AI Red Teaming
Malware Reverse Engineering
Team Leadership
Threat and Vulnerability Management
Vulnerability Assessments
Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.
Position Summary
The Vulnerability Management Lead oversees teams that delivers comprehensive, standards‑aligned security assessments and validation services across cloud, operational technology OT, industrial control systems (ICS), and enterprise environments identifying vulnerabilities, evaluating control effectiveness, and measuring readiness to strengthen the cybersecurity posture of government and commercial information systems. The successful lead directs tailored test plans (e.g., vulnerability assessments, penetration testing, SOC evaluations, phishing exercises), ensures actionable findings, and prioritized mitigation guidance.
Key Responsibilities
Assessment & Security Validation Leadership
Oversee teams conducting comprehensive site‑based and remote assessments supporting, vulnerability management, compliance validation, and ad‑hoc inspection needs.
Ensure detailed assessments of technical and non‑technical controls across cloud, bare‑metal, and OT/ICS systems are aligned to NIST frameworks, Federal guidance, and Cyber Performance Goals.
Direct tailored test plans.
Oversee assessments of performance using red‑, blue‑, and purple‑team methodologies.
Manage automated system and web‑application scanning, phishing assessments, and development of customized plugin policies.
Enforce clear operational oversight practices—weekly status reports, daily assessment updates, formal kickoffs, and structured out‑briefs.
Remediation Orchestration & Risk Reduction
Threat Emulation & Simulation Operations
Governance, Reporting & Continuous Improvement
Required Qualifications
Desired Qualifications
Experience with threat emulation/simulation environments and cyber‑range operations that replicate adversary target spaces.
Background turning adversary behavior insights into analytics and detection logic enhancements.
Relevant certifications (e.g., CISSP, OSCP, GPEN, GICSP) and familiarity with CISA Cyber Performance Goals and NIST control baselines.
GDIT IS YOUR PLACE
10 + years of related experience
* may vary based on technical training, certification(s), or degree
Less than 10%
U.S. Citizenship Required
The likely salary range for this position is $170,000 - $230,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.
We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans