Information System Security Manager
Public Trust: None
Requisition Type: Regular
Your Impact
Own your opportunity to be at the center of GDIT’s business operations. Make an impact by collaborating across functions to make mission success achievable.
Job Description
Help safeguard critical government systems by applying your hands-on ISSM/ISSO experience to security governance, risk evaluation, and compliance oversight. As an IT and Cyber Risk Auditor at GDIT, you will leverage your background managing RMF controls, system documentation, and continuous monitoring activities to deliver thorough, accurate, and mission‑focused security assessments.
This role is ideal for cybersecurity professionals who have previously served as an ISSM or ISSO and are seeking to transition into a dedicated risk, audit, and compliance position where they can influence security posture across multiple systems and programs.
MEANINGFUL WORK AND PERSONAL IMPACT
As an IT and Cyber Risk Auditor, the work you do at GDIT will have a direct and measurable impact on our customer’s mission. You’ll help ensure the integrity, security, and compliance of their IT systems by identifying potential risks, validating critical controls, and supporting continuous improvement efforts. Your work will enhance operational resilience and enable the customer to execute their mission with confidence.
● Conduct comprehensive security audits and RMF control assessments in accordance with DCSA, JSIG, and SAP security requirements, leveraging prior ISSO/ISSM experience.
● Review, validate, and improve security documentation and artifacts such as SSPs, POA&Ms, Continuous Monitoring outputs, and other evidence required by RMF and DCSA assessment standards.
● Develop, implement, and oversee operational information system security policies and guidelines aligned with the Risk Management Framework (RMF), JSIG, and applicable DCSA directives.
● Evaluate system security controls for effectiveness, completeness, and compliance with NIST SP 800‑53, DCSA/DoW requirements, JSIG standards, and internal organizational policies.
● Collaborate with ISSOs, ISSMs, SAP security personnel, and technical teams to analyze findings, recommend remediation actions, and ensure timely correction of identified vulnerabilities.
● Analyze system changes, configuration updates, and vulnerability data to determine authorization impacts, risk‑level changes, and required updates under RMF and JSIG/SAP processes.
● Support ongoing ATO and SAP authorization maintenance by tracking assessments, evidence submissions, and documentation required throughout the RMF and JSIG lifecycles.
● Prepare and deliver clear, risk‑focused briefings to system owners, DCSA assessors, SAP authorities, and other stakeholders regarding compliance status, audit results, and security‑related decisions.
WHAT YOU’LL NEED TO SUCCEED
Bring your cyber expertise and drive for innovation to GDIT. The IT and Cyber Risk Auditor must have:
● Education: Bachelors degree
● Experience: 2+ years of related experience as a prior ISSO/ISSM. In lieu of degree, additional 4+ years of work experience/training/education will be required
● Certifications: IAT II (Security +, SSCP, CCNA Security)
● Technical skills: Strong understanding of NIST SP 800-53, DoW cybersecurity requirements, and control implementation/assessment practices. Familiarity with Windows/Linux environments, vulnerability tools, and security baselines.
● Prior SAP experience desired
● Security clearance: Must have an active Top Secret clearance in order to be considered, and the ability to obtain and maintain TS/SCI clearance.
● US citizenship required
● Role requirements: Onsite, 5 days/week in Falls Church, VA office location
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
● Growth: AI-powered career tool that identifies career steps and learning opportunities.
● Support: An internal mobility team focused on helping you achieve your career goals.
● Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off.
● Community: Award-winning culture of innovation and a military-friendly workplace.
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
Work Requirements
Years of Experience
2 + years of related experience
* may vary based on technical training, certification(s), or degree
Certification
CompTIA Security+ CE | CompTIA - CompTIA
Travel Required
Less than 10%
Citizenship
U.S. Citizenship Required
Recommended Jobs
Floating Community Manager - Charlottesville, Richmond, Virginia Beach, Hampton
ABOUT GREYSTAR Greystar is a leading, fully integrated global real estate platform offering expertise in property management, investment management, development, and construction services in ins…
SAP Supply Chain Management Specialist
BridgePhase is a mission-focused technology company that designs, builds, secures, and operates modern digital solutions that drive national security, government efficiency, and mission success acros…
Maintenance Technician I - UniFirst
Our Team is Kind of a Big Deal! UniFirst is seeking a reliable and hardworking Maintenance Tech I to join our UniFirst community. As a Team Partner in the Maintenance Department, you will handle re…
Child Day Care Teacher
Job Description Job Description About This Role We are looking for a dedicated Childcare Provider to join our team. As a Childcare Provider, you will play a crucial role in the development…
Banquet Server / Server Assistant
DBS is looking for enthusiastic and dedicated individuals for the role of Banquet Server / Server Assistant to join our team. As a family-owned hospitality staffing company, we specialize in connecti…
RV Lot Porter
Pete's RV is looking for an experienced Lot Porter to join our growing tractor team! Our ideal candidate will have experience towing and operating tractors and forklifts. Heavy equipment experience i…
Carrier Manager
Our Story With $1,000 in his pocket, Allen Lund made the brave decision to start his own transportation brokerage company. It was 1976, when Allen Lund Company formally opened the first office …
Cyber SOC Incident Detector (MIDS Shift) - TS/SCI with Polygraph
Public Trust: None Requisition Type: Regular Your Impact Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise t…
New Logo Account Executive - Data & AI Solutions
About Infinitive Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep indu…
Membership Manager
Job Title: Membership Manager Industry: Professional Association / Membership Services Location (city, state): Washington, DC Assignment Type: Direct Hire Pay: $110,000 - $115,000 ann…