IT and Cyber Risk Auditor Principal

General Dynamics
United States
Workplace: OnsiteFull timeUSD 119,000 - 161,000 annuallyFunction: CybersecurityExperience: 8+ yearsEducation: bachelorsSkills: ["Communication","Multi-tasking","Prioritization"]

Monitor and enforce cybersecurity security controls across technical, operational, and management support activities. Develop and document system security plans, contingency plans, and POA&Ms, identify and remediate vulnerabilities, and prepare system artifacts for annual audits. Review vulnerability scans and change requests, support Certification & Accreditation, and assess compliance using STIG and FISMA—while coordinating corrective actions aligned to the program ISSM/CISO.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
General Dynamics
General Dynamics
1 week ago

IT and Cyber Risk Auditor Principal

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 14 hours agoStatus: Live
Reposted: similar role first listed 6 months ago

Job Summary

Monitor and enforce cybersecurity security controls across technical, operational, and management support activities. Develop and document system security plans, contingency plans, and POA&Ms, identify and remediate vulnerabilities, and prepare system artifacts for annual audits. Review vulnerability scans and change requests, support Certification & Accreditation, and assess compliance using STIG and FISMA—while coordinating corrective actions aligned to the program ISSM/CISO.
Location: United States
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Monitor and enforce security controls for technical, operational, and management support.
  • •Develop, document, and maintain system security plans, contingency plans, and POA&Ms; establish and implement corrective actions to meet ISSM/CISO program requirements.
  • •Identify, create, track, and remediate system vulnerabilities; review vulnerability scan results and address weaknesses in POA&Ms.
  • •Support Certification and Accreditation and ensure compliance with required security controls and agency policies.
  • •Perform security assessments and annual reporting using STIG and FISMA; conduct security technical impact analysis for change requests.
Travel: Low travel

Pay and Benefits

Salary: USD 119,000 - 161,000 annually
Perks:Health InsuranceDentalVision401kPaid Leave

Key Requirements

  • •8+ years of related experience and a BA/BS (or equivalent).
  • •3-5 years of specific experience with ICD 503 and NIST 800-53 policies.
  • •Ability to complete multiple Authority to Operate (ATO) security packages and manage POA&M activities.
  • •Strong understanding of vulnerability scans and creating/tracking/remediating system vulnerabilities.
  • •Must currently possess and maintain required eligibility and clearance; excellent communication and ability to multi-task in a fast-paced environment.
Experience:8+ yearsCybersecurityIT risk managementFederal compliance
Education:Bachelor's
Skills:CommunicationMulti-taskingPrioritization
Tech Stack:NIST 800-53ICD 503ICD 800-83 rev4XACTASplunkSecurity CenterTelos XACTAMcAfee EPOSTIGFISMAPOA&MATOISSMCISOWindowsUnix

Eligibility

Nationality:US National
Security Clearance:Top Secret SCIPolygraph

Company Brief

General Dynamics
Provides IT, systems engineering, cybersecurity, cloud, and mission support services to U.S. federal civilian and defense agencies, delivering large-scale technology solutions and managed services for national security and government operations.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Headquarters: Tysons / Fairfax, United States
WebsiteLinkedIn