IT Risk and Compliance Specialist Principal

General Dynamics
Washington DC
Workplace: HybridFull timeUSD 136,000 - 184,000 annuallyFunction: Legal, Risk & ComplianceExperience: 5+ yearsEducation: certificationSkills: ["Communication","Independent work","Drive for innovation"]

Support the Department of Commerce by performing Information System Security Officer (ISSO) duties within GDIT’s TSS Governance, Risk, and Compliance (GRC) team. Apply the Risk Management Framework (RMF) to obtain and maintain Authorization to Operate (ATO) for classified systems, manage POA&M and continuous monitoring, and build/update A&A packages. Use Azure security tooling and GRC platforms (e.g., CSAM, SCAP, STIG, eMASS) to ensure compliance across federal environments.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
General Dynamics
General Dynamics
1 day ago

IT Risk and Compliance Specialist Principal

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Support the Department of Commerce by performing Information System Security Officer (ISSO) duties within GDIT’s TSS Governance, Risk, and Compliance (GRC) team. Apply the Risk Management Framework (RMF) to obtain and maintain Authorization to Operate (ATO) for classified systems, manage POA&M and continuous monitoring, and build/update A&A packages. Use Azure security tooling and GRC platforms (e.g., CSAM, SCAP, STIG, eMASS) to ensure compliance across federal environments.
Location: Washington DC
Workplace: Hybrid
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Perform ISSO duties for a Department of Commerce contract within the TSS GRC team.
  • •Apply RMF for classified systems/applications to obtain and maintain ATO.
  • •Manage POA&Ms and cyber hygiene continuous monitoring to support compliance.
  • •Develop and manage cybersecurity A&A packages, including assessment and authorization processes.
  • •Use GRC tools (e.g., CSAM, SCAP, STIG, eMASS) and security technologies to support security governance and risk management.
Travel: Low travel

Pay and Benefits

Salary: USD 136,000 - 184,000 annually
Perks:Health InsuranceDentalVision401kParental Leave

Key Requirements

  • •Active Secret clearance.
  • •5+ years of related experience in cybersecurity/information system security processes, protocols, and procedures.
  • •Hands-on experience applying RMF for classified systems/applications to obtain and maintain an Authorization to Operate (ATO).
  • •Manage POA&Ms and cybersecurity continuous monitoring, including work on A&A package development and processes.
  • •Experience with Azure security (Sentinel, Defender, auditing) and GRC tools such as CSAM, SCAP, STIG, Patching, and eMASS; experience working with SIPRNET and security techniques.
Experience:5+ yearsFederal environmentsClassified systems
Education:Certification / Diploma
Skills:CommunicationIndependent workDrive for innovation
Tech Stack:Microsoft AzureSentinelDefenderSCAPSTIGCSAMEMASSRMFPOA&MATOSIPRNETPatching

Eligibility

Nationality:US National
Security Clearance:Top Secret

Company Brief

General Dynamics
Provides IT, systems engineering, cybersecurity, cloud, and mission support services to U.S. federal civilian and defense agencies, delivering large-scale technology solutions and managed services for national security and government operations.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Headquarters: Tysons / Fairfax, United States
WebsiteLinkedIn