DISA STIG
NIST Risk Management Framework
Operations Security
Own your opportunity to be at the center of GDIT’s business operations. Make an impact by collaborating across functions to make mission success achievable.
Help safeguard critical government systems by applying your hands-on ISSM/ISSO experience to security governance, risk evaluation, and compliance oversight. As an IT and Cyber Risk Auditor at GDIT, you will leverage your background managing RMF controls, system documentation, and continuous monitoring activities to deliver thorough, accurate, and mission‑focused security assessments.
This role is ideal for cybersecurity professionals who have previously served as an ISSM or ISSO and are seeking to transition into a dedicated risk, audit, and compliance position where they can influence security posture across multiple systems and programs.
MEANINGFUL WORK AND PERSONAL IMPACT
As an IT and Cyber Risk Auditor, the work you do at GDIT will have a direct and measurable impact on our customer’s mission. You’ll help ensure the integrity, security, and compliance of their IT systems by identifying potential risks, validating critical controls, and supporting continuous improvement efforts. Your work will enhance operational resilience and enable the customer to execute their mission with confidence.
● Conduct security audits and RMF control assessments by applying your deep understanding gained through previous ISSO/ISSM responsibilities.
● Review, validate, and enhance security artifacts such as SSPs, POA&Ms, and continuous monitoring deliverables.
● Evaluate system security controls fore effectiveness, sufficiency, and alignment with NIST 800-53, DoD requirements, and organizational policies.
● Work with ISSOs/ISSMs and technical teams to interpret findings, recommend remediation actions, and ensure timely closure of vulnerabilities.
● Analyze system changes, configuration updates, and vulnerability outputs to determine authorization impacts and risk-level adjustments.
● Support ATO maintenance by tracking assessments, evidence, and documentation needed for successful RMF lifecycle execution.
● Ability to prepare and deliver clear, risk focused briefings to system owners and stakeholders regarding audit findings and compliance status.
WHAT YOU’LL NEED TO SUCCEED
Bring your cyber expertise and drive for innovation to GDIT. The IT and Cyber Risk Auditor must have:
● Education: Bachelors degree or 4+ years of additional work experience/training/education in lieu of a degree
● Experience: 3+ years of related experience as a prior ISSO/ISSM
● Certifications: IAT II (Security +, SSCP, CCNA Security)
● Technical skills: Strong understanding of NIST SP 800-53, DoD cybersecurity requirements, and control implementation/assessment practices. Familiarity with Windows/Linux environments, vulnerability tools, and security baselines.
● Security clearance: Must have an active Secret clearance in order to be considered
● US citizenship required
● Role requirements: Onsite, 5 days/week
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
● Growth: AI-powered career tool that identifies career steps and learning opportunities.
● Support: An internal mobility team focused on helping you achieve your career goals.
● Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off.
● Community: Award-winning culture of innovation and a military-friendly workplace.
OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.
3 + years of related experience
* may vary based on technical training, certification(s), or degree
CompTIA - Security+ CE - CompTIA - CompTIA
Less than 10%
U.S. Citizenship Required
The likely salary range for this position is $81,349 - $100,050. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.
We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans