responsible for conducting security assessments and evaluations to ensure compliance with industry standards and regulations.Key ResponsibilitiesConduct security assessments and...


  • Bethesda, Maryland, United States The Swift Group Full time

    Job Title: Security Control AssessorThe Swift Group is seeking an experienced Security Control Assessor to evaluate the security posture of our systems and infrastructure, ensuring compliance with relevant frameworks and standards, and identifying vulnerabilities to mitigate potential risks effectively.Key Responsibilities:Evaluate the security posture of...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Job Title: Security Control AssessorJob Summary:We are seeking a highly skilled Security Control Assessor to join our team at General Dynamics Information Technology. As a Security Control Assessor, you will be responsible for conducting security assessments and providing recommendations to improve the security posture of our clients' systems and...


  • Bethesda, Maryland, United States McIntire Solutions Full time

    Job DescriptionJob Title: Cybersecurity SpecialistLocation: Bethesda, MDMcIntire Solutions is seeking a Cybersecurity Specialist to support our Bethesda Customer. Responsibilities include, but are not limited to:Three (3) years of cybersecurity experience with at least one year of experience conducting SCAs under ICD 503/CNSSI 1253 NIST Cybersecurity...


  • Bethesda, Maryland, United States The MITRE Corporation Full time

    Join Our Team as a Cybersecurity AdvisorAt The MITRE Corporation, we're committed to tackling our nation's toughest challenges and making a lasting impact in fields like cybersecurity, healthcare, aviation, defense, and enterprise transformation. As a Cybersecurity Advisor, you'll play a critical role in developing, coordinating, and implementing...


  • Bethesda, Maryland, United States Leidos Full time

    Job Summary:Leidos is seeking a highly skilled Information Systems Security Officer (ISSO) to support a large network services opportunity in Montgomery County, MD.Key Responsibilities:Provide on-site support to the health agency in MD.Serve as the lead for all program Security Assessment and Authorization (SA&A) activities.Lead the evaluation of security...


  • Bethesda, Maryland, United States McIntire Solutions Full time

    Job DescriptionJob Title: Cybersecurity SpecialistLocation: Bethesda, MDMcIntire Solutions is seeking a Cybersecurity Specialist to support our Bethesda Customer. Responsibilities include, but are not limited to:Three (3) years of cybersecurity experience with at least one year of experience conducting SCAs under ICD 503/CNSSI 1253 NIST Cybersecurity...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Job Title: Security Control AssessorJob Summary:GDIT is seeking a highly skilled Security Control Assessor to join our team. As a Security Control Assessor, you will be responsible for conducting security assessments and providing recommendations to improve the security posture of our clients' systems and networks.Key Responsibilities:Conduct security...


  • Bethesda, Maryland, United States Noblis Full time

    About the RoleNoblis is seeking a highly skilled Cybersecurity Specialist SME to support an Intelligence Community (IC) organization in the fast-growing National Security Sector in Bethesda, Maryland.Key ResponsibilitiesDevelop, collect, analyze, and report cybersecurity data to respond to customer requirements and inform senior executive actions.Respond to...


  • Bethesda, Maryland, United States MITRE Full time

    At MITRE, we're committed to tackling our nation's toughest challenges and creating lasting impact in fields like cybersecurity, healthcare, and defense. As a Cybersecurity Advisor, you'll work with senior government leaders to develop and implement cybersecurity initiatives and policy across the Intelligence Community. You'll serve as a trusted advisor,...

  • Cybersecurity Advisor

    2 weeks ago


    Bethesda, Maryland, United States MITRE Full time

    Join Our Team as a Cybersecurity AdvisorAt MITRE, we're committed to tackling our nation's toughest challenges and creating a safer, healthier, and more secure nation and world. As a Cybersecurity Advisor, you'll play a critical role in developing, coordinating, and implementing cybersecurity initiatives and policy across the 18 Intelligence Community...


  • Bethesda, Maryland, United States McIntire Solutions Full time

    Job SummaryWe are seeking a highly skilled Security Control Assessor to join our team at McIntire Solutions. As a Security Control Assessor, you will be responsible for conducting security assessments and validating security controls to ensure compliance with ICD 503, NIST Cybersecurity Framework, and other relevant frameworks.Key Responsibilities:Conduct...


