Security Manager

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 10,001+Since 1954H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

4 days ago

Salary

$153K - $207K / year

Seniority

Lead

Bachelor Degree10 yrs expEnglishCyber Security

Job Description

Security Manager

General Dynamics Information Technology

• Lead security audits and assessments—annual, periodic, and ad hoc—serving as the primary liaison to internal assessors and external auditors. • Guide implementation of security controls and ensure alignment with CBP, DHS, NIST, and federal requirements. • Oversee development and maintenance of security documentation, assessment artifacts, and audit evidence to support audit readiness. • Lead remediation of audit findings and security deficiencies, ensuring timely corrective actions. • Provide technical leadership on cybersecurity, vulnerability mitigation, and security compliance across the application lifecycle. • Partner with BEMSD stakeholders and development teams to integrate security requirements into application design, development, and operations. • Evaluate emerging cybersecurity technologies, threats, and best practices to strengthen program security. • Deliver security reports, risk assessments, dashboards, and compliance updates to BEMSD and GDIT leadership.

Job Requirements

  • 10 + years of related experience
  • U.S. Citizenship Required: Yes
  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related technical discipline.
  • Experience leading security audits and assessments, including management of external auditors and internal assessors.
  • Strong knowledge of NIST RMF, FISMA, DHS 4300A/B, and federal assessment and authorization processes.
  • CISSP or CISM certification.
  • Strong communication, stakeholder engagement, and leadership skills.
  • U.S. citizenship and ability to obtain a CBP Background Investigation.

Benefits

  • Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts
  • dental plan options
  • a vision plan
  • a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.
  • To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year.
  • The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees.
  • other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.

Related Categories

Related Job Pages

More Security Engineer Jobs

Quisitive logo

Security Consultant

Quisitive

Quisitive is a technology company helping customers generate transformational impact with immense value through cloud and payment solutions. A global company, Q

• Partner with clients to understand their business objectives, security concerns, and risk management priorities. • Assess Microsoft 365, Azure, and cloud security environments and provide actionable recommendations for improvement. • Design and implement Microsoft security solutions across identity, endpoint, threat protection, governance, compliance, and cloud security. • Configure and support Microsoft Entra ID capabilities, including Multi-Factor Authentication (MFA) and Self-Service Password Reset (SSPR). • Deploy and optimize Microsoft Defender technologies. • Implement endpoint management and security controls using Microsoft Intune. • Build and improve security monitoring, analytics, alerting, and reporting solutions using Microsoft Sentinel. • Support data protection and compliance initiatives utilizing Microsoft Purview, DLP, and sensitivity labeling capabilities. • Develop automation and operational efficiencies using PowerShell and Microsoft Graph. • Deliver trusted advisory services to clients.

United States
Wikimedia Foundation logo

Principal, Global Event Security and Risk Management

Wikimedia Foundation

Imagine a world in which every single human being can freely share in the sum of all knowledge.

Full TimeRemoteTeam 501-1,000Since 2003H1B Sponsor

• Working closely with Wikimedia movement organizers to mitigate risks and define best practices. • Strengthening the Foundation’s risk management approach. • Leading risk assessments for community conferences and other events. • Creating emergency response plans for physical security threats. • Being on-call to review emergency alerts and ensuring response to threats. • Briefing the Deputy General Counsel and senior leadership regularly.

California + 8 moreAll locations: California | Colorado | Florida | Illinois | New York | North Carolina | Massachusetts | Texas | Virginia
$145.4K - $223.3K / year
Tripadvisor logo

Cloud Security Engineer II

Tripadvisor

Tripadvisor, founded in 2000, is an award-winning network for travel information that features real advice from global travelers. The world’s largest travel s

