Job Closed
This listing is no longer active.
Art of the possible.
Cybersecurity Lead
Location
District of Columbia + 1 moreAll locations: District of Columbia | Washington
Posted
118 days ago
Salary
$169.6K - $229.5K / year
Seniority
Senior
Job Description
Cybersecurity Lead
General Dynamics Information Technology
• Perform security hardening for client’s cloud environment • Implement necessary security measures for AI operations such as Data encryption in transit and at rest, Access control and identity management • Adhere to risk management principles in NIST AI Risk Management Framework and agency policy • Operate within FedRAMP(moderate) authorized services appropriate for the agency’s data • Comply with FISMA, implement controls aligned to NIST SP 800-53, adopt Zero Trust patterns (NIST SP 800-207), and ensure audit logging and continuous monitoring • Implement Zero Trust principles, least privilege, and role/persona-based access-controlled workspaces • Support Section 508 accessibility for user interfaces and documentation • Support clients ATO requirements • Provide an annual risk assessment on how security controls are being followed • Review and document the external systems security assessment report in the above-mentioned risk assessment on an annual basis
Job Requirements
- 8+ years of related experience
- Strong background in network security, threat detection, and vulnerability management
- In-depth knowledge of securing cloud environments (e.g., AWS, Azure, Google Cloud)
- Proficiency in data encryption, masking, anonymization, and data loss prevention
- Specific expertise in securing large-scale data systems and AI/ML models
- Proven experience in handling security incidents from detection and analysis to recovery and post-incident reporting
- Current Certified Information Systems Security Professional (CISSP) Certification
- Current Certified Cloud Security Professional (CCSP) Certification
- Current CompTIA Cloud+ Certification
- Ability to support 24x7 environment for business critical and contractual SLA impacting issues
Benefits
- Comprehensive benefits and wellness packages
- 401K with company match
- Competitive pay and paid time off
- Full-flex work week to own your priorities at work and at home with customer approval
- Paid parental leave
- Military leave
- Bereavement leave
- Jury duty leave
- Short and long-term disability benefits
- Life insurance
- Accidental death and dismemberment insurance
- Personal accident insurance
- Critical illness insurance
- Business travel accident insurance
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Support planning, assessment, and implementation of Zero Trust principles across classified environments • Evaluate identity, device, network, application, and data protection controls • Assess Zero Trust maturity against DoD Zero Trust reference architectures • Provide recommendations to reduce implicit trust and strengthen access control enforcement • Oversee SIEM and SOAR operations for classified networks • Analyze security logs, alerts, and correlated events to identify threats and anomalous behavior • Perform traffic pattern analysis to detect lateral movement, unauthorized activity, and data exfiltration risks • Support incident response investigations and forensic analysis • Oversee vulnerability management and advanced vulnerability analysis efforts • Assess mission risk across enterprise, tactical, and mission networks • Ensure the security posture of complex, interconnected classified systems • Configure and manage AWS Security toolsets (CloudTrail, GuardDuty, Inspector, Security Hub) • Provide technical leadership and guidance to engineering, operations, and compliance teams • Mentor junior and mid-level cybersecurity personnel • Support cybersecurity strategy development and continuous process improvement • Stay current with emerging threats, adversary TTPs, and evolving DoD cybersecurity guidance
• Support and maintain development, maintenance, and oversight of RMF packages for classified C5ISR and IIR systems • Coordinate with Government System Owners, ISSOs, ISSEs, and Authorizing Officials to collect evidence, validate control implementation and maintain package accuracy. • Execute RMF support activities for ATO/IATT and continuous monitoring across multiple systems/enclaves, including documentation updates driven by engineering and operational changes. • Document and track POA&M items, support risk-based prioritization, and provide remediation status reporting through closure. • Validate documentation alignment with system architecture, interconnections, control inheritance, and mission dependencies. • Ensure systems comply with Department of War/DoD, and federal cybersecurity requirements • Support internal and external audits, inspections, and cybersecurity assessments • Monitor changes to cybersecurity policy and support implementation across supported systems • Provide compliance status, risk analysis, and authorization reporting to government leadership • Author, maintain, and approve cybersecurity SOPs, plans, and technical documentation • Standardized documentation practices across supported systems and teams • Ensure documentation supports audits, inspections, and operational continuity • Support cybersecurity risk management for C5ISR and IIR systems • Assess security impacts across enterprise, tactical, and mission networks • Support interconnected and cross-domain system authorization efforts
• Support planning, assessment, and implementation of Zero Trust principles across classified environments • Evaluate identity, device, network, application, and data protection controls • Assess Zero Trust maturity against DoD Zero Trust reference architectures • Provide recommendations to reduce implicit trust and strengthen access control enforcement • Oversee SIEM and SOAR operations for classified networks • Analyze security logs, alerts, and correlated events to identify threats and anomalous behavior • Perform traffic pattern analysis to detect lateral movement, unauthorized activity, and data exfiltration risks • Support incident response investigations and forensic analysis • Oversee vulnerability management and advanced vulnerability analysis efforts • Assess mission risk across enterprise, tactical, and mission networks • Ensure the security posture of complex, interconnected classified systems • Cloud Security: Configure and manage AWS Security toolsets (CloudTrail, GuardDuty, Inspector, Security Hub) • Provide technical guidance to engineering, operations, and compliance teams • Support cybersecurity strategy development and continuous process improvement • Stay current with emerging threats, adversary TTPs, and evolving DoD cybersecurity guidance
• Act as the technical leader alongside the client’s business, development, and infrastructure teams. • Lead technical and design investigations with IT executives to help companies accelerate adoption of new technologies and practices. • Design and build highly scalable cloud-native applications on the AWS platform, using core developer-focused services such as API Gateway, Lambda, SQS, DynamoDB, and ECS. • Leverage emerging technology paradigms (e.g., serverless computing, containers, microservices). • Migrate monolithic applications to microservices architectures. • Advise on the implementation of AWS best practices. • Influence infrastructure architecture by sharing your application development expertise. • Represent the voice of developers and influence AWS Professional Services offerings and AWS product strategy for developers by working with platform engineering, business development, and other cross-functional AWS teams.