  • Bethesda, Maryland, United States McIntire Solutions, LLC Full time

    Job Title: Security Control AssessorAbout the Role:McIntire Solutions, LLC is seeking a highly skilled Security Control Assessor to support our customer in Bethesda, MD. As a key member of our team, you will be responsible for conducting security assessments and providing expert advice on cybersecurity best practices.Key Responsibilities:Conduct security...


  • Bethesda, Maryland, United States Precision Solutions Full time

    Job SummaryPrecision Solutions is seeking a highly skilled Senior Security Control Assessor to join our team. As a key member of our cybersecurity team, you will be responsible for evaluating the security controls within network systems to identify vulnerabilities and recommend actions to correct problems.ResponsibilitiesEvaluate security controls within...


  • Bethesda, Maryland, United States 22nd Century Technologies, Inc. Full time

    Job Title: Cybersecurity Specialist - Vulnerability ManagementLocation: NationwideDuration: Full timeClearance Required: Public TrustJob Description:Required Experience:8+ years in cybersecurity, focusing on vulnerability management, patch management, and threat detection in federal systems.Technical Expertise:Expert knowledge of tools like Tenable Security...


  • Bethesda, Maryland, United States McIntire Solutions, LLC Full time

    Job Title: Security Control AssessorMcIntire Solutions, LLC is seeking a highly skilled Security Control Assessor to support our Bethesda Customer.Responsibilities:Conduct Security Control Assessments (SCAs) under ICD 503/CNSSI 1253 NIST Cybersecurity Framework, Risk Management Framework (RMF), or a similar framework.Perform vulnerability scans and recognize...


  • Bethesda, Maryland, United States Excentium Full time

    Cybersecurity Engineer Job DescriptionExcentium, Inc. is a Service-Disabled Veteran owned small business that provides Cyber Security Engineering, Information Assurance (IA), management, Certification and Accreditation (C&A), and other IT services to government and commercial organizations.We are seeking a highly skilled Cybersecurity Engineer to support one...


  • Bethesda, Maryland, United States AccelerEd Full time

    Job SummaryWe are seeking a highly skilled and experienced Director of Cybersecurity to join our team at AccelerEd. As a key member of our organization, you will be responsible for developing and implementing a comprehensive enterprise cyber security and IT risk management program.Key ResponsibilitiesDevelop and Implement Cyber Security Program: Conduct a...


  • Bethesda, Maryland, United States Excentium Full time

    Cybersecurity Engineer - Risk Management Framework SpecialistExcentium, Inc. is a Service-Disabled Veteran owned small business that provides Cyber Security Engineering, Information Assurance (IA), management, Certification and Accreditation (C&A), and other IT services to government and commercial organizations.We have an opportunity for a Cybersecurity...


  • Bethesda, Maryland, United States Henry M. Jackson Foundation for the Advancement of Military Medicine Full time

    Job Title: Transcript Evaluator IIWe are seeking a highly skilled Transcript Evaluator II to join our team at the Henry M. Jackson Foundation for the Advancement of Military Medicine. As a key member of our team, you will be responsible for providing quality control and daily processing of all student records.Key Responsibilities:Maintain transfer...

Cybersecurity Control Evaluator

2 months ago


Bethesda, Maryland, United States General Dynamics Information Technology Full time

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Top Secret SCI + Polygraph

Clearance Level Must Be Able to Obtain:

Top Secret SCI + Polygraph

Suitability:

Public Trust/Other Required:

None

Job Family:

Cyber Security

Job Qualifications:

Skills:

Cloud: Amazon Web Services (AWS), Cybersecurity, RMF

Certifications:

Experience:

6 + years of related experience

US Citizenship Required:

Yes

Job Overview:

A position as a Cybersecurity Control Evaluator at General Dynamics Information Technology entails taking charge of opportunities to bolster and enhance our clients' missions. At GDIT, cybersecurity is integral to every facet of our operations. We are continuously advancing our cyber solutions to tackle our clients' most significant challenges, providing you with the chance to develop and evolve alongside these technologies.