Role Description We are looking for a hands-on Cloud Security Engineer II (AWS, SecOps) to be the first line of defense for the Tripadvisor Experiences platform. This is a critical mid-level role that blends proactive security engineering with reactive incident response. You will live and breathe in our product's cloud environment, monitoring for threats, responding to security incidents, automating defenses, and working closely with our engineering teams to build a more resilient platform. Job Location: Poland, remote. We are able to offer only permanent contracts (umowa o pracę). What You’ll Do: - Product-Focused Incident Response: - Monitor, analyze, and investigate security alerts originating from our AWS infrastructure, application logs, and security tooling (WAF, SIEM, Cloud-Native tools). - Respond to security incidents that directly impact the Tripadvisor Experiences application, such as potential data breaches, application-layer attacks, or infrastructure compromises. - Triage vulnerabilities reported through our bug bounty program and other external sources. - Security Engineering & Automation: - Build and maintain security monitoring and alerting capabilities within our production environment. - Automate security operations tasks using scripting languages like Python or Go to improve our detection and response times. - Configure, tune, and help manage security tools like our Web Application Firewall (WAF), AWS GuardDuty, and Security Hub. - Vulnerability Management & Collaboration: - Operationalize findings from application security tools (SAST, DAST, SCA) by working with engineering teams to prioritize and remediate vulnerabilities in our codebase and dependencies. - Conduct threat modeling for new features to identify and mitigate risks before they reach production. - Collaborate with engineering teams and provide guidance on secure coding practices and architecture. Qualifications - Hands-on experience securing a production environment in AWS. - A good understanding of core AWS services beyond just security tools (e.g., VPC networking, EC2, RDS, S3, Lambda, EKS). - Proficiency with Terraform for managing and securing cloud infrastructure. - Proven experience with the full lifecycle of security incidents, from initial detection and analysis to containment, remediation, and post-mortem. - Proficiency in at least one scripting language (e.g., Python, Go, Bash). - A solid understanding of common web application vulnerabilities (OWASP Top 10) and how to defend against them. - Demonstrated ability to use AI tools to improve efficiency, quality, and decision-making in day-to-day work. - Proven ability to operate effectively with a global-first mindset. Benefits - Competitive compensation packages (routinely benchmarked against the latest industry data), including base salary and annual bonuses. - “Work your way” with flexibility to suit your lifestyle. - Flexible schedule. Work-life balance is ingrained in our culture by design. - Donation matching. Give back? Give more! - Tuition assistance. Receive annual support for qualified programs. - Lifestyle benefit. An annual benefit to spend on yourself. - Travel perks. Discounts and more. - Employee assistance program. Resources and programs to help you through life’s challenges. - Health benefits. Great coverage and competitive premiums.

Poland
Full TimeRemoteTeam 10,001+Since 1976

• Serve as the executive owner of the U.S. customer contractual security program. • Interpret customer security requirements and translate them into standardized operational policies and procedures. • Ensure all security obligations are implemented, documented, maintained, and audited throughout the customer lifecycle. • Partner with Commercial, Customer Success, Solutions Design, and Operations teams during customer pursuits, onboarding, and implementations. • Act as the primary executive contact for customer security matters, audits, escalations, and compliance reviews. • Establish scalable governance processes to ensure consistent execution of customer security requirements across all U.S. locations. • Own the physical security governance program for all U.S. Contract Logistics facilities. • Develop and maintain enterprise security standards, policies, procedures, and operating guidelines. • Implement network-wide security scorecards, performance metrics, and executive reporting. • Lead customer, internal, and third-party security audits. • Ensure timely remediation and sustainable closure of audit findings. • Conduct facility security assessments and enterprise-wide risk evaluations. • Identify vulnerabilities and prioritize mitigation activities based on business and customer impact. • Provide security approval and governance for new facilities, customer implementations, expansions, and major facility modifications. • Collaborate with global Security, Operations, Compliance, Engineering, and Quality teams to drive standardized security programs and practices. • Lead, mentor, and influence cross-functional teams responsible for security program execution.

Arizona + 12 moreAll locations: Arizona | Colorado | Illinois | Kentucky | Nevada | New Jersey | Ohio | Mississippi | Pennsylvania | Texas | Utah | Virginia | Washington
$160.5K - $200.6K / year