HOW A CYBERSECURITY CONTROL EVALUATOR WILL MAKE A DIFFERENCE:

  • Deliver documentation to clients detailing all identified system risks, planned testing procedures, and results.
  • Offer enhancement capabilities and Standard Operating Procedures (SOPs) to assessment operations for execution and implementation.
  • Uphold accountability to ensure the integrity and confidentiality of the assessment process.
  • Analyze vulnerabilities and potential exploitations.
  • Review and provide recommendations on program-level documentation (e.g., requirements specifications, system architecture, design documents, test plans, security plans, etc.).
  • Develop and document security evaluation test plans and procedures.
  • Assist in researching, evaluating, and formulating relevant Information Security policies and guidance.
  • Actively participate in or lead Technical Exchange Meetings (TEMS) and application review boards, documenting action items/results of these events.
  • Brief management as necessary on the status of action items and/or results of activities.
  • Conduct hands-on security testing, analyze test results, document risks, and recommend countermeasures.
  • Assess and quantify risks based on threats, vulnerabilities, and deficiencies uncovered during testing.
  • Identify mitigating countermeasures for recognized threats, vulnerabilities, and deficiencies.
  • Make recommendations to the IC CISO or designee for enhancing TTPS for improved cyber threat protection.

WHAT YOU'LL NEED TO SUCCEED:

  • Education: Bachelor's Degree (Computer Engineering, Computer Science, Electrical Engineering, Information Systems, Information Technology, Cybersecurity, or a closely related discipline).
  • Required Experience: 6+ years.
  • Required Technical Skills:
  • Three (3) years of cybersecurity experience with at least one year of experience conducting SCAs under ICD 503/CNSSI 1253 NIST Cybersecurity Framework, Risk Management Framework (RMF), or a similar framework.
  • One full year of SCA experience within the last three calendar years.
  • One full year supporting cloud environments and experience performing security assessments in cloud environments (AWS, Google, IBM, Azure, and Oracle).
  • Skill in conducting vulnerability scans and recognizing vulnerabilities in security systems (e.g., Cloud Environments) AWS, Google, IBM, Azure, and Oracle.
  • Must meet Department of Defense (DOD Manual (M) Information Assurances Workforce Improvement Program requirement for Information Assurance Manager (IAM) Level III (CISM, CISSP or Associate GSLC or CCISO).
  • Knowledge of general attack strategies (e.g., MITRE ATT&CK Framework).
  • Knowledge of NISPOM, ICD 503, NIST SP 800-53, ICD 705, and other ICDs as appropriate.
  • Knowledge of Independent Verification & Validation (IV&V) of security controls.
  • Three years of experience performing security assessments in a cloud computing environment.
  • Strong writing skills.
  • Knowledge of system and application security threats and vulnerabilities.
  • Knowledge of network access, identity, and access management e.g., public key infrastructure (PKI).
  • Knowledge of network protocols such as Transition Control Protocol/Internet Protocol (TCP/IP), Dynamic Host Configuration, Domain Name System (DNS), and directory Services.
  • Ability to assess the robustness of security systems and designs.
  • Knowledge of cybersecurity principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Write final reports and defend all findings, including risk or vulnerability, mitigation strategies, and references.
  • Report vulnerabilities identified during security assessments.
  • Write penetration testing Rules of Engagement (RoE), Test Plans, and Standard Operating Procedures (SOP).
  • Conduct security reviews and technical research and provide reporting to enhance security defense mechanisms.
  • Security Clearance Level: TS/SCI with active polygraph.

GDIT IS YOUR PLACE:

  • 401K with company match.
  • Comprehensive health and wellness packages.
  • Internal mobility team dedicated to helping you own your career.
  • Professional growth opportunities including paid education and certifications.
  • Cutting-edge technology you can learn from.
  • Rest and recharge with paid vacation and holidays.

#OpportunityOwned
#GDITCareers
#WeAreGDIT
#JET

#ISP2024InnovativeTalent

Scheduled Weekly Hours:

40

Travel Required:

Less than 10%

Telecommuting Options:

Onsite

Work Location:

USA MD Bethesda

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. We connect people with the most impactful client missions, creating an unparalleled work experience that allows them to see their impact every day. We create opportunities for our people to lead and learn simultaneously. From securing our nation's most sensitive systems to enabling digital transformation and cloud adoption, our people are the ones who make change real. GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